CVE-2024-13176
MediumAdvisory
Published 20 Jan 2025In the index since 5 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 4.1
- base score, highest
- EPSS
- 0.006
- 48th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 2,400
- of 17,828 indexed, latest versions
- Container images
- 2,724
- deployed by those charts
- Fix available
- 2 of 5
- affected packages
openssl - security update
Carried by container images the latest versions of 2,400 of 17,828 indexed charts deploy, on 2,724 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| openssldeb | 1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+92 more | 1.1.1f-1ubuntu2.24, 1.1.1f-1ubuntu2.fips.24, 1.1.1w-0+deb11u3, 3.0.2-0ubuntu1.19+2 more | 1,792 |
| opensslapk | 3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+38 more | 3.0.19-r0, 3.1.8-r0, 3.3.2-r2, 3.3.2-r5+1 more | 931 |
| openssl1.0deb | 1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.7+5 more | no fix listed | 20 |
| nodejsdeb | 16.14.2-deb-1nodesource1, 16.18.0-deb-1nodesource1, 20.11.1-1nodesource1, 20.15.0-1nodesource1+1 more | no fix listed | 5 |
| edk2deb | 2022.11-6+deb12u2 | no fix listed | 1 |
- OSV records
- ALPINE-CVE-2024-13176CGA-82rc-p89h-xq36DEBIAN-CVE-2024-13176UBUNTU-CVE-2024-13176DLA-4176-1
- Also known as
- CGA-qxwv-h54f-gwqm, USN-7278-1
Charts affected
2,400 by stars
| Chart | Latest | Affected images | Radar Score |
|---|
Container images carrying it
2,724 by charts deploying them
A fixed version is listed for 2 of the 5 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| cloudflare/ | c18744ae1767 | openssl | 1.1.1w-0+deb11u3 | 1 |
| cloudnativelabs/ | 0ec7cd73f43f | openssl | 3.0.19-r0 | 1 |
| cloudve/ | af56e77ca587 | openssl | no fix listed | 1 |
| cloudve/ | d79c1c5881c0 | openssl | no fix listed | 1 |
| clsen2024/ | 1156cd87c8fb | openssl | 3.3.2-r2 | 1 |
| clsen2024/ | 0ba9eff852c5 | openssl | 3.3.2-r2 | 1 |
| clsen2024/ | 51b1d45961cd | openssl | 3.3.2-r2 | 1 |
| clsen2024/ | efb1586c8299 | openssl | 3.3.2-r2 | 1 |
| cm2network/ | 93df54a2e4fb | openssl | 1.1.1w-0+deb11u3 | 1 |
| cmosborn/ | 6ec0a8878ad2 | openssl | 1.1.1w-0+deb11u3 | 1 |
| codecov/ | 0475cb1c3136 | openssl | 3.1.8-r0 | 1 |
| codecov/ | 534bc4778073 | openssl | 3.0.19-r0 | 1 |
| codecov/ | de483faad6e5 | openssl | 3.1.8-r0 | 1 |
| codecov/ | 837f546b479b | openssl | 3.1.8-r0 | 1 |
| codercom/ | 1e2cc688008e | openssl | 1.1.1w-0+deb11u3 | 1 |
| coldatom/ | eae9e82da080 | openssl | 3.0.19-r0 | 1 |
| coldatom/ | 7c2fbbb41bcf | openssl | 3.0.19-r0 | 1 |
| collabora/ | 01dc4ab83977 | openssl | 3.0.16-1~deb12u1 | 1 |
| collabora/ | 05299b452f7f | openssl | 3.0.16-1~deb12u1 | 1 |
| cometbft/ | 22c2ac018f40 | openssl | 3.3.2-r5 | 1 |
| commerceexperts/ | 341eebe7239b | openssl | 3.3.2-r2 | 1 |
| commerceexperts/ | 9e33ad89baf6 | openssl | 3.1.8-r0 | 1 |
| contentsquareplatform/ | 24555f22d4be | openssl | 3.0.16-1~deb12u1 | 1 |
| cortezaproject/ | 0bcdcbcd3c63 | openssl | no fix listed | 1 |
| cortezaproject/ | 8eb7a26605c9 | openssl | 1.1.1f-1ubuntu2.24 | 1 |
| cortezaproject/ | cb9f200de5d2 | openssl | no fix listed | 1 |
| countly/ | f4cc7447c4f5 | openssl | 1.1.1w-0+deb11u3 | 1 |
| countly/ | e3c238248f99 | openssl | 1.1.1f-1ubuntu2.24 | 1 |
| countly/ | 2acbc11499b6 | openssl | 1.1.1w-0+deb11u3 | 1 |
| cradlepoint/ | 8f5720b0cd03 | openssl | no fix listed | 1 |
| crazymax/ | 841b10cdae76 | openssl | 3.1.8-r0 | 1 |
| crazymax/ | fb307f5b87bf | openssl | 3.0.19-r0 | 1 |
| cribl/ | 762747cb6796 | openssl openssl1.0 | no fix listed no fix listed | 1 |
| cryptexlabs/ | 189c07411d7c | openssl | 3.1.8-r0 | 1 |
| cryptexlabs/ | ed0bc94fd412 | openssl | 3.1.8-r0 | 1 |
| csiplugin/ | 1fa83d45417f | openssl | no fix listed | 1 |
| curlimages/ | 25d29daeb9b1 | openssl | 3.1.8-r0 | 1 |
| curlimages/ | 5af13420d29b | openssl | 3.0.19-r0 | 1 |
| curlimages/ | 83a505ba2ba6 | openssl | 3.3.2-r2 | 1 |
| curlimages/ | 8addc281f0ea | openssl | 3.3.2-r2 | 1 |
| cyclonedx/ | 9e0c4db6e688 | openssl | 1.1.1w-0+deb11u3 | 1 |
| cyverse/ | aa69d105b292 | openssl | no fix listed | 1 |
| czerwonk/ | 94f51e1ef1e2 | openssl | 3.1.8-r0 | 1 |
| dachichang/ | 7ccac90a935e | openssl | 3.0.16-1~deb12u1 | 1 |
| daledavies/ | 0a0c8ad93902 | openssl | 3.1.8-r0 | 1 |
| dannielkil/ | e3b479a55a69 | openssl | 1.1.1w-0+deb11u3 | 1 |
| dannielkil/ | 937993927694 | openssl | 3.0.16-1~deb12u1 | 1 |
| danny1dockerhub/ | e434683fcc89 | openssl | 3.0.19-r0 | 1 |
| dannyben/ | ebdf50556c02 | openssl | 3.3.2-r2 | 1 |
| danuk/ | dd0e6585c44f | openssl | 1.1.1w-0+deb11u3 | 1 |