CVE-2022-45061
HighAdvisory
Published 9 Nov 2022In the index since 5 Sept 2026
- Severity
- High
- worst across findings
- CVSS
- 7.5
- base score, highest
- EPSS
- 0.027
- 85th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 246
- of 17,781 indexed, latest versions
- Container images
- 235
- deployed by those charts
- Fix available
- 15 of 16
- affected packages
Red Hat Security Advisory: python27:2.7 security update
Carried by container images the latest versions of 246 of 17,781 indexed charts deploy, on 235 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| python3.8deb | 3.8.5-1~20.04, 3.8.5-1~20.04.2, 3.8.5-1~20.04.3, 3.8.10-0ubuntu1~20.04+4 more | 3.8.10-0ubuntu1~20.04.6 | 62 |
| python2.7deb | 2.7.6-8, 2.7.6-8ubuntu0.4, 2.7.12-1ubuntu0~16.04.2, 2.7.12-1ubuntu0~16.04.3+11 more | 2.7.6-8ubuntu0.6+esm13, 2.7.12-1ubuntu0~16.04.18+esm3, 2.7.17-1~18.04ubuntu1.10, 2.7.18-1~20.04.7+esm4+1 more | 51 |
| python-chardetrpm | 3.0.4-7.el8 | 0:3.0.4-10.module+el8.1.0+3111+de3f2d8e | 44 |
| python-pysocksrpm | 1.6.8-3.el8 | 0:1.6.8-6.module+el8.1.0+3111+de3f2d8e | 44 |
| python-idnarpm | 2.5-5.el8, 2.5-7.el8_10 | 0:2.5-7.module+el8.1.0+3111+de3f2d8e | 43 |
| python3.6deb | 3.6.6-1~18.04, 3.6.7-1~18.04, 3.6.9-1~18.04, 3.6.9-1~18.04ubuntu1+5 more | 3.6.9-1~18.04ubuntu1.9 | 35 |
| python-requestsrpm | 2.20.0-2.1.el8_1, 2.20.0-3.el8_6, 2.20.0-3.el8_8 | 0:2.20.0-3.module+el8.2.0+4577+feefd9b8 | 34 |
| python3apk | 3.9.5-r1, 3.9.5-r2, 3.9.7-r4, 3.9.13-r1+5 more | 3.9.16-r0, 3.10.9-r0 | 28 |
| python3.5deb | 3.5.2-2ubuntu0~16.04.1, 3.5.2-2ubuntu0~16.04.4, 3.5.2-2ubuntu0~16.04.5, 3.5.2-2ubuntu0~16.04.9 | 3.5.2-2ubuntu0~16.04.13+esm6 | 25 |
| python3.10deb | 3.10.4-3, 3.10.4-3ubuntu0.1, 3.10.6-1~22.04, 3.10.6-1~22.04.1 | 3.10.6-1~22.04.2 | 8 |
| python3.4deb | 3.4.0-2ubuntu1, 3.4.3-1ubuntu1~14.04.5, 3.4.3-1ubuntu1~14.04.6, 3.4.3-1ubuntu1~14.04.7 | no fix listed | 7 |
| python2rpm | 2.7.17-2.module+el8.3.0+7681+f1f02ded, 2.7.18-4.module+el8.4.0+9577+0b56c8de | 0:2.7.18-12.module+el8.8.0+17629+2cfc9d03 | 2 |
| python2-piprpm | 9.0.3-18.module+el8.3.0+7707+eb4bba01 | 0:9.0.3-19.module+el8.6.0+13001+ad200bd9 | 2 |
| python2-setuptoolsrpm | 39.0.1-12.module+el8.3.0+7075+8484f0d0 | 0:39.0.1-13.module+el8.4.0+9442+27d0e81c | 1 |
| python3.11deb | 3.11.0~rc1-1~22.04 | 3.11.0~rc1-1~22.04.1~esm1 | 1 |
| python-wheelrpm | 1:0.31.1-2.module+el8.1.0+3724+3c097090 | 1:0.31.1-3.module+el8.5.0+12203+77770ab7 | 1 |
- OSV records
- ALPINE-CVE-2022-45061RHSA-2023:2860UBUNTU-CVE-2022-45061
- Also known as
- USN-5767-1, USN-5767-2, USN-6891-1, USN-7212-1
Charts affected
246 by stars
Container images carrying it
235 by charts deploying them
A fixed version is listed for 15 of the 16 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| istio/ | 88c6c693e67a | python3.6 | 3.6.9-1~18.04ubuntu1.9 | 1 |
| jakowenko/ | b858bac9e32a | python3.8 | 3.8.10-0ubuntu1~20.04.6 | 1 |
| jedi132000/ | dc2a81e92f23 | python3.8 | 3.8.10-0ubuntu1~20.04.6 | 1 |
| jmferrer/ | 030f68ec6998 | python3.5 | 3.5.2-2ubuntu0~16.04.13+esm6 | 1 |
| jupyterhub/ | b6b4a1a34bf0 | python3.8 | 3.8.10-0ubuntu1~20.04.6 | 1 |
| jupyterhub/ | e4770285aaf7 | python3.8 | 3.8.10-0ubuntu1~20.04.6 | 1 |
| kennethreitz/ | 599fe5e50731 | python3.6 | 3.6.9-1~18.04ubuntu1.9 | 1 |
| kubeoperator/ | be8f0d624640 | python3.6 | 3.6.9-1~18.04ubuntu1.9 | 1 |
| library/ | b095ff3248c6 | python2.7 | 2.7.18-1~20.04.7+esm4 | 1 |
| library/ | b6dd45cc35b3 | python3.6 | 3.6.9-1~18.04ubuntu1.9 | 1 |
| library/ | c3e526769bfd | python3 | 3.10.9-r0 | 1 |
| librenms/ | 4f1f3d667cc7 | python3 | 3.9.16-r0 | 1 |
| linuxserver/ | a847b5b2d860 | python2.7 python3.6 | 2.7.17-1~18.04ubuntu1.10 3.6.9-1~18.04ubuntu1.9 | 1 |
| linuxserver/ | 938810eca3d3 | python3.8 | 3.8.10-0ubuntu1~20.04.6 | 1 |
| linuxserver/ | b801bbcf6386 | python2.7 | 2.7.17-1~18.04ubuntu1.10 | 1 |
| linuxserver/ | 0ac871624394 | python3.6 | 3.6.9-1~18.04ubuntu1.9 | 1 |
| linuxserver/ | 2ce561a95e7b | python3.6 | 3.6.9-1~18.04ubuntu1.9 | 1 |
| linuxserver/ | f93d2560e233 | python3.6 | 3.6.9-1~18.04ubuntu1.9 | 1 |
| longhornio/ | dca34321452c | python3.8 | 3.8.10-0ubuntu1~20.04.6 | 1 |
| longhornio/ | ede61fe2a472 | python3.6 | 3.6.9-1~18.04ubuntu1.9 | 1 |
| lsstsqre/ | b75bf8aaafa4 | python2.7 python3.8 | 2.7.18-1~20.04.7+esm4 3.8.10-0ubuntu1~20.04.6 | 1 |
| matrixdb/ | 95b2e38e913d | python3 | 3.10.9-r0 | 1 |
| mediagis/ | c15e941485ef | python3.8 | 3.8.10-0ubuntu1~20.04.6 | 1 |
| muluder/ | 43b597a93da7 | python2.7 python3.5 | 2.7.12-1ubuntu0~16.04.18+esm3 3.5.2-2ubuntu0~16.04.13+esm6 | 1 |
| netboxcommunity/ | 3d652dca5351 | python3.10 | 3.10.6-1~22.04.2 | 1 |
| nyurik/ | e0553236e3eb | python3 | 3.9.16-r0 | 1 |
| ohmyform/ | afe53f4acdb1 | python3 | 3.9.16-r0 | 1 |
| omecproject/ | 28a90cc26716 | python2.7 | 2.7.18-1~20.04.7+esm4 | 1 |
| omecproject/ | bcc5f19fd676 | python3.6 | 3.6.9-1~18.04ubuntu1.9 | 1 |
| omecproject/ | 5715e5648aa0 | python2.7 python3.5 | 2.7.12-1ubuntu0~16.04.18+esm3 3.5.2-2ubuntu0~16.04.13+esm6 | 1 |
| omecproject/ | d109a8e57e71 | python2.7 python3.5 | 2.7.12-1ubuntu0~16.04.18+esm3 3.5.2-2ubuntu0~16.04.13+esm6 | 1 |
| opendatacube/ | 5d810e8504b8 | python3.6 | 3.6.9-1~18.04ubuntu1.9 | 1 |
| opendatacube/ | 91870111837c | python3.6 | 3.6.9-1~18.04ubuntu1.9 | 1 |
| opendatacube/ | 1b90cdf68831 | python3.6 | 3.6.9-1~18.04ubuntu1.9 | 1 |
| openelevation/ | 82fb21612e86 | python3.8 | 3.8.10-0ubuntu1~20.04.6 | 1 |
| openemr/ | 89eaa6d9a4e3 | python3 | 3.9.16-r0 | 1 |
| openkm/ | 3bc465a7461b | python3.8 | 3.8.10-0ubuntu1~20.04.6 | 1 |
| openwhisk/ | c80dba0de3aa | python2.7 | 2.7.17-1~18.04ubuntu1.10 | 1 |
| opsmx11/ | 5c50ca123d88 | python3.4 | no fix listed | 1 |
| phntom/ | 49b6488f618b | python3 | 3.10.9-r0 | 1 |
| pnnlmiscscripts/ | 8af4b7551d40 | python-chardet python-idna python-pysocks python-requests | 0:3.0.4-10.module+el8.1.0+3111+de3f2d8e 0:2.5-7.module+el8.1.0+3111+de3f2d8e 0:1.6.8-6.module+el8.1.0+3111+de3f2d8e 0:2.20.0-3.module+el8.2.0+4577+feefd9b8 | 1 |
| project2team4/ | 3ff031a08887 | python3.8 | 3.8.10-0ubuntu1~20.04.6 | 1 |
| ptthanh1511/ | 5741cbde85ab | python2.7 | 2.7.18-1~20.04.7+esm4 | 1 |
| puppet/ | 0b6fd9a6b7da | python3.6 | 3.6.9-1~18.04ubuntu1.9 | 1 |
| rancher/ | e66f32d19eb9 | python2.7 python3.5 | 2.7.12-1ubuntu0~16.04.18+esm3 3.5.2-2ubuntu0~16.04.13+esm6 | 1 |
| resouer/ | e2f198b49ba7 | python2.7 python3.4 | 2.7.6-8ubuntu0.6+esm13 no fix listed | 1 |
| scrapinghub/ | a5f89bc84606 | python3.6 | 3.6.9-1~18.04ubuntu1.9 | 1 |
| seafileltd/ | 6693911bcc40 | python3.8 | 3.8.10-0ubuntu1~20.04.6 | 1 |
| seafileltd/ | 7ac833196f60 | python3.8 | 3.8.10-0ubuntu1~20.04.6 | 1 |
| seafileltd/ | ed0fcda5e6a9 | python3.8 | 3.8.10-0ubuntu1~20.04.6 | 1 |