StackRadar

CVE-2023-2975

Medium

Advisory

Published 14 Jul 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.006
48th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
362
of 17,781 indexed, latest versions
Container images
359
deployed by those charts
Fix available
2 of 3
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 362 of 17,781 indexed charts deploy, on 359 images.

Affected packageAffected versionsFixed inImages
opensslapk3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+5 more3.0.9-r2, 3.1.1-r2225
openssldeb3.0.2-0ubuntu1, 3.0.2-0ubuntu1.2, 3.0.2-0ubuntu1.5, 3.0.2-0ubuntu1.6+6 more3.0.2-0ubuntu1.12, 3.0.2-0ubuntu1.12+Fips1, 3.0.10-1~deb12u1132
nodejsdeb16.14.2-deb-1nodesource1, 16.18.0-deb-1nodesource1, 20.11.1-1nodesource1, 20.15.0-1nodesource1+1 moreno fix listed5
OSV records
ALPINE-CVE-2023-2975DEBIAN-CVE-2023-2975UBUNTU-CVE-2023-2975
Also known as
USN-6450-1

Charts affected

362 by stars
ChartLatestAffected imagesRadar Score
jaegerwikimedia3.1.21 of 4See more

jaeger wikimedia 3.1.2

1 of the 4 container images this version deploys carry CVE-2023-2975.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.12+Fips1

Open the chart page →

9,248
wiremind-baremetalwiremindVerified publisher2.0.21 of 1See more

wiremind-baremetal wiremind 2.0.2

1 of the 1 container images this version deploys carry CVE-2023-2975.

Container imageDigestPackageFixed in
library/alpine:3.18.002bb6f428431
openssl@3.1.0-r4
3.1.1-r2

Open the chart page →

487
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2023-2975.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
nodejs@20.15.0-1nodesource1
no fix listed

Open the chart page →

14,100
oauth2xdVerified publisher1.0.01 of 1See more

oauth2 xd 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-2975.

Container imageDigestPackageFixed in
lishimeng/hufu:v1.2.13d5752dac834
openssl@3.0.8-r0
3.0.9-r2

Open the chart page →

2,007
owlxdVerified publisher0.5.12 of 2See more

owl xd 0.5.1

2 of the 2 container images this version deploys carry CVE-2023-2975.

Container imageDigestPackageFixed in
lishimeng/owl-console:v0.11.2c79a67657baf
openssl@3.0.8-r0
3.0.9-r2
lishimeng/owl-messager:v0.11.23d00485e64dc
openssl@3.0.8-r0
3.0.9-r2

Open the chart page →

3,880
passportxdVerified publisher0.2.162 of 2See more

passport xd 0.2.16

2 of the 2 container images this version deploys carry CVE-2023-2975.

Container imageDigestPackageFixed in
lishimeng/passport:v0.2.163e7d05ded625
openssl@3.0.8-r0
3.0.9-r2
lishimeng/passport-profile:v0.2.160970dfe5dc8f
openssl@3.0.8-r0
3.0.9-r2

Open the chart page →

3,974
tabbyxdVerified publisher1.0.61 of 2See more

tabby xd 1.0.6

1 of the 2 container images this version deploys carry CVE-2023-2975.

Container imageDigestPackageFixed in
lishimeng/tabby:v1.0.48145c3dc83c8
openssl@3.0.8-r0
3.0.9-r2

Open the chart page →

7,673
treexdVerified publisher0.1.101 of 1See more

tree xd 0.1.10

1 of the 1 container images this version deploys carry CVE-2023-2975.

Container imageDigestPackageFixed in
lishimeng/tree:v0.2.89b2f8be6c7d3
openssl@3.0.8-r0
3.0.9-r2

Open the chart page →

1,997
zooxdVerified publisher0.4.01 of 1See more

zoo xd 0.4.0

1 of the 1 container images this version deploys carry CVE-2023-2975.

Container imageDigestPackageFixed in
lishimeng/zoo:v0.4.0e0b8d2d8ca28
openssl@3.0.8-r0
3.0.9-r2

Open the chart page →

1,955
zahori-consulzahoriVerified publisher1.0.12 of 2See more

zahori-consul zahori 1.0.1

2 of the 2 container images this version deploys carry CVE-2023-2975.

Container imageDigestPackageFixed in
hashicorp/consul:1.15.3ddff34041c5c
openssl@3.0.9-r1
3.0.9-r2
hashicorp/consul-k8s-control-plane:1.1.262bed1bf8106
openssl@3.0.9-r1
3.0.9-r2

Open the chart page →

5,033
zahori-processzahoriVerified publisher1.0.11 of 1See more

zahori-process zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2023-2975.

Container imageDigestPackageFixed in
zahoriaut/zahori-process:0.1.13351f8a220ed7
openssl@3.1.1-r1
3.1.1-r2

Open the chart page →

3,480
zahori-serverzahoriVerified publisher1.0.12 of 2See more

zahori-server zahori 1.0.1

2 of the 2 container images this version deploys carry CVE-2023-2975.

Container imageDigestPackageFixed in
flyway/flyway:9.14.1-alpine80f12c80502b
openssl@3.0.7-r2
3.0.9-r2
zahoriaut/zahori-server:0.1.17b2de13916f3e
openssl@3.0.8-r3
3.0.9-r2

Open the chart page →

5,846

Container images carrying it

359 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
iomesh/blockdevice-monitor-prober:v0.1.0584dbe19db7e
openssl@3.0.7-r0
3.0.9-r2
1
iomesh/prepare-csi:v1.0.3-rc0063b18afb6a1
openssl@3.1.1-r1
3.1.1-r2
1
iomesh/prepare-csi:v1.0.24206d42b92f1
openssl@3.1.1-r1
3.1.1-r2
1
istio/operator:1.18.270f9d1fe5fff
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.12
1
istio/pilot:1.16.0ac0284d75ec9
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.12
1
istio/pilot:1.17.1ce9d87606701
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.12
1
istio/pilot:1.15.2db08d6963975
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.12
1
josh5/unmanic:0.2.64d49c4816260
nodejs@20.11.1-1nodesource1
openssl@3.0.2-0ubuntu1.10
no fix listed
3.0.2-0ubuntu1.12
1
kubebb/bff-server:v0.2.0-202312040fbb732379bc
openssl@3.1.1-r1
3.1.1-r2
1
kubebb/component-store:latestfd8ecbd73213
openssl@3.1.1-r1
3.1.1-r2
1
kubebb/mesh-operator:v5.7.0163ebbfc7a82
openssl@3.1.1-r1
3.1.1-r2
1
kubesec/kubesec:v2.13.0c0f3b0673578
openssl@3.0.8-r0
3.0.9-r2
1
kubesuite/kubereport:latest0262424ee702
openssl@3.1.0-r4
3.1.1-r2
1
kubevious/collector:1.2.1f58226f9d84e
openssl@3.1.1-r1
3.1.1-r2
1
kubevious/guard:1.2.19bf567704de2
openssl@3.0.8-r3
3.0.9-r2
1
kubevious/workload-operator:1.0.20b0f4c507eb6
openssl@3.0.8-r3
3.0.9-r2
1
kusionstack/karpor:v0.6.4b707d3bf0abd
openssl@3.0.8-r3
3.0.9-r2
1
kvalitetsit/metadoc-app:maine89e351733ad
openssl@3.0.7-r2
3.0.9-r2
1
kyleslugg/klusterview:latestba8c36dfdfbd
openssl@3.0.7-r2
3.0.9-r2
1
kyso/imagebox:latest68091eace89c
openssl@3.0.7-r2
3.0.9-r2
1
kyso/kyso-nbdime:latest4aa9d38ee81d
openssl@3.0.7-r2
3.0.9-r2
1
lachlanevenson/k8s-kubectl:v1.22.1638b7962cd016
openssl@3.0.7-r0
3.0.9-r2
1
lavandadelpatio/torznab-atomohd:latest214eaef5444c
openssl@3.0.8-r3
3.0.9-r2
1
library/alpine:3.18.002bb6f428431
openssl@3.1.0-r4
3.1.1-r2
1
library/alpine:3.18.282d1e9d7ed48
openssl@3.1.1-r1
3.1.1-r2
1
library/docker:24.0.2-dind1d148deae16a
openssl@3.1.1-r1
3.1.1-r2
1
library/docker:20.10.21-dind3153fa63f546
openssl@3.0.7-r0
3.0.9-r2
1
library/docker:23.0.1-dindd9a0fd8bdd15
openssl@3.0.8-r1
3.0.9-r2
1
library/flink:1.14.6-scala_2.122461f02672b3
openssl@3.0.2-0ubuntu1.6
3.0.2-0ubuntu1.12
1
library/mariadb:10.11.21c33370a599c
openssl@3.0.2-0ubuntu1.9
3.0.2-0ubuntu1.12
1
library/mariadb:10.10.2bfc25a68e113
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.12
1
library/mariadb:10.9.4fbb8456ebdb1
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.12
1
library/mongo:6.0.12646902910d6a
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.12+Fips1
1
library/nats:2.9.11-alpineccbe811b8575
openssl@3.0.7-r2
3.0.9-r2
1
library/nats:2.9.20-alpined6c6ae7df4a0
openssl@3.1.1-r1
3.1.1-r2
1
library/nginx:1.25.167f9a4f10d14
openssl@3.0.9-1
3.0.10-1~deb12u1
1
library/postgres:12.14-alpine3.174b100eafe128
openssl@3.0.8-r3
3.0.9-r2
1
library/postgres:15.38775adb39f0d
openssl@3.0.9-1
3.0.10-1~deb12u1
1
library/rabbitmq:3.12.100742852455ad
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.12+Fips1
1
library/redis:6.0.16-alpine0f0e2fa71653
openssl@3.0.7-r2
3.0.9-r2
1
library/sonarqube:10.0.0-communityef9723cf4fe4
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.12
1
library/traefik:v2.10.11489caffaedb
openssl@3.0.9-r1
3.0.9-r2
1
library/zookeeper:3.8-temurin55d1e5b2e601
openssl@3.0.2-0ubuntu1.10
3.0.2-0ubuntu1.12
1
linuxserver/code-server:4.10.1a5e43a05ae79
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.12
1
linuxserver/healthchecks:2.7.2023033194696dab3c50
openssl@3.0.8-r3
3.0.9-r2
1
lishimeng/hufu:v1.2.13d5752dac834
openssl@3.0.8-r0
3.0.9-r2
1
lishimeng/owl-console:v0.11.2c79a67657baf
openssl@3.0.8-r0
3.0.9-r2
1
lishimeng/owl-messager:v0.11.23d00485e64dc
openssl@3.0.8-r0
3.0.9-r2
1
lishimeng/passport:v0.2.163e7d05ded625
openssl@3.0.8-r0
3.0.9-r2
1
lishimeng/passport-profile:v0.2.160970dfe5dc8f
openssl@3.0.8-r0
3.0.9-r2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.