CVE-2023-2975
MediumAdvisory
Published 14 Jul 2023In the index since 5 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 5.3
- base score, highest
- EPSS
- 0.006
- 48th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 362
- of 17,781 indexed, latest versions
- Container images
- 359
- deployed by those charts
- Fix available
- 2 of 3
- affected packages
The matching OSV records carry no description.
Carried by container images the latest versions of 362 of 17,781 indexed charts deploy, on 359 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| opensslapk | 3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+5 more | 3.0.9-r2, 3.1.1-r2 | 225 |
| openssldeb | 3.0.2-0ubuntu1, 3.0.2-0ubuntu1.2, 3.0.2-0ubuntu1.5, 3.0.2-0ubuntu1.6+6 more | 3.0.2-0ubuntu1.12, 3.0.2-0ubuntu1.12+Fips1, 3.0.10-1~deb12u1 | 132 |
| nodejsdeb | 16.14.2-deb-1nodesource1, 16.18.0-deb-1nodesource1, 20.11.1-1nodesource1, 20.15.0-1nodesource1+1 more | no fix listed | 5 |
- OSV records
- ALPINE-CVE-2023-2975DEBIAN-CVE-2023-2975UBUNTU-CVE-2023-2975
- Also known as
- USN-6450-1
Charts affected
362 by stars
| Chart | Latest | Affected images | Radar Score |
|---|---|---|---|
| jaegerwikimedia | 3.1.2 | 1 of 4See more | 9,248 |
| wiremind-baremetalwiremindVerified publisher | 2.0.2 | 1 of 1See more | 487 |
| playwright-synthetic-monitoringwork-adventure | 1.0.1 | 1 of 1See more | 14,100 |
| oauth2xdVerified publisher | 1.0.0 | 1 of 1See more | 2,007 |
| owlxdVerified publisher | 0.5.1 | 2 of 2See more | 3,880 |
| passportxdVerified publisher | 0.2.16 | 2 of 2See more | 3,974 |
| tabbyxdVerified publisher | 1.0.6 | 1 of 2See more | 7,673 |
| treexdVerified publisher | 0.1.10 | 1 of 1See more | 1,997 |
| zooxdVerified publisher | 0.4.0 | 1 of 1See more | 1,955 |
| zahori-consulzahoriVerified publisher | 1.0.1 | 2 of 2See more | 5,033 |
| zahori-processzahoriVerified publisher | 1.0.1 | 1 of 1See more | 3,480 |
| zahori-serverzahoriVerified publisher | 1.0.1 | 2 of 2See more | 5,846 |
Container images carrying it
359 by charts deploying them
A fixed version is listed for 2 of the 3 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| socialmediamacroscope/ | ca863306314b | openssl | 3.0.10-1~deb12u1 | 1 |
| socialmediamacroscope/ | fa490acac2f8 | openssl | 3.0.10-1~deb12u1 | 1 |
| srini78/ | 5d1cbdc6833a | openssl | 3.0.9-r2 | 1 |
| su541/ | 371ee33f83c1 | openssl | 3.1.1-r2 | 1 |
| subsquid/ | 0889a857f192 | openssl | 3.0.9-r2 | 1 |
| subsquid/ | fa549779e9b1 | openssl | 3.0.9-r2 | 1 |
| supabase/ | 7174d551d720 | openssl | 3.0.9-r2 | 1 |
| svtechnmaa/ | 410a25b51f9f | openssl | 3.0.2-0ubuntu1.12+Fips1 | 1 |
| sysintelligent/ | 77fb30df847d | openssl | 3.0.9-r2 | 1 |
| tawfiq58/ | c707555f6853 | openssl | 3.0.9-r2 | 1 |
| temporalio/ | 836af062af30 | openssl | 3.1.1-r2 | 1 |
| temporalio/ | ddeebf8bad8f | openssl | 3.1.1-r2 | 1 |
| thesisrobot/ | 16b368e4d52c | openssl | 3.0.2-0ubuntu1.12 | 1 |
| thirtythreeforty/ | f564c4f538de | openssl | 3.0.9-r2 | 1 |
| thmmniii/ | 5438517d9fc2 | openssl | 3.0.2-0ubuntu1.12 | 1 |
| thongngo3301/ | a341af5976e3 | openssl | 3.0.10-1~deb12u1 | 1 |
| timescale/ | a8e3322e1cf9 | openssl | 3.0.2-0ubuntu1.12 | 1 |
| timescale/ | cdb9ae118899 | openssl | 3.0.2-0ubuntu1.12 | 1 |
| timescale/ | ed719c0cd19d | openssl | 3.0.2-0ubuntu1.12 | 1 |
| tobirachel/ | 7d9f37154994 | openssl | 3.0.9-r2 | 1 |
| tranhailong/ | 028662749be2 | openssl | 3.0.9-r2 | 1 |
| trinodb/ | ee80ab5eeab2 | openssl | 3.0.2-0ubuntu1.12 | 1 |
| typesense/ | 035ccfbc3fd8 | openssl | 3.0.2-0ubuntu1.12 | 1 |
| udhos/ | 12e120d39fdb | openssl | 3.1.1-r2 | 1 |
| udhos/ | e432012dd34a | openssl | 3.0.9-r2 | 1 |
| untergeek/ | de5197f06c3c | openssl | 3.0.9-r2 | 1 |
| vaultwarden/ | 7cd450642c54 | openssl | 3.0.9-r2 | 1 |
| vlebediantsev/ | 007c6670ff48 | openssl | 3.0.10-1~deb12u1 | 1 |
| vlebediantsev/ | 945675fd2636 | openssl | 3.0.10-1~deb12u1 | 1 |
| vlebediantsev/ | 54f69d116c50 | openssl | 3.0.10-1~deb12u1 | 1 |
| volkerraschek/ | e4cf12c6249d | openssl | 3.0.9-r2 | 1 |
| vrijbrp/ | 5c770c2ae48c | openssl | 3.0.9-r2 | 1 |
| wallarm/ | ba00516618ea | openssl | 3.0.9-r2 | 1 |
| wistefan/ | e0887302b2d8 | openssl | 3.0.2-0ubuntu1.12 | 1 |
| workadventure/ | 92b664c2a06f | nodejs | no fix listed | 1 |
| xeladock/ | 4baf531453f1 | openssl | 3.0.2-0ubuntu1.12 | 1 |
| xeladock/ | c259a67b1dff | openssl | 3.0.2-0ubuntu1.12 | 1 |
| xvilo/ | a138e57d3204 | openssl | 3.0.9-r2 | 1 |
| zabbix/ | e5b594057c9c | openssl | 3.0.2-0ubuntu1.12 | 1 |
| zabbix/ | d59ffa07f615 | openssl | 3.0.2-0ubuntu1.12 | 1 |
| zabbix/ | 99e9a090b516 | openssl | 3.0.2-0ubuntu1.12 | 1 |
| zabbix/ | ee4baa872280 | openssl | 3.0.2-0ubuntu1.12 | 1 |
| zahoriaut/ | 351f8a220ed7 | openssl | 3.1.1-r2 | 1 |
| zahoriaut/ | b2de13916f3e | openssl | 3.0.9-r2 | 1 |
| zedeus/ | 3dd3d5ea33be | openssl | 3.0.9-r2 | 1 |
| gcr.io/ | f33e88324a40 | openssl | 3.0.2-0ubuntu1.12+Fips1 | 1 |
| gcr.io/ | 852f7923fad3 | openssl | 3.0.2-0ubuntu1.12+Fips1 | 1 |
| ghcr.io/ | a06c8ebef427 | openssl | 3.1.1-r2 | 1 |
| ghcr.io/ | 74aff24d4b97 | openssl | 3.0.9-r2 | 1 |
| ghcr.io/ | 68f52b993a7f | openssl | 3.0.2-0ubuntu1.12+Fips1 | 1 |