StackRadar

CVE-2021-3580

High

Advisory

Published 10 Jun 2021In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.027
85th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
261
of 17,781 indexed, latest versions
Container images
167
deployed by those charts
Fix available
3 of 3
affected packages

Security update for libnettle

Carried by container images the latest versions of 261 of 17,781 indexed charts deploy, on 167 images.

Affected packageAffected versionsFixed inImages
nettledeb3.2-1ubuntu0.16.04.1, 3.2-1ubuntu0.16.04.2, 3.4-1, 3.4-1ubuntu0.1+2 more3.4.1-0ubuntu0.18.04.1, 3.5.1+really3.5.1-2ubuntu0.2143
nettleapk3.5.1-r1, 3.7-r0, 3.7.2-r03.5.1-r2, 3.7.3-r016
libnettlerpm3.4.1-4.12.13.4.1-4.18.18
OSV records
ALPINE-CVE-2021-3580UBUNTU-CVE-2021-3580SUSE-SU-2021:2143-1
Also known as
USN-4990-1

Charts affected

261 by stars
ChartLatestAffected imagesRadar Score
istio-ingresstemp-charts0.3.31 of 1See more

istio-ingress temp-charts 0.3.3

1 of the 1 container images this version deploys carry CVE-2021-3580.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.088c6c693e67a
nettle@3.4-1ubuntu0.1
3.4.1-0ubuntu0.18.04.1

Open the chart page →

10,514
pagestest43221.0.02 of 3See more

pages test4322 1.0.0

2 of the 3 container images this version deploys carry CVE-2021-3580.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
nettle@3.5.1+really3.5.1-2
3.5.1+really3.5.1-2ubuntu0.2
flyway/flyway:6.4.422d97ceb0c47
nettle@3.4-1
3.4.1-0ubuntu0.18.04.1

Open the chart page →

20,190
standard-applicationthebitgram1.0.121 of 1See more

standard-application thebitgram 1.0.12

1 of the 1 container images this version deploys carry CVE-2021-3580.

Container imageDigestPackageFixed in
gcr.io/google_containers/echoserver:1.10cb5c1bddd1b5
nettle@3.2-1ubuntu0.16.04.1
no fix listed

Open the chart page →

11,007
trafficlight-apithecampagnards0.1.11 of 1See more

trafficlight-api thecampagnards 0.1.1

1 of the 1 container images this version deploys carry CVE-2021-3580.

Container imageDigestPackageFixed in
thecampagnards/trafficlight-api:main7dca9d973837
nettle@3.5.1+really3.5.1-2ubuntu0.1
3.5.1+really3.5.1-2ubuntu0.2

Open the chart page →

4,357
pagesthiru-pages1.0.02 of 3See more

pages thiru-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2021-3580.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
nettle@3.5.1+really3.5.1-2
3.5.1+really3.5.1-2ubuntu0.2
flyway/flyway:6.4.422d97ceb0c47
nettle@3.4-1
3.4.1-0ubuntu0.18.04.1

Open the chart page →

20,190
pagesthuy-pages1.0.02 of 3See more

pages thuy-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2021-3580.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
nettle@3.5.1+really3.5.1-2
3.5.1+really3.5.1-2ubuntu0.2
flyway/flyway:6.4.422d97ceb0c47
nettle@3.4-1
3.4.1-0ubuntu0.18.04.1

Open the chart page →

20,190
lightstepupdater-lightstep-satellite1.2.21 of 1See more

lightstep updater-lightstep-satellite 1.2.2

1 of the 1 container images this version deploys carry CVE-2021-3580.

Container imageDigestPackageFixed in
lightstep/collector:2021-01-26_23-02-36Z11c5569aaf3b
nettle@3.2-1ubuntu0.16.04.1
no fix listed

Open the chart page →

15,330
pagesvictor-pages1.0.02 of 3See more

pages victor-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2021-3580.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
nettle@3.5.1+really3.5.1-2
3.5.1+really3.5.1-2ubuntu0.2
flyway/flyway:6.4.422d97ceb0c47
nettle@3.4-1
3.4.1-0ubuntu0.18.04.1

Open the chart page →

20,190
pageswalter1.0.02 of 3See more

pages walter 1.0.0

2 of the 3 container images this version deploys carry CVE-2021-3580.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
nettle@3.5.1+really3.5.1-2
3.5.1+really3.5.1-2ubuntu0.2
flyway/flyway:6.4.422d97ceb0c47
nettle@3.4-1
3.4.1-0ubuntu0.18.04.1

Open the chart page →

20,190
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2021-3580.

Container imageDigestPackageFixed in
istio/kubectl:1.5.10dbb7726d1bf0
nettle@3.4-1
3.4.1-0ubuntu0.18.04.1

Open the chart page →

10,843
sambawenerme1.0.01 of 1See more

samba wenerme 1.0.0

1 of the 1 container images this version deploys carry CVE-2021-3580.

Container imageDigestPackageFixed in
wener/samba:4.13.39a42bae466d4
nettle@3.7-r0
3.7.3-r0

Open the chart page →

2,555

Container images carrying it

167 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/cloudfoundry-incubator/quarks-operator:v7.0.1-0.g5396b116a1432b0d503
libnettle@3.4.1-4.12.1
3.4.1-4.18.1
1
ghcr.io/cloudfoundry-incubator/quarks-secret:v1.0.754f059af4de8ed
libnettle@3.4.1-4.12.1
3.4.1-4.18.1
1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1304-g4b4f2ac5c7c70b527255
libnettle@3.4.1-4.12.1
3.4.1-4.18.1
1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1308-g6a8b2220e24a9e0a21b6
libnettle@3.4.1-4.12.1
3.4.1-4.18.1
1
ghcr.io/k8s-at-home/emby:v4.6.1.05c6b8f91f1c4
nettle@3.5.1+really3.5.1-2ubuntu0.1
3.5.1+really3.5.1-2ubuntu0.2
1
ghcr.io/k8s-at-home/network-ups-tools:v2.7.4-2479-g86a32237cbd5d4cc1245
nettle@3.5.1+really3.5.1-2ubuntu0.1
3.5.1+really3.5.1-2ubuntu0.2
1
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
nettle@3.5.1+really3.5.1-2ubuntu0.1
3.5.1+really3.5.1-2ubuntu0.2
1
ghcr.io/k8s-at-home/readarr:v0.1.0.715ad943e9309e4
nettle@3.5.1+really3.5.1-2ubuntu0.1
3.5.1+really3.5.1-2ubuntu0.2
1
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
nettle@3.5.1+really3.5.1-2ubuntu0.1
3.5.1+really3.5.1-2ubuntu0.2
1
ghcr.io/k8s-at-home/wireguard:v1.0.20210424448045c4270b
nettle@3.5.1+really3.5.1-2ubuntu0.1
3.5.1+really3.5.1-2ubuntu0.2
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
nettle@3.5.1+really3.5.1-2ubuntu0.1
3.5.1+really3.5.1-2ubuntu0.2
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
nettle@3.2-1ubuntu0.16.04.1
no fix listed
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
nettle@3.2-1ubuntu0.16.04.1
no fix listed
1
quay.io/renokico/laravel-helm-demo:0.6.03207f957e80c
nettle@3.7.2-r0
3.7.3-r0
1
quay.io/renokico/laravel-helm-demo:worker-0.6.04b188259267e
nettle@3.7.2-r0
3.7.3-r0
1
quay.io/renokico/laravel-helm-demo:octane-0.6.0cad83090c58f
nettle@3.5.1-r1
3.5.1-r2
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
nettle@3.5.1+really3.5.1-2
3.5.1+really3.5.1-2ubuntu0.2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.