CVE-2021-2417
MediumAdvisory
Published 21 Jul 2021In the index since 6 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 6.0
- base score, highest
- EPSS
- 0.017
- 76th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 5
- of 17,781 indexed, latest versions
- Container images
- 5
- deployed by those charts
- Fix available
- 1 of 2
- affected packages
The matching OSV records carry no description.
Carried by container images the latest versions of 5 of 17,781 indexed charts deploy, on 5 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| mysql-8.0deb | 8.0.23-0ubuntu0.20.04.1, 8.0.25-0ubuntu0.20.04.1 | 8.0.26-0ubuntu0.20.04.2 | 3 |
| mysql-5.5deb | 5.5.60-0ubuntu0.14.04.1, 5.5.62-0ubuntu0.14.04.1 | no fix listed | 2 |
- OSV records
- UBUNTU-CVE-2021-2417
- Also known as
- USN-5022-1
Charts affected
5 by stars
Container images carrying it
5 by charts deploying them
A fixed version is listed for 1 of the 2 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| chetangautamm/ | b4b94155ff5a | mysql-5.5 | no fix listed | 1 |
| engrmth/ | 6d8464e6f0e8 | mysql-8.0 | 8.0.26-0ubuntu0.20.04.2 | 1 |
| galaxy/ | 8e577a626dfd | mysql-5.5 | no fix listed | 1 |
| ghcr.io/ | cbd5d4cc1245 | mysql-8.0 | 8.0.26-0ubuntu0.20.04.2 | 1 |
| ghcr.io/ | 01563adc95fd | mysql-8.0 | 8.0.26-0ubuntu0.20.04.2 | 1 |