CVE-2023-3446
MediumAdvisory
Published 19 Jul 2023In the index since 5 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 5.3
- base score, highest
- EPSS
- 0.065
- 93rd percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 1,202
- of 17,790 indexed, latest versions
- Container images
- 1,218
- deployed by those charts
- Fix available
- 4 of 5
- affected packages
libopenssl-1_1-devel-1.1.1u-5.1 on GA media
Carried by container images the latest versions of 1,202 of 17,790 indexed charts deploy, on 1,218 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| opensslapk | 1.1.1l-r7, 1.1.1l-r8, 1.1.1m-r1, 1.1.1n-r0+20 more | 1.1.1u-r2, 3.0.9-r3, 3.1.1-r3 | 627 |
| openssldeb | 1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+60 more | 1.0.1f-1ubuntu2.27+esm10, 1.0.2g-1ubuntu4.20+esm10, 1.1.1-1ubuntu2.1~18.04.23+esm3, 1.1.1f-1ubuntu2.20+4 more | 580 |
| openssl1.0deb | 1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more | 1.0.2n-1ubuntu5.13+esm1 | 15 |
| nodejsdeb | 16.14.2-deb-1nodesource1, 16.18.0-deb-1nodesource1, 20.11.1-1nodesource1, 20.15.0-1nodesource1+1 more | no fix listed | 5 |
| openssl-1_1rpm | 1.1.0i-14.6.1, 1.1.0i-lp151.8.3.1 | 1.1.0i-150100.14.59.1, 1.1.1u-5.1 | 9 |
- OSV records
- ALPINE-CVE-2023-3446DEBIAN-CVE-2023-3446UBUNTU-CVE-2023-3446openSUSE-SU-2024:13064-1SUSE-SU-2023:2961-1
- Also known as
- USN-6435-1, USN-6435-2, USN-6450-1, USN-6709-1, USN-7018-1
Charts affected
1,202 by stars
| Chart | Latest | Affected images | Radar Score |
|---|---|---|---|
| alertmanager-matrix-forwarderzloi-space | 1.0.1 | 1 of 2See more | 3,118 |
| clickhousezloi-space | 1.2.0 | 2 of 3See more | 9,256 |
Container images carrying it
1,218 by charts deploying them
A fixed version is listed for 4 of the 5 affected packages.