StackRadar

CVE-2021-40528

Medium

Advisory

Published 25 Jun 2021In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.014
71st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
859
of 17,787 indexed, latest versions
Container images
746
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: libgcrypt security update

Carried by container images the latest versions of 859 of 17,787 indexed charts deploy, on 746 images.

Affected packageAffected versionsFixed inImages
libgcrypt20deb1.6.5-2ubuntu0.2, 1.6.5-2ubuntu0.3, 1.6.5-2ubuntu0.4, 1.6.5-2ubuntu0.5+10 more1.6.5-2ubuntu0.6+esm1, 1.7.6-2+deb9u4, 1.8.1-4ubuntu1.3, 1.8.1-4ubuntu1.fips.3+2 more627
libgcryptrpm1.8.2-lp151.9.4.1, 1.8.3-2.el8, 1.8.3-4.el8, 1.8.5-4.el8+1 more0:1.8.5-7.el8_6, 1.10.1-1.171
libgcryptapk1.8.5-r0, 1.8.7-r0, 1.8.8-r01.8.8-r148
OSV records
ALPINE-CVE-2021-40528RHSA-2022:5311UBUNTU-CVE-2021-40528DLA-2691-1openSUSE-SU-2024:12540-1
Also known as
USN-5080-1, USN-5080-2

Charts affected

859 by stars
ChartLatestAffected imagesRadar Score
temporalwenerme0.15.11 of 13See more

temporal wenerme 0.15.1

1 of the 13 container images this version deploys carry CVE-2021-40528.

Container imageDigestPackageFixed in
library/cassandra:3.11.3ce85468c5bad
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4

Open the chart page →

22,665
kibanawiremindVerified publisher8.5.231 of 2See more

kibana wiremind 8.5.23

1 of the 2 container images this version deploys carry CVE-2021-40528.

Container imageDigestPackageFixed in
library/kibana:8.18.004c0fc150f3a
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1

Open the chart page →

6,323
nginxwiremindVerified publisher2.1.11 of 1See more

nginx wiremind 2.1.1

1 of the 1 container images this version deploys carry CVE-2021-40528.

Container imageDigestPackageFixed in
library/nginx:1.17-alpine763e7f0188e3
libgcrypt@1.8.5-r0
1.8.8-r1

Open the chart page →

966
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2021-40528.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
libgcrypt@1.8.5-6.el8
0:1.8.5-7.el8_6

Open the chart page →

11,592
upsourcexykongVerified publisher0.1.11 of 1See more

upsource xykong 0.1.1

1 of the 1 container images this version deploys carry CVE-2021-40528.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4

Open the chart page →

702
helmexampleycztest0.1.01 of 1See more

helmexample ycztest 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-40528.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4

Open the chart page →

702
mychartyi-test-chart0.1.01 of 1See more

mychart yi-test-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-40528.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4

Open the chart page →

702
helmexampleyunpeng-helmexample0.1.01 of 1See more

helmexample yunpeng-helmexample 0.1.0

1 of the 1 container images this version deploys carry CVE-2021-40528.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4

Open the chart page →

702
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2021-40528.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
libgcrypt20@1.8.1-4ubuntu1.3
1.8.1-4ubuntu1.fips.3
yandex/clickhouse-server:21.3.204eccfffb01d7
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1

Open the chart page →

9,250

Container images carrying it

746 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
library/redis:5.0.34be7fdb131e7
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4
1
library/sonarqube:6.7.6-community0ae5169e3d0f
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4
1
library/ubuntu:bionic152dc042452c
libgcrypt20@1.8.1-4ubuntu1.3
1.8.1-4ubuntu1.fips.3
1
lightbend/curl:7.47.0b0c9894ac8dd
libgcrypt20@1.6.5-2ubuntu0.5
1.6.5-2ubuntu0.6+esm1
1
linuxserver/calibre:version-v5.21.0a847b5b2d860
libgcrypt20@1.8.1-4ubuntu1.2
1.8.1-4ubuntu1.3
1
linuxserver/calibre-web:version-0.6.12938810eca3d3
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
linuxserver/cloud9:latest45c5fe102ff3
libgcrypt20@1.8.1-4ubuntu1.3
1.8.1-4ubuntu1.fips.3
1
linuxserver/codimd:latestb801bbcf6386
libgcrypt20@1.8.1-4ubuntu1.2
1.8.1-4ubuntu1.3
1
linuxserver/deluge:18.04.10ac871624394
libgcrypt20@1.8.1-4ubuntu1.3
1.8.1-4ubuntu1.fips.3
1
linuxserver/deluge:version-2.0.3-2201906121747ubuntu18.04.12ce561a95e7b
libgcrypt20@1.8.1-4ubuntu1.3
1.8.1-4ubuntu1.fips.3
1
linuxserver/jellyfin:10.7.72427dde159a2
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
linuxserver/lazylibrarian:version-1152df82f93d2560e233
libgcrypt20@1.8.1-4ubuntu1.2
1.8.1-4ubuntu1.3
1
linuxserver/ombi:3.0.4572-ls452fbb21fb4903
libgcrypt20@1.8.1-4ubuntu1.1
1.8.1-4ubuntu1.3
1
linuxserver/plex:1.25.24a13ced2326c
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
linuxserver/unifi-controller:8.0.240ae315a3a456
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
linuxserver/unifi-controller:7.3.83ab105cc50322
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
litmuschaos/mongo:4.2.899961210d467
libgcrypt20@1.8.1-4ubuntu1.2
1.8.1-4ubuntu1.3
1
lmenezes/cerebro:0.8.36684131caf5f
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4
1
longhornio/longhorn-manager:v1.2.3dca34321452c
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
longhornio/longhorn-manager:v1.1.1ede61fe2a472
libgcrypt20@1.8.1-4ubuntu1.2
1.8.1-4ubuntu1.3
1
longhornio/longhorn-ui:v1.1.165560eabe3ee
libgcrypt@1.8.7-r0
1.8.8-r1
1
longhornio/upgrade-responder:v0.2.05875cef29348
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
lsstsqre/lsp-postgres:latest54283318b16b
libgcrypt@1.8.5-r0
1.8.8-r1
1
lsstsqre/nublado2:2.0.1b75bf8aaafa4
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
lumenvox/cloud-assure-api:2.0.0fcb9fb54a9fd
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
lumenvox/cloud-assure-identity:2.0.0147854a3c916
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
lumenvox/cloud-audit:2.0.079428add7f38
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
lumenvox/cloud-binary-storage:2.0.053decadc102d
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
lumenvox/cloud-configuration:2.0.017fbce1a8bc6
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
lumenvox/cloud-deployment:2.0.0ea8110886d38
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
lumenvox/cloud-engine-resource:2.0.0e2e5abe27abc
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
lumenvox/cloud-management-api:2.0.0b9a23345eabd
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
lumenvox/cloud-reporting:2.0.07a9ffdc2178a
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
lumenvox/cloud-reporting-api:2.0.0dbbaf5462ad6
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
lumenvox/cloud-transaction:2.0.08b74f9d3ba09
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
lumenvox/cloud-voice-verifier:2.0.014170ad34903
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
maksymhencha/educative-helm-bookapp:0.0.27f096a681192
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
maptiler/server:4.8.07e206140057b
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
mediagis/nominatim:3.7c15e941485ef
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
mesosphere/dex-controller:v0.2.0e8c22c136bcd
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4
1
milvusdb/milvus:v2.2.13a3a55e1c1497
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
minio/mc:RELEASE.2021-02-14T04-28-06Z2a374c124d44
libgcrypt@1.8.5-4.el8
0:1.8.5-7.el8_6
1
minio/mc:RELEASE.2022-05-09T04-08-26Z4b415310d8d0
libgcrypt@1.8.5-6.el8
0:1.8.5-7.el8_6
1
minio/minio:RELEASE.2022-01-04T07-41-07Z1484c87239ea
libgcrypt@1.8.5-6.el8
0:1.8.5-7.el8_6
1
minio/operator:v4.1.02adc5be088f5
libgcrypt@1.8.5-4.el8
0:1.8.5-7.el8_6
1
mintproject/graphql-engine:305c0dbeba1878eafe348f21fc300fbfc017d9dc83aade2c1855
libgcrypt20@1.8.5-5ubuntu1.1
1.8.5-5ubuntu1.fips.1.1
1
mirrorgitlabcontainers/gitaly:v13.2.283599461ef8b
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4
1
mirrorgitlabcontainers/gitlab-container-registry:v2.9.1-gitlab06b19a4bc805
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4
1
mirrorgitlabcontainers/gitlab-shell:v13.3.09f3654f1eafc
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4
1
mirrorgitlabcontainers/gitlab-sidekiq-ce:v13.2.294d1431683fa
libgcrypt20@1.7.6-2+deb9u3
1.7.6-2+deb9u4
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.