CVE-2021-3521
MediumAdvisory
Published 22 Aug 2022In the index since 6 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 4.7
- base score, highest
- EPSS
- 0.003
- 25th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 55
- of 17,781 indexed, latest versions
- Container images
- 57
- deployed by those charts
- Fix available
- 1 of 2
- affected packages
Red Hat Security Advisory: rpm security update
Carried by container images the latest versions of 55 of 17,781 indexed charts deploy, on 57 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| rpmdeb | 4.17.0+dfsg1-4build1 | no fix listed | 1 |
| rpmrpm | 4.14.1-lp151.13.10, 4.14.2-9.el8, 4.14.2-25.el8, 4.14.2-26.el8_1+7 more | 0:4.14.3-14.el8_4.2, 0:4.14.3-19.el8_5.2, 4.17.1-1.1 | 56 |
- OSV records
- RHSA-2022:0254RHSA-2022:0368UBUNTU-CVE-2021-3521openSUSE-SU-2024:12245-1
- Also known as
- RHSA-2022:0634
Charts affected
55 by stars
Container images carrying it
57 by charts deploying them
A fixed version is listed for 1 of the 2 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| quay.io/ | c2851757eca4 | rpm | 0:4.14.3-19.el8_5.2 | 1 |
| quay.io/ | 107a7c73af59 | rpm | 0:4.14.3-19.el8_5.2 | 1 |
| quay.io/ | 6722d5041b47 | rpm | 0:4.14.3-19.el8_5.2 | 1 |
| quay.io/ | 0bbe8b451fa3 | rpm | 0:4.14.3-19.el8_5.2 | 1 |
| quay.io/ | 89ee6493af89 | rpm | 0:4.14.3-14.el8_4.2 | 1 |
| quay.io/ | 6ba82beff18e | rpm | 0:4.14.3-14.el8_4.2 | 1 |
| registry.gitlab.com/ | cf72810d33f5 | rpm | 0:4.14.3-14.el8_4.2 | 1 |