StackRadar

CVE-2020-8912

Low

Advisory

Published 11 Feb 2022In the index since 5 Sept 2026
Severity
Low
worst across findings
CVSS
2.5
base score, highest
EPSS
0.002
14th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
887
of 17,787 indexed, latest versions
Container images
914
deployed by those charts
Fix available
1 of 1
affected package

In-band key negotiation issue in AWS S3 Crypto SDK for golang in github.com/aws/aws-sdk-go

Carried by container images the latest versions of 887 of 17,787 indexed charts deploy, on 914 images.

Affected packageAffected versionsFixed inImages
github.com/aws/aws-sdk-gogolangv1.12.54, v1.15.24, v1.17.7, v1.17.14+285 more1.34.0914
OSV records
GHSA-7f33-f4f5-xwgwGO-2022-0635

Charts affected

887 by stars
ChartLatestAffected imagesRadar Score
harbor-scanner-trivytrivy-operator0.31.21 of 1See more

harbor-scanner-trivy trivy-operator 0.31.2

1 of the 1 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
aquasec/harbor-scanner-trivy:0.31.26e790e233872
github.com/aws/aws-sdk-go@v1.53.0
no fix listed

Open the chart page →

2,477
tfy-agenttruefoundryVerified publisher0.2.1031 of 5See more

tfy-agent truefoundry 0.2.103

1 of the 5 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
ghcr.io/external-secrets/external-secrets:v2.4.19440a40b3947
github.com/aws/aws-sdk-go@v1.55.8
no fix listed

Open the chart page →

681
tfy-kservetruefoundryVerified publisher0.1.11 of 2See more

tfy-kserve truefoundry 0.1.1

1 of the 2 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
kserve/kserve-controller:v0.10.022ff858b57c1
github.com/aws/aws-sdk-go@v1.36.30
no fix listed

Open the chart page →

1,171
tfy-lokitruefoundryVerified publisher0.1.62 of 2See more

tfy-loki truefoundry 0.1.6

2 of the 2 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
grafana/loki:2.9.1035b02acc6765
github.com/aws/aws-sdk-go@v1.44.315
no fix listed
grafana/promtail:2.9.1063a2e57a5b14
github.com/aws/aws-sdk-go@v1.44.315
no fix listed

Open the chart page →

2,813
truefoundry-monitoringtruefoundryVerified publisher0.1.61 of 8See more

truefoundry-monitoring truefoundry 0.1.6

1 of the 8 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
grafana/grafana:12.3.070d9599b186c
github.com/aws/aws-sdk-go@v1.55.7
no fix listed

Open the chart page →

4,526
aws-eks-asg-rolling-update-handlertwin1.5.01 of 1See more

aws-eks-asg-rolling-update-handler twin 1.5.0

1 of the 1 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
twinproduction/aws-eks-asg-rolling-update-handler:v1.7.08f38c206972e
github.com/aws/aws-sdk-go@v1.44.152
no fix listed

Open the chart page →

1,118
opencloudunxwaresVerified publisher0.2.31 of 13See more

opencloud unxwares 0.2.3

1 of the 13 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
opencloudeu/opencloud-rolling:2.1.0f9634bb04905
github.com/aws/aws-sdk-go@v1.55.6
no fix listed

Open the chart page →

45,239
kiamuswitch6.1.21 of 1See more

kiam uswitch 6.1.2

1 of the 1 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
quay.io/uswitch/kiam:v4.0be3a5846922d
github.com/aws/aws-sdk-go@v1.35.10
no fix listed

Open the chart page →

2,965
vault-raft-snapshot-agentvault-raft-snapshot-agentVerified publisher0.6.91 of 1See more

vault-raft-snapshot-agent vault-raft-snapshot-agent 0.6.9

1 of the 1 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
ghcr.io/argelbargel/vault-raft-snapshot-agent:v0.12.5345174727a2b
github.com/aws/aws-sdk-go@v1.55.5
no fix listed

Open the chart page →

1,114
verticadb-operatorvertica-chartsVerified publisher26.2.21 of 1See more

verticadb-operator vertica-charts 26.2.2

1 of the 1 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
opentext/verticadb-operator:26.2.2-04ad44e44476c
github.com/aws/aws-sdk-go@v1.49.5
no fix listed

Open the chart page →

68
scrutinyvhdirkVerified publisher0.1.31 of 1See more

scrutiny vhdirk 0.1.3

1 of the 1 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
ghcr.io/analogj/scrutiny:master-omnibus18689773150d
github.com/aws/aws-sdk-go@v1.29.16
1.34.0

Open the chart page →

4,382
twenty-crmvictorlane0.0.11 of 3See more

twenty-crm victorlane 0.0.1

1 of the 3 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
twentycrm/twenty-postgres-spilo:latest2f78405a78be
github.com/aws/aws-sdk-go@v1.44.7
no fix listed

Open the chart page →

13,459
consulwarjiang1.3.02 of 2See more

consul warjiang 1.3.0

2 of the 2 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
hashicorp/consul:1.17.0712fe02d2f84
github.com/aws/aws-sdk-go@v1.44.289
no fix listed
hashicorp/consul-k8s-control-plane:1.3.00e4452f0f265
github.com/aws/aws-sdk-go@v1.44.262
no fix listed

Open the chart page →

4,060
argo-eventswenerme2.4.271 of 1See more

argo-events wenerme 2.4.27

1 of the 1 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
quay.io/argoproj/argo-events:v1.9.11fa07b2c9ece6
github.com/aws/aws-sdk-go@v1.47.11
no fix listed

Open the chart page →

969
argo-rolloutswenerme2.43.11 of 1See more

argo-rollouts wenerme 2.43.1

1 of the 1 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
quay.io/argoproj/argo-rollouts:v1.10.0187630ba7228
github.com/aws/aws-sdk-go@v1.55.8
no fix listed

Open the chart page →

115
athens-proxywenerme0.5.21 of 2See more

athens-proxy wenerme 0.5.2

1 of the 2 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
gomods/athens:v0.11.0efb811df7844
github.com/aws/aws-sdk-go@v1.32.7
1.34.0

Open the chart page →

4,984
cadencewenerme0.23.01 of 5See more

cadence wenerme 0.23.0

1 of the 5 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
ubercadence/server:0.23.22ac5491d13bb
github.com/aws/aws-sdk-go@v1.34.13
no fix listed

Open the chart page →

10,127
external-secretswenerme2.10.01 of 1See more

external-secrets wenerme 2.10.0

1 of the 1 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
ghcr.io/external-secrets/external-secrets:v2.10.0814117b0fd6d
github.com/aws/aws-sdk-go@v1.55.8
no fix listed

Open the chart page →

77
gitlab-runnerwenerme0.92.11 of 1See more

gitlab-runner wenerme 0.92.1

1 of the 1 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
registry.gitlab.com/gitlab-org/gitlab-runner:alpine-v19.3.1af0325804248
github.com/aws/aws-sdk-go@v1.55.7
no fix listed

Open the chart page →

904
harborwenerme1.19.22 of 8See more

harbor wenerme 1.19.2

2 of the 8 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
goharbor/harbor-registryctl:v2.15.2223d5cb49d5d
github.com/aws/aws-sdk-go@v1.55.8
no fix listed
goharbor/registry-photon:v2.15.2c4ebef61ceb5
github.com/aws/aws-sdk-go@v1.55.8
no fix listed

Open the chart page →

1,650
prometheuswenerme29.30.01See more

prometheus wenerme 29.30.0

1 container image this version deploys carries CVE-2020-8912.

Container imageDigestPackageFixed in
quay.io/prometheus/prometheus:v3.14.05ce7540c3c00
github.com/aws/aws-sdk-go@v1.55.8
no fix listed

Open the chart page →

rancherwenerme2.15.11 of 2See more

rancher wenerme 2.15.1

1 of the 2 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
rancher/rancher:v2.15.15f6c4dc52a05
github.com/aws/aws-sdk-go@v1.55.8
no fix listed

Open the chart page →

1,456
temporalwenerme0.15.14 of 13See more

temporal wenerme 0.15.1

4 of the 13 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
grafana/grafana:6.7.11ff3999e0fc0
github.com/aws/aws-sdk-go@v1.25.48
1.34.0
prom/prometheus:v2.16.0e4ca62c0d62f
github.com/aws/aws-sdk-go@v1.25.48
1.34.0
temporalio/admin-tools:1.15.135034611d981
github.com/aws/aws-sdk-go@v1.42.44
no fix listed
temporalio/server:1.15.1e26758f5a1bf
github.com/aws/aws-sdk-go@v1.42.44
no fix listed

Open the chart page →

22,665
traefikwenerme9.1.11 of 1See more

traefik wenerme 9.1.1

1 of the 1 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
library/traefik:2.2.8f5af5a5ce17f
github.com/aws/aws-sdk-go@v1.30.20
1.34.0

Open the chart page →

3,369
vaultwenerme0.34.11 of 2See more

vault wenerme 0.34.1

1 of the 2 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
hashicorp/vault:2.0.45be49781ecf7
github.com/aws/aws-sdk-go@v1.55.8
no fix listed

Open the chart page →

542
victoria-metrics-k8s-stackwenerme0.92.11 of 7See more

victoria-metrics-k8s-stack wenerme 0.92.1

1 of the 7 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
grafana/grafana:13.1.17cb8c64c4d57
github.com/aws/aws-sdk-go@v1.55.8
no fix listed

Open the chart page →

1,889
wexa-studiowexa-studio1.2.03 of 15See more

wexa-studio wexa-studio 1.2.0

3 of the 15 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
hashicorp/vault:1.15.40b01ed3924e6
github.com/aws/aws-sdk-go@v1.44.331
no fix listed
temporalio/admin-tools:1.29.1-tctl-1.18.4-cli-1.5.0a3a52e6ca122
github.com/aws/aws-sdk-go@v1.55.6
no fix listed
temporalio/server:1.29.1c1e3326b2ce1
github.com/aws/aws-sdk-go@v1.55.6
no fix listed

Open the chart page →

14,983
ceph-csi-cephfswikimedia0.1.81 of 5See more

ceph-csi-cephfs wikimedia 0.1.8

1 of the 5 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
github.com/aws/aws-sdk-go@v1.44.67
no fix listed

Open the chart page →

10,285
ceph-csi-rbdwikimedia0.1.131 of 6See more

ceph-csi-rbd wikimedia 0.1.13

1 of the 6 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
quay.io/cephcsi/cephcsi:v3.7.2f7f8228f17cc
github.com/aws/aws-sdk-go@v1.44.67
no fix listed

Open the chart page →

11,784
opentelemetry-collectorwikimedia0.62.71 of 1See more

opentelemetry-collector wikimedia 0.62.7

1 of the 1 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
otel/opentelemetry-collector-contrib:0.81.0c6671841470b
github.com/aws/aws-sdk-go@v1.44.295
no fix listed

Open the chart page →

2,022
postgres-operatorwiremindVerified publisher1.14.0-wiremind01 of 1See more

postgres-operator wiremind 1.14.0-wiremind0

1 of the 1 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
ghcr.io/zalando/postgres-operator:v1.14.04f40cfc2283b
github.com/aws/aws-sdk-go@v1.53.8
no fix listed

Open the chart page →

1,286
registrywiremindVerified publisher0.1.11 of 1See more

registry wiremind 0.1.1

1 of the 1 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
ghcr.io/distribution/distribution:3.0.04ba3adf47f5c
github.com/aws/aws-sdk-go@v1.55.5
no fix listed

Open the chart page →

1,187
xonodepoolsxonodepoolsOfficialVerified publisher1.0.71 of 1See more

xonodepools xonodepools 1.0.7

1 of the 1 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
xosphere/xonodepools:1.0.71458097b6f85
github.com/aws/aws-sdk-go@v1.55.5
no fix listed

Open the chart page →

388
ygdrassil-monitoringygdrassilVerified publisher0.4.03 of 10See more

ygdrassil-monitoring ygdrassil 0.4.0

3 of the 10 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
grafana/grafana:11.5.15781759b3d27
github.com/aws/aws-sdk-go@v1.55.5
no fix listed
prom/alertmanager:v0.28.0d5155cfac40a
github.com/aws/aws-sdk-go@v1.55.5
no fix listed
quay.io/prometheus/prometheus:v3.1.06559acbd5d77
github.com/aws/aws-sdk-go@v1.55.5
no fix listed

Open the chart page →

9,381
version-checkerymrs0.2.31 of 1See more

version-checker ymrs 0.2.3

1 of the 1 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
quay.io/jetstack/version-checker:v0.2.15f6f8ba0b671
github.com/aws/aws-sdk-go@v1.34.10
no fix listed

Open the chart page →

3,023
prometheus-monitoring-stackyotron-helm-charts1.2.02 of 3See more

prometheus-monitoring-stack yotron-helm-charts 1.2.0

2 of the 3 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
grafana/grafana:latestf772d434e8fa
github.com/aws/aws-sdk-go@v1.55.8
no fix listed
quay.io/prometheus/prometheus:latest5ce7540c3c00
github.com/aws/aws-sdk-go@v1.55.8
no fix listed

Open the chart page →

878
zahori-consulzahoriVerified publisher1.0.12 of 2See more

zahori-consul zahori 1.0.1

2 of the 2 container images this version deploys carry CVE-2020-8912.

Container imageDigestPackageFixed in
hashicorp/consul:1.15.3ddff34041c5c
github.com/aws/aws-sdk-go@v1.42.34
no fix listed
hashicorp/consul-k8s-control-plane:1.1.262bed1bf8106
github.com/aws/aws-sdk-go@v1.44.262
no fix listed

Open the chart page →

5,033

Container images carrying it

914 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
quay.io/prometheus/prometheus:latest:v3.14.05ce7540c3c00
github.com/aws/aws-sdk-go@v1.55.8
no fix listed
18
grafana/grafana:latestf772d434e8fa
github.com/aws/aws-sdk-go@v1.55.8
no fix listed
12
quay.io/prometheus/alertmanager:v0.27.0e13b6ed5cb92
github.com/aws/aws-sdk-go@v1.50.8
no fix listed
8
grafana/grafana:13.2.1-distroless3600073f45a9
github.com/aws/aws-sdk-go@v1.55.8
no fix listed
7
ghcr.io/appscode/b3:v2026.9.1176d28575b71c
github.com/aws/aws-sdk-go@v1.55.6
no fix listed
7
quay.io/thanos/thanos:v0.37.24ec6df40fdb9
github.com/aws/aws-sdk-go@v1.55.5
no fix listed
7
grafana/grafana:7.0.3d72946c8e5d5
github.com/aws/aws-sdk-go@v1.29.20
1.34.0
6
otel/opentelemetry-collector-contrib:0.160.0:latest799dc6cf12c9
github.com/aws/aws-sdk-go@v1.55.8
no fix listed
6
ghcr.io/quenchworks/images/grafana3ccc56791c8a
github.com/aws/aws-sdk-go@v1.55.8
no fix listed
6
quay.io/devtron/dex:v2.30.22e4c14d1b444
github.com/aws/aws-sdk-go@v1.36.31
no fix listed
6
quay.io/devtron/kubectl:latest2ad610626658
github.com/aws/aws-sdk-go@v1.37.18
no fix listed
6
quay.io/devtron/migrator:v4.16.2fbeaef7a8566
github.com/aws/aws-sdk-go@v1.34.0
no fix listed
6
keelhq/keel:latest73714afb4443
github.com/aws/aws-sdk-go@v1.55.5
no fix listed
5
prom/prometheus:v2.13.10a8caa2e9f19
github.com/aws/aws-sdk-go@v1.23.12
1.34.0
5
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
github.com/aws/aws-sdk-go@v1.40.11
no fix listed
5
grafana/grafana:13.1.0121a7a9ece6d
github.com/aws/aws-sdk-go@v1.55.8
no fix listed
4
grafana/grafana:6.7.11ff3999e0fc0
github.com/aws/aws-sdk-go@v1.25.48
1.34.0
4
grafana/loki:2.6.11ee60f980950
github.com/aws/aws-sdk-go@v1.43.10
no fix listed
4
grafana/loki:3.6.73c8fd3570dd9
github.com/aws/aws-sdk-go@v1.55.7
no fix listed
4
grafana/tempo:2.9.065a578975943
github.com/aws/aws-sdk-go@v1.55.7
no fix listed
4
library/registry:3.1.1:latest1be55279f18a
github.com/aws/aws-sdk-go@v1.55.5
no fix listed
4
rancher/rancher:v2.15.15f6c4dc52a05
github.com/aws/aws-sdk-go@v1.55.8
no fix listed
4
ghcr.io/kubedb/kubedb-autoscaler:v0.51.05d1182ac21f0
github.com/aws/aws-sdk-go@v1.55.6
no fix listed
4
ghcr.io/kubedb/kubedb-ops-manager:v0.53.06d4c9fe66e4f
github.com/aws/aws-sdk-go@v1.55.6
no fix listed
4
ghcr.io/kubedb/kubedb-provisioner:v0.66.0824d6d78d451
github.com/aws/aws-sdk-go@v1.55.6
no fix listed
4
ghcr.io/kubestash/kubestash:v0.29.043e01ed32486
github.com/aws/aws-sdk-go@v1.55.6
no fix listed
4
quay.io/jetstack/cert-manager-controller:v1.13.16b83f55bd99e
github.com/aws/aws-sdk-go@v1.45.7
no fix listed
4
quay.io/prometheus/alertmanager:v0.25.0fd4d9a3dd1fd
github.com/aws/aws-sdk-go@v1.44.156
no fix listed
4
goharbor/harbor-registryctl:v2.15.2223d5cb49d5d
github.com/aws/aws-sdk-go@v1.55.8
no fix listed
3
goharbor/registry-photon:v2.15.2c4ebef61ceb5
github.com/aws/aws-sdk-go@v1.55.8
no fix listed
3
grafana/grafana:8.2.500568d89c4f8
github.com/aws/aws-sdk-go@v1.40.11
no fix listed
3
grafana/grafana:11.0.00dc5a246ab16
github.com/aws/aws-sdk-go@v1.50.8
no fix listed
3
grafana/grafana:13.1.17cb8c64c4d57
github.com/aws/aws-sdk-go@v1.55.8
no fix listed
3
grafana/grafana:11.3.0a0f881232a6f
github.com/aws/aws-sdk-go@v1.55.5
no fix listed
3
grafana/loki:3.4.258a6c186ce78
github.com/aws/aws-sdk-go@v1.55.6
no fix listed
3
grafana/loki:3.7.7:latestd70e4659623f
github.com/aws/aws-sdk-go@v1.55.8
no fix listed
3
grafana/promtail:2.4.2626900031c4e
github.com/aws/aws-sdk-go@v1.40.45
no fix listed
3
migrate/migrate:latestcc4ad8e19d66
github.com/aws/aws-sdk-go@v1.49.6
no fix listed
3
otel/opentelemetry-collector:lateste495787f07db
github.com/aws/aws-sdk-go@v1.55.8
no fix listed
3
prom/alertmanager:v0.28.0d5155cfac40a
github.com/aws/aws-sdk-go@v1.55.5
no fix listed
3
prom/prometheus:v3.0.1565ee8650122
github.com/aws/aws-sdk-go@v1.55.5
no fix listed
3
prom/prometheus:v2.19.0bfad037f95e5
github.com/aws/aws-sdk-go@v1.31.9
1.34.0
3
solace/solace-pubsub-standard:latest8e8ad105595e
github.com/aws/aws-sdk-go@v1.55.8
no fix listed
3
ghcr.io/dexidp/dex:v2.45.18499afd690c4
github.com/aws/aws-sdk-go@v1.55.7
no fix listed
3
ghcr.io/external-secrets/external-secrets:v2.10.0814117b0fd6d
github.com/aws/aws-sdk-go@v1.55.8
no fix listed
3
ghcr.io/kubevault/vault-operator:v0.25.0c8e042b5cee8
github.com/aws/aws-sdk-go@v1.55.6
no fix listed
3
ghcr.io/sigstore/scaffolding/ct_server:v0.7.3166664ba563e7
github.com/aws/aws-sdk-go@v1.55.8
no fix listed
3
ghcr.io/sigstore/scaffolding/trillian_log_server5a878e4e4f03
github.com/aws/aws-sdk-go@v1.55.6
no fix listed
3
ghcr.io/sigstore/scaffolding/trillian_log_signer28c5ff40963f
github.com/aws/aws-sdk-go@v1.55.6
no fix listed
3
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
github.com/aws/aws-sdk-go@v1.35.24
no fix listed
3

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.