CVE-2024-0727
MediumAdvisory
Published 26 Jan 2024In the index since 5 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 5.5
- base score, highest
- EPSS
- 0.032
- 87th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 1,540
- of 17,790 indexed, latest versions
- Container images
- 1,552
- deployed by those charts
- Fix available
- 5 of 6
- affected packages
Null pointer dereference in PKCS12 parsing
Carried by container images the latest versions of 1,540 of 17,790 indexed charts deploy, on 1,552 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| openssldeb | 1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+75 more | 1.0.1f-1ubuntu2.27+esm10, 1.0.2g-1ubuntu4.20+esm11, 1.1.1-1ubuntu2.1~18.04.23+esm4, 1.1.1f-1ubuntu2.21+4 more | 895 |
| opensslapk | 3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+17 more | 3.0.12-r4, 3.1.4-r5, 3.2.1-r0 | 430 |
| cryptographypypi | 1.7.2, 1.9, 2.1.4, 2.2.2+44 more | 42.0.2 | 314 |
| openssl1.0deb | 1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more | 1.0.2n-1ubuntu5.13+esm1 | 15 |
| nodejsdeb | 16.14.2-deb-1nodesource1, 16.18.0-deb-1nodesource1, 20.11.1-1nodesource1, 20.15.0-1nodesource1+1 more | no fix listed | 5 |
| openssl-1_1rpm | 1.1.0i-lp151.8.3.1, 1.1.1d-11.6.1 | 1.1.1d-150200.11.85.1, 1.1.1w-7.1 | 3 |
- OSV records
- ALPINE-CVE-2024-0727CGA-695v-9975-r7j4DEBIAN-CVE-2024-0727GHSA-9v9h-cgj8-h64pUBUNTU-CVE-2024-0727openSUSE-SU-2024:13662-1SUSE-SU-2024:0832-1
- Also known as
- CGA-h3v7-jg5r-3grr, PYSEC-2026-1285, USN-6622-1, USN-6632-1, USN-6709-1, USN-7018-1
Charts affected
1,540 by stars
Container images carrying it
1,552 by charts deploying them
A fixed version is listed for 5 of the 6 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| public.ecr.aws/ | 046ef5c9ed50 | openssl | 3.0.13-1~deb12u1 | 1 |
| public.ecr.aws/ | efcecf98b912 | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm4 | 1 |
| public.ecr.aws/ | 573779e57fae | openssl | 1.1.1f-1ubuntu2.21 | 1 |
| public.ecr.aws/ | f74851ce31f5 | openssl | 3.0.13-1~deb12u1 | 1 |
| public.ecr.aws/ | 27f8de509169 | openssl | 3.0.13-1~deb12u1 | 1 |
| quay.io/ | 70fd7c00418d | openssl | no fix listed | 1 |
| quay.io/ | 578934444f04 | openssl | no fix listed | 1 |
| quay.io/ | 7302e0c8e5a7 | cryptography | 42.0.2 | 1 |
| quay.io/ | 5b6701d8fb31 | openssl | 3.0.2-0ubuntu1.14 | 1 |
| quay.io/ | acaf37352569 | openssl | 3.0.2-0ubuntu1.14 | 1 |
| quay.io/ | 28a674af1df2 | cryptography | 42.0.2 | 1 |
| quay.io/ | 351d6685dc6f | openssl | 3.0.2-0ubuntu1.14 | 1 |
| quay.io/ | d6fd2a9e3273 | cryptography | 42.0.2 | 1 |
| quay.io/ | 13aaae779248 | cryptography | 42.0.2 | 1 |
| quay.io/ | d9f0bec83ef0 | openssl | no fix listed | 1 |
| quay.io/ | a2d3a4c67b0f | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm4 | 1 |
| quay.io/ | 60950ef63764 | openssl | 3.0.2-0ubuntu1.14 | 1 |
| quay.io/ | d53cb940196c | openssl | 3.1.4-r5 | 1 |
| quay.io/ | 0cca71497e9e | openssl | 3.0.12-r4 | 1 |
| quay.io/ | cd36290dc849 | openssl | 3.1.4-r5 | 1 |
| quay.io/ | 93889c3d8a34 | openssl | 3.0.2-0ubuntu1.14 | 1 |
| quay.io/ | d422ee50c2c3 | cryptography | 42.0.2 | 1 |
| quay.io/ | 086acb1278fe | openssl | 3.1.4-r5 | 1 |
| quay.io/ | d7d93debf1f4 | openssl | 3.1.4-r5 | 1 |
| quay.io/ | ed8f5118e3a4 | openssl | 3.0.12-r4 | 1 |
| quay.io/ | 80ddeb90d18d | openssl | 3.0.12-r4 | 1 |
| quay.io/ | 9663f06adcb1 | cryptography | 42.0.2 | 1 |
| quay.io/ | 2528c6e57587 | cryptography | 42.0.2 | 1 |
| quay.io/ | e532a2dc4761 | openssl | 3.1.4-r5 | 1 |
| quay.io/ | cb4c638ffb1f | openssl | 3.1.4-r5 | 1 |
| quay.io/ | 476ae867ae56 | openssl | 3.0.12-r4 | 1 |
| quay.io/ | a1c3843b03bc | openssl | 1.0.2g-1ubuntu4.20+esm11 | 1 |
| quay.io/ | cae8c0622533 | cryptography | 42.0.2 | 1 |
| quay.io/ | defc3263e0e9 | openssl | 3.0.12-r4 | 1 |
| quay.io/ | c6a934439421 | openssl | 1.0.2g-1ubuntu4.20+esm11 | 1 |
| quay.io/ | 8c772955184e | openssl | 3.1.4-r5 | 1 |
| quay.io/ | f241b0b20326 | cryptography | 42.0.2 | 1 |
| quay.io/ | 5b986cd14a08 | openssl | 3.0.12-r4 | 1 |
| quay.io/ | e0d9b93dbf2b | openssl | 3.0.13-1~deb12u1 | 1 |
| quay.io/ | 8c8d08b95c0b | openssl | 3.1.4-r5 | 1 |
| registry.gitlab.com/ | fcf464708a21 | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm4 | 1 |
| registry.gitlab.com/ | 80ef8ceffc92 | openssl | 3.1.4-r5 | 1 |
| registry.gitlab.com/ | f6385712935f | openssl | 1.1.1f-1ubuntu2.21 | 1 |
| registry.gitlab.com/ | 4eaf9c911f33 | cryptography | 42.0.2 | 1 |
| registry.gitlab.com/ | 0886cbbc5f95 | cryptography | 42.0.2 | 1 |
| registry.gitlab.com/ | f91b602ca572 | openssl | 3.1.4-r5 | 1 |
| registry.k8s.io/ | 81a13703d6b8 | openssl | 3.0.13-1~deb12u1 | 1 |
| registry.k8s.io/ | e3dccb1a21d1 | openssl | 3.0.13-1~deb12u1 | 1 |
| registry.k8s.io/ | fd9722fd02e3 | openssl | 3.0.13-1~deb12u1 | 1 |
| registry.k8s.io/ | 15be4666c530 | openssl | 3.0.12-r4 | 1 |