StackRadar

CVE-2021-40528

Medium

Advisory

Published 25 Jun 2021In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.014
71st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
859
of 17,787 indexed, latest versions
Container images
746
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: libgcrypt security update

Carried by container images the latest versions of 859 of 17,787 indexed charts deploy, on 746 images.

Affected packageAffected versionsFixed inImages
libgcrypt20deb1.6.5-2ubuntu0.2, 1.6.5-2ubuntu0.3, 1.6.5-2ubuntu0.4, 1.6.5-2ubuntu0.5+10 more1.6.5-2ubuntu0.6+esm1, 1.7.6-2+deb9u4, 1.8.1-4ubuntu1.3, 1.8.1-4ubuntu1.fips.3+2 more627
libgcryptrpm1.8.2-lp151.9.4.1, 1.8.3-2.el8, 1.8.3-4.el8, 1.8.5-4.el8+1 more0:1.8.5-7.el8_6, 1.10.1-1.171
libgcryptapk1.8.5-r0, 1.8.7-r0, 1.8.8-r01.8.8-r148
OSV records
ALPINE-CVE-2021-40528RHSA-2022:5311UBUNTU-CVE-2021-40528DLA-2691-1openSUSE-SU-2024:12540-1
Also known as
USN-5080-1, USN-5080-2

Charts affected

859 by stars
ChartLatestAffected imagesRadar Score
temporalwenerme0.15.11 of 13See more

temporal wenerme 0.15.1

1 of the 13 container images this version deploys carry CVE-2021-40528.

Container imageDigestPackageFixed in
library/cassandra:3.11.3ce85468c5bad
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4

Open the chart page →

22,665
kibanawiremindVerified publisher8.5.231 of 2See more

kibana wiremind 8.5.23

1 of the 2 container images this version deploys carry CVE-2021-40528.

Container imageDigestPackageFixed in
library/kibana:8.18.004c0fc150f3a
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1

Open the chart page →

6,323
nginxwiremindVerified publisher2.1.11 of 1See more

nginx wiremind 2.1.1

1 of the 1 container images this version deploys carry CVE-2021-40528.

Container imageDigestPackageFixed in
library/nginx:1.17-alpine763e7f0188e3
libgcrypt@1.8.5-r0
1.8.8-r1

Open the chart page →

966
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2021-40528.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
libgcrypt@1.8.5-6.el8
0:1.8.5-7.el8_6

Open the chart page →

11,592
upsourcexykongVerified publisher0.1.11 of 1See more

upsource xykong 0.1.1

1 of the 1 container images this version deploys carry CVE-2021-40528.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4

Open the chart page →

702
helmexampleycztest0.1.01 of 1See more

helmexample ycztest 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-40528.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4

Open the chart page →

702
mychartyi-test-chart0.1.01 of 1See more

mychart yi-test-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-40528.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4

Open the chart page →

702
helmexampleyunpeng-helmexample0.1.01 of 1See more

helmexample yunpeng-helmexample 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-40528.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4

Open the chart page →

702
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2021-40528.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
libgcrypt20@1.8.1-4ubuntu1.3
1.8.1-4ubuntu1.fips.3
yandex/clickhouse-server:21.3.204eccfffb01d7
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1

Open the chart page →

9,250

Container images carrying it

746 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
owncloud/server:10.15.051d9b74fc2a8
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
owntracks/frontend:2.12.048cbbb64f347
libgcrypt@1.8.5-r0
1.8.8-r1
1
oxfordsemantic/rdfox:5.6db17910eb855
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
oxfordsemantic/rdfox-init:5.6baf570ff968d
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
pachyderm/dash:1.9.094e9a281e5a4
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4
1
pachyderm/grpc-proxy:0.4.92b27f41d4d02
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4
1
pedrocesarti/jmeter-docker:3.314851f144f57
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4
1
phntom/keeweb:1.17.4-kix10c75ed6dd606
libgcrypt@1.8.7-r0
1.8.8-r1
1
pihole/pihole:v4.48c172c4cf344
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4
1
platform9community/admin-server:latestde3fa9b70df1
libgcrypt20@1.8.1-4ubuntu1.2
1.8.1-4ubuntu1.3
1
platform9community/api-gateway:latest40a4970de568
libgcrypt20@1.8.1-4ubuntu1.2
1.8.1-4ubuntu1.3
1
platform9community/customers-service:latest2089811e5cc6
libgcrypt20@1.8.1-4ubuntu1.2
1.8.1-4ubuntu1.3
1
platform9community/vets-service:latestd1165c94dfb3
libgcrypt20@1.8.1-4ubuntu1.2
1.8.1-4ubuntu1.3
1
platform9community/visits-service:latest8d11b50368c6
libgcrypt20@1.8.1-4ubuntu1.2
1.8.1-4ubuntu1.3
1
plexinc/pms-docker:1.25.4.5487-648a8f9f946ea59b96f2b
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
plexinc/pms-docker:1.19.5.3112-b23ab3896b598abb134ad
libgcrypt20@1.6.5-2ubuntu0.5
1.6.5-2ubuntu0.6+esm1
1
pnnlmiscscripts/anaconda:20200421-1700-nginx-1bbb6940d849f
libgcrypt@1.8.5-r0
1.8.8-r1
1
pnnlmiscscripts/gitlab-runner-operator:0.1.3-1155131891741
libgcrypt@1.8.3-4.el8
0:1.8.5-7.el8_6
1
pnnlmiscscripts/k8s-node-image:1.16.15-nginx-903b3fed5bdbc
libgcrypt@1.8.7-r0
1.8.8-r1
1
pnnlmiscscripts/k8s-node-image:1.14.10-nginx-78af4c559fff0
libgcrypt@1.8.5-r0
1.8.8-r1
1
pnnlmiscscripts/k8s-node-image:1.15.12-nginx-5d710d31000ce
libgcrypt@1.8.5-r0
1.8.8-r1
1
pozetroninc/keydb:v6.0.1653ae64f29da8
libgcrypt20@1.8.1-4ubuntu1.2
1.8.1-4ubuntu1.3
1
pposkrobko/risk-advisor:v1.0.0eaf260341dba
libgcrypt20@1.6.5-2ubuntu0.2
1.6.5-2ubuntu0.6+esm1
1
project2team4/react:latest3ff031a08887
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
psorab/elibrary:latest53b68896c4ce
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
ptthanh1511/freeradius-server:3.0.26-netdebug5741cbde85ab
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
puppet/puppet-agent:7.14.00b6fd9a6b7da
libgcrypt20@1.8.1-4ubuntu1.3
1.8.1-4ubuntu1.fips.3
1
radondb/clickhouse-server:v21.1.3.32-stable4732df471073
libgcrypt20@1.8.1-4ubuntu1.2
1.8.1-4ubuntu1.3
1
rakii8585/angular-node-webapp:latest026082a515ac
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4
1
rancher/local-path-provisioner:v0.0.5e66f32d19eb9
libgcrypt20@1.6.5-2ubuntu0.5
1.6.5-2ubuntu0.6+esm1
1
raykrueger/riemann:0.2.14c8baf3de57bb
libgcrypt20@1.7.6-2+deb9u2
1.7.6-2+deb9u4
1
redis/redis-stack-server:6.2.6-v251a58f32d412
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
rezachalak/bzen-mongo:1.0.034f694325191
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
richardchesterwood/k8s-fleetman-position-simulator:release20b540a28f5a6
libgcrypt20@1.7.6-2+deb9u1
1.7.6-2+deb9u4
1
richardchesterwood/k8s-fleetman-position-tracker:release336c43961214c
libgcrypt20@1.7.6-2+deb9u1
1.7.6-2+deb9u4
1
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
robotshop/rs-mongodb:latest119b545823cd
libgcrypt20@1.8.5-5ubuntu1
1.8.5-5ubuntu1.1
1
royalwang/sentinel-dashboard:1.8.4df99e2499f91
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4
1
rundeck/rundeck:3.2.74d64fe56f767
libgcrypt20@1.6.5-2ubuntu0.6
1.6.5-2ubuntu0.6+esm1
1
rundeck/rundeck:3.0.16b13e8059ad72
libgcrypt20@1.6.5-2ubuntu0.5
1.6.5-2ubuntu0.6+esm1
1
saiakhil46/pizza-app:main-1ffbdf3dc39ce11e5d0
libgcrypt@1.8.7-r0
1.8.8-r1
1
scrapinghub/splash:3.4.1a5f89bc84606
libgcrypt20@1.8.1-4ubuntu1.1
1.8.1-4ubuntu1.3
1
seafileltd/seafile-mc:9.0.106693911bcc40
libgcrypt20@1.8.5-5ubuntu1
1.8.5-5ubuntu1.1
1
seafileltd/seafile-mc:10.0.170628f29c663
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
seafileltd/seafile-mc:9.0.97ac833196f60
libgcrypt20@1.8.5-5ubuntu1
1.8.5-5ubuntu1.1
1
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
libgcrypt20@1.8.5-5ubuntu1
1.8.5-5ubuntu1.1
1
searx/searx:1.0.0-211-968b28993dbb3a6d9419
libgcrypt@1.8.8-r0
1.8.8-r1
1
seldonio/locust-core:0.81d0da98a2d76
libgcrypt20@1.6.5-2ubuntu0.5
1.6.5-2ubuntu0.6+esm1
1
seldonio/seldon-request-logger:1.11.24e985d2006a8
libgcrypt@1.8.5-4.el8
0:1.8.5-7.el8_6
1
shenxn/protonmail-bridge:1.8.7-1acf31af7c111
libgcrypt20@1.8.1-4ubuntu1.2
1.8.1-4ubuntu1.3
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.