CVE-2021-22924
LowAdvisory
Published 21 Jul 2021In the index since 6 Sept 2026
- Severity
- Low
- worst across findings
- CVSS
- 3.7
- base score, highest
- EPSS
- 0.063
- 93rd percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 327
- of 17,781 indexed, latest versions
- Container images
- 232
- deployed by those charts
- Fix available
- 2 of 2
- affected packages
The matching OSV records carry no description.
Carried by container images the latest versions of 327 of 17,781 indexed charts deploy, on 232 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| curldeb | 7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16, 7.35.0-1ubuntu2.19+26 more | 7.58.0-2ubuntu3.14, 7.68.0-1ubuntu2.6 | 123 |
| curlapk | 7.69.1-r0, 7.69.1-r1, 7.69.1-r3, 7.74.0-r0+4 more | 7.78.0-r0 | 109 |
- OSV records
- ALPINE-CVE-2021-22924UBUNTU-CVE-2021-22924
- Also known as
- USN-5021-1
Charts affected
327 by stars
Container images carrying it
232 by charts deploying them
A fixed version is listed for 2 of the 2 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| dellcloud/ | 6ba7b22caacd | curl | 7.68.0-1ubuntu2.6 | 79 |
| flyway/ | 22d97ceb0c47 | curl | 7.58.0-2ubuntu3.14 | 79 |
| oomk8s/ | 875814cc853d | curl | no fix listed | 11 |
| oomk8s/ | 7daa08b81954 | curl | no fix listed | 6 |
| hyperledger/ | 4ce6f43ded2e | curl | no fix listed | 4 |
| hyperledger/ | f6c724592abf | curl | no fix listed | 4 |
| library/ | 628741415fc9 | curl | 7.58.0-2ubuntu3.14 | 4 |
| library/ | 6efa05203990 | curl | 7.58.0-2ubuntu3.14 | 4 |
| oscarsotosanchez/ | 911ec961d10b | curl | 7.58.0-2ubuntu3.14 | 4 |
| nginxinc/ | 084242d8028c | curl | 7.78.0-r0 | 3 |
| xenondb/ | 0e26872a2b67 | curl | 7.68.0-1ubuntu2.6 | 3 |
| xenondb/ | 0241a1112566 | curl | 7.78.0-r0 | 3 |
| quay.io/ | 4c3b91bebd3d | curl | no fix listed | 3 |
| apteno/ | 74035b864eed | curl | 7.78.0-r0 | 2 |
| freeradius/ | 21c8bfa904d8 | curl | 7.58.0-2ubuntu3.14 | 2 |
| giantswarm/ | 58a9d175cdb7 | curl | 7.78.0-r0 | 2 |
| istio/ | dbb7726d1bf0 | curl | 7.58.0-2ubuntu3.14 | 2 |
| istio/ | a78b7a165744 | curl | 7.58.0-2ubuntu3.14 | 2 |
| jupyterhub/ | 8ced0a2f8073 | curl | 7.78.0-r0 | 2 |
| library/ | 5aa8400b4b3b | curl | 7.58.0-2ubuntu3.14 | 2 |
| library/ | 58b25d51baa1 | curl | 7.58.0-2ubuntu3.14 | 2 |
| library/ | 07ab71a2c8e4 | curl | 7.78.0-r0 | 2 |
| lightstep/ | 11c5569aaf3b | curl | no fix listed | 2 |
| mesosphere/ | 073db43d0b8b | curl | 7.68.0-1ubuntu2.6 | 2 |
| minio/ | bf85c57cdfcc | curl | 7.78.0-r0 | 2 |
| omecproject/ | cfdb566dd949 | curl | no fix listed | 2 |
| statping/ | e874da513a5c | curl | 7.78.0-r0 | 2 |
| wurstmeister/ | 7a7fd44a7210 | curl | no fix listed | 2 |
| gcr.io/ | fbe12aa24de6 | curl | no fix listed | 2 |
| ghcr.io/ | 4ee0764310e7 | curl | 7.58.0-2ubuntu3.14 | 2 |
| absaoss/ | ad538a1285a0 | curl | 7.78.0-r0 | 1 |
| acockburn/ | 3a93281d7e94 | curl | 7.78.0-r0 | 1 |
| adwerx/ | 840d2b078682 | curl | 7.68.0-1ubuntu2.6 | 1 |
| airsonicadvanced/ | f7cbafac2806 | curl | 7.68.0-1ubuntu2.6 | 1 |
| ajanvier/ | 91ac61b88c85 | curl | 7.78.0-r0 | 1 |
| aquasec/ | 7ea4aa3d2eb6 | curl | 7.78.0-r0 | 1 |
| billimek/ | f14ccd7aad0e | curl | 7.78.0-r0 | 1 |
| chetangautamm/ | b4b94155ff5a | curl | no fix listed | 1 |
| chetangautamm/ | e7f7049e1544 | curl | 7.68.0-1ubuntu2.6 | 1 |
| cheyang/ | 46cc34755493 | curl | no fix listed | 1 |
| cloudve/ | d79c1c5881c0 | curl | 7.58.0-2ubuntu3.14 | 1 |
| conduction/ | 9cfeeb6c7c20 | curl | 7.78.0-r0 | 1 |
| conduction/ | c36094a41369 | curl | 7.78.0-r0 | 1 |
| conduction/ | ece1ab544c57 | curl | 7.78.0-r0 | 1 |
| conduction/ | 3423845692c1 | curl | 7.78.0-r0 | 1 |
| conduction/ | 2744565516e8 | curl | 7.78.0-r0 | 1 |
| conduction/ | e1d4ad1e22a8 | curl | 7.78.0-r0 | 1 |
| conduction/ | b6f95c8ead7d | curl | 7.78.0-r0 | 1 |
| conduction/ | 8f177f9f8a7b | curl | 7.78.0-r0 | 1 |
| conduction/ | 24f03c57568f | curl | 7.78.0-r0 | 1 |