StackRadar

CVE-2021-3933

Medium

Advisory

Published 9 Nov 2021In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.009
57th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
11
of 17,781 indexed, latest versions
Container images
16
deployed by those charts
Fix available
1 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 11 of 17,781 indexed charts deploy, on 16 images.

Affected packageAffected versionsFixed inImages
openexrdeb2.2.0-10ubuntu2, 2.3.0-6ubuntu0.5, 2.5.7-12.2.0-10ubuntu2.6+esm2, 2.3.0-6ubuntu0.5+esm1, 2.5.7-1ubuntu0.1~esm116
ilmbasedeb2.3.0-6build1, 2.5.7-2no fix listed15
OSV records
UBUNTU-CVE-2021-3933
Also known as
USN-5144-1, USN-5620-1

Charts affected

11 by stars
ChartLatestAffected imagesRadar Score
opennebulakvaps2.1.15 of 9See more

opennebula kvaps 2.1.1

5 of the 9 container images this version deploys carry CVE-2021-3933.

Container imageDigestPackageFixed in
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1

Open the chart page →

113,791
smarter-demosmarterOfficialVerified publisher0.1.52 of 7See more

smarter-demo smarter 0.1.5

2 of the 7 container images this version deploys carry CVE-2021-3933.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1

Open the chart page →

45,832
webpagetest-agentcloudnativeapp0.2.01 of 1See more

webpagetest-agent cloudnativeapp 0.2.0

1 of the 1 container images this version deploys carry CVE-2021-3933.

Container imageDigestPackageFixed in
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
openexr@2.2.0-10ubuntu2
2.2.0-10ubuntu2.6+esm2

Open the chart page →

77,758
calibre-webgeek-cookbookVerified publisher8.4.21 of 1See more

calibre-web geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2021-3933.

Container imageDigestPackageFixed in
linuxserver/calibre-web:version-0.6.12938810eca3d3
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1

Open the chart page →

16,123
openkmgeek-cookbookVerified publisher4.2.01 of 1See more

openkm geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2021-3933.

Container imageDigestPackageFixed in
openkm/openkm-ce:6.3.113bc465a7461b
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1

Open the chart page →

27,949
photoprismgeek-cookbookVerified publisher7.2.01 of 1See more

photoprism geek-cookbook 7.2.0

1 of the 1 container images this version deploys carry CVE-2021-3933.

Container imageDigestPackageFixed in
photoprism/photoprism:220629-jammy2954334adbda
ilmbase@2.5.7-2
openexr@2.5.7-1
no fix listed
2.5.7-1ubuntu0.1~esm1

Open the chart page →

19,503
itm-servicesintelVerified publisher2.0.01 of 8See more

itm-services intel 2.0.0

1 of the 8 container images this version deploys carry CVE-2021-3933.

Container imageDigestPackageFixed in
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1

Open the chart page →

18,066
penpotkubitodevVerified publisher1.2.11 of 5See more

penpot kubitodev 1.2.1

1 of the 5 container images this version deploys carry CVE-2021-3933.

Container imageDigestPackageFixed in
penpotapp/exporter:2.2.15c835ffd87ab
ilmbase@2.5.7-2
openexr@2.5.7-1
no fix listed
2.5.7-1ubuntu0.1~esm1

Open the chart page →

16,877
ingresslivekit-server1.2.21 of 1See more

ingress livekit-server 1.2.2

1 of the 1 container images this version deploys carry CVE-2021-3933.

Container imageDigestPackageFixed in
livekit/ingress:v1.2.21ab01641b366
ilmbase@2.5.7-2
openexr@2.5.7-1
no fix listed
2.5.7-1ubuntu0.1~esm1

Open the chart page →

10,716
testing-multitoolsomeblackmagic0.1.21 of 1See more

testing-multitool someblackmagic 0.1.2

1 of the 1 container images this version deploys carry CVE-2021-3933.

Container imageDigestPackageFixed in
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1

Open the chart page →

30,687
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2021-3933.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
ilmbase@2.5.7-2
openexr@2.5.7-1
no fix listed
2.5.7-1ubuntu0.1~esm1

Open the chart page →

14,100

Container images carrying it

16 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1
1
linuxserver/calibre-web:version-0.6.12938810eca3d3
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1
1
livekit/ingress:v1.2.21ab01641b366
ilmbase@2.5.7-2
openexr@2.5.7-1
no fix listed
2.5.7-1ubuntu0.1~esm1
1
openkm/openkm-ce:6.3.113bc465a7461b
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1
1
penpotapp/exporter:2.2.15c835ffd87ab
ilmbase@2.5.7-2
openexr@2.5.7-1
no fix listed
2.5.7-1ubuntu0.1~esm1
1
photoprism/photoprism:220629-jammy2954334adbda
ilmbase@2.5.7-2
openexr@2.5.7-1
no fix listed
2.5.7-1ubuntu0.1~esm1
1
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1
1
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
openexr@2.2.0-10ubuntu2
2.2.0-10ubuntu2.6+esm2
1
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
ilmbase@2.5.7-2
openexr@2.5.7-1
no fix listed
2.5.7-1ubuntu0.1~esm1
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1
1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
ilmbase@2.3.0-6build1
openexr@2.3.0-6ubuntu0.5
no fix listed
2.3.0-6ubuntu0.5+esm1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.