StackRadar

CVE-2023-3446

Medium

Advisory

Published 19 Jul 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.065
93rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,202
of 17,787 indexed, latest versions
Container images
1,218
deployed by those charts
Fix available
4 of 5
affected packages

libopenssl-1_1-devel-1.1.1u-5.1 on GA media

Carried by container images the latest versions of 1,202 of 17,787 indexed charts deploy, on 1,218 images.

Affected packageAffected versionsFixed inImages
opensslapk1.1.1l-r7, 1.1.1l-r8, 1.1.1m-r1, 1.1.1n-r0+20 more1.1.1u-r2, 3.0.9-r3, 3.1.1-r3627
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+60 more1.0.1f-1ubuntu2.27+esm10, 1.0.2g-1ubuntu4.20+esm10, 1.1.1-1ubuntu2.1~18.04.23+esm3, 1.1.1f-1ubuntu2.20+4 more580
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more1.0.2n-1ubuntu5.13+esm115
nodejsdeb16.14.2-deb-1nodesource1, 16.18.0-deb-1nodesource1, 20.11.1-1nodesource1, 20.15.0-1nodesource1+1 moreno fix listed5
openssl-1_1rpm1.1.0i-14.6.1, 1.1.0i-lp151.8.3.11.1.0i-150100.14.59.1, 1.1.1u-5.19
OSV records
ALPINE-CVE-2023-3446DEBIAN-CVE-2023-3446UBUNTU-CVE-2023-3446openSUSE-SU-2024:13064-1SUSE-SU-2023:2961-1
Also known as
USN-6435-1, USN-6435-2, USN-6450-1, USN-6709-1, USN-7018-1

Charts affected

1,202 by stars
ChartLatestAffected imagesRadar Score
alertmanager-matrix-forwarderzloi-space1.0.11 of 2See more

alertmanager-matrix-forwarder zloi-space 1.0.1

1 of the 2 container images this version deploys carry CVE-2023-3446.

Container imageDigestPackageFixed in
zl0i/alertmanager-matrix-forwarder:v1.0.0e94047931739
openssl@1.1.1l-r7
1.1.1u-r2

Open the chart page →

3,118
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2023-3446.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
openssl@1.1.1-1ubuntu2.1~18.04.14
1.1.1-1ubuntu2.1~18.04.23+esm3
yandex/clickhouse-server:21.3.204eccfffb01d7
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.20

Open the chart page →

9,250

Container images carrying it

1,218 by charts deploying them

A fixed version is listed for 4 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
dellcloud/pages:monitor6ba7b22caacd
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.20
79
flyway/flyway:6.4.422d97ceb0c47
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.23+esm3
79
codeurjc/toposervice:v1.0:v1.239fb4c11e6a49
openssl@1.1.1-1ubuntu2.1~18.04.21
1.1.1-1ubuntu2.1~18.04.23+esm3
13
oomk8s/readiness-check:2.0.2875814cc853d
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm10
11
library/mongo:5.0.6-focal8e70544b6c76
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.20
10
pnnlmiscscripts/anaconda:20201029-1700-nginx-105827b9efa7b
openssl@1.1.1t-r0
1.1.1u-r2
10
curlimages/curl:7.85.09fab1b73f45e
openssl@1.1.1q-r0
1.1.1u-r2
6
library/registry:2.8.1dbaa3e69f563
openssl@3.1.0-r4
3.1.1-r3
6
oomk8s/readiness-check:2.0.07daa08b81954
openssl@1.0.2g-1ubuntu4.10
1.0.2g-1ubuntu4.20+esm10
6
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
openssl@1.1.1l-r7
1.1.1u-r2
6
quay.io/devtron/kubectl:latest2ad610626658
openssl@1.1.1q-r0
1.1.1u-r2
6
quay.io/devtron/migrator:v4.16.2fbeaef7a8566
openssl@3.1.0-r4
3.1.1-r3
6
library/mongo:4.44be76f674fc4
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.fips.20
5
solsson/kafka:latest41e5d8f6f290
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.20
5
ghcr.io/conductionnl/commonground-gateway-php:latest947882bf2c37
openssl@1.1.1s-r0
1.1.1u-r2
5
curlimages/curl:7.87.0:multiarch-7.87.0f7f265d5c64e
openssl@1.1.1s-r0
1.1.1u-r2
4
grafana/loki:2.6.11ee60f980950
openssl@1.1.1n-r0
1.1.1u-r2
4
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
openssl@1.0.2g-1ubuntu4.13
1.0.2g-1ubuntu4.20+esm10
4
hyperledger/fabric-couchdb:0.4.15f6c724592abf
openssl@1.0.2g-1ubuntu4.15
1.0.2g-1ubuntu4.20+esm10
4
hyperledger/fabric-orderer:2.46ec3fe59ea55
openssl@1.1.1t-r0
1.1.1u-r2
4
hyperledger/fabric-peer:2.46ff36af21eb1
openssl@1.1.1t-r0
1.1.1u-r2
4
hyperledger/fabric-tools:2.4b1194f509085
openssl@1.1.1s-r0
1.1.1u-r2
4
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.12+Fips1
4
library/mongo:5.0-focal5e15a3f014ed
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.fips.20
4
library/mongo:4.2.12-bionic628741415fc9
openssl@1.1.1-1ubuntu2.1~18.04.8
1.1.1-1ubuntu2.1~18.04.23+esm3
4
library/mongo:4.4.66efa05203990
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.23+esm3
4
mastercloudapps/planner:v1.2340a950b311b2
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.12
4
oscarsotosanchez/weatherservice:v1.0911ec961d10b
openssl@1.1.1-1ubuntu2.1~18.04.8
1.1.1-1ubuntu2.1~18.04.23+esm3
4
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
openssl@3.1.1-r1
3.1.1-r3
4
ciscolabs/rtsp-client:latesta7b60ec88285
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.20
3
ciscolabs/rtsp-server:latestb59fc10bb821
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.20
3
cloudve/cloudlaunch-server:latest4a3d7fae90bb
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.20
3
codeurjc/planner:v1.0800cf520c245
openssl@3.0.2-0ubuntu1.8
3.0.2-0ubuntu1.12
3
dgraph/dgraph:v21.12.03b55ea83fffe
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.20
3
dpage/pgadmin4:6.12781369df9994
openssl@1.1.1q-r0
1.1.1u-r2
3
groundnuty/k8s-wait-for:v2.0c14d7271e401
openssl@1.1.1q-r0
1.1.1u-r2
3
jacobalberty/unifi:v10.0.162896c0ab82d33
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.fips.20
3
lachlanevenson/k8s-kubectl:v1.23.2e4d83478963b
openssl@1.1.1l-r7
1.1.1u-r2
3
library/docker:20.10-dind:20-dindaf96c680a7e1
openssl@3.1.0-r4
3.1.1-r3
3
library/postgres:10-alpine63cfb6eac6b3
openssl@1.1.1s-r0
1.1.1u-r2
3
natsio/nats-server-config-reloader:0.13.0b3359eeb10bf
openssl@3.1.1-r1
3.1.1-r3
3
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
openssl@1.0.2g-1ubuntu4.14
1.0.2g-1ubuntu4.20+esm10
3
paulkellerman/resultserver-app:1.0381eeccb0618
openssl@1.1.1s-r0
1.1.1u-r2
3
paulkellerman/webserver-app:latest5a37b74f61b9
openssl@1.1.1s-r0
1.1.1u-r2
3
pnnlmiscscripts/anaconda9:1683907016.7470503-nginx-19a2fe06a1472
openssl@3.0.8-r3
3.0.9-r3
3
provectuslabs/kafka-ui:latest8f2ff02d64b0
openssl@1.1.1t-r3
1.1.1u-r2
3
selenium/hub:3.141.5902f251d48d5f
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.20
3
xenondb/percona:5.7.330e26872a2b67
openssl@1.1.1f-1ubuntu2.3
1.1.1f-1ubuntu2.20
3
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
openssl@3.0.9-1
3.0.10-1~deb12u1
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
openssl@3.0.2-0ubuntu1.7
3.0.2-0ubuntu1.12
3

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.