CVE-2024-13176
MediumAdvisory
Published 20 Jan 2025In the index since 5 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 4.1
- base score, highest
- EPSS
- 0.006
- 48th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 2,477
- of 17,837 indexed, latest versions
- Container images
- 2,812
- deployed by those charts
- Fix available
- 3 of 6
- affected packages
openssl - security update
Carried by container images the latest versions of 2,477 of 17,837 indexed charts deploy, on 2,812 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| openssldeb | 1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+92 more | 1.1.1f-1ubuntu2.24, 1.1.1f-1ubuntu2.fips.24, 1.1.1w-0+deb11u3, 3.0.2-0ubuntu1.19+2 more | 1,851 |
| opensslapk | 3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+38 more | 3.0.19-r0, 3.1.8-r0, 3.3.2-r2, 3.3.2-r5+1 more | 958 |
| openssl1.0deb | 1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.7+5 more | no fix listed | 21 |
| nodejsdeb | 16.14.2-deb-1nodesource1, 16.18.0-deb-1nodesource1, 20.11.1-1nodesource1, 20.15.0-1nodesource1+1 more | no fix listed | 5 |
| edk2deb | 2022.11-6+deb12u2 | no fix listed | 1 |
| openssl-1_1rpm | 1.1.1l-150500.17.22.1 | 1.1.1l-150500.17.40.1 | 2 |
- OSV records
- ALPINE-CVE-2024-13176CGA-82rc-p89h-xq36DEBIAN-CVE-2024-13176UBUNTU-CVE-2024-13176DLA-4176-1SUSE-SU-2025:0345-1
- Also known as
- CGA-qxwv-h54f-gwqm, USN-7278-1
Charts affected
2,477 by stars
Container images carrying it
2,812 by charts deploying them
A fixed version is listed for 3 of the 6 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| clickhouse/ | a50b4a1579a0 | openssl | no fix listed | 1 |
| clickhouse/ | a65ca89ddbe8 | openssl | 3.0.2-0ubuntu1.19 | 1 |
| clickhouse/ | a73b5c0fb6f8 | openssl | no fix listed | 1 |
| clickhouse/ | b627d7a9bc0e | openssl | no fix listed | 1 |
| clickhouse/ | d73903d1b61d | openssl | no fix listed | 1 |
| clickhouse/ | dc5658853ce1 | openssl | 3.0.2-0ubuntu1.19 | 1 |
| clickhouse/ | e019438e1e05 | openssl | no fix listed | 1 |
| cloudflare/ | 14d9c6b01b29 | openssl | 1.1.1w-0+deb11u3 | 1 |
| cloudflare/ | 5d5f70a59d5e | openssl | 1.1.1w-0+deb11u3 | 1 |
| cloudflare/ | 665dda65335e | openssl | 1.1.1w-0+deb11u3 | 1 |
| cloudflare/ | c18744ae1767 | openssl | 1.1.1w-0+deb11u3 | 1 |
| cloudnativelabs/ | 0ec7cd73f43f | openssl | 3.0.19-r0 | 1 |
| cloudreve/ | 09093aec5a20 | openssl | 3.1.8-r0 | 1 |
| cloudve/ | af56e77ca587 | openssl | no fix listed | 1 |
| cloudve/ | d79c1c5881c0 | openssl | no fix listed | 1 |
| clsen2024/ | 1156cd87c8fb | openssl | 3.3.2-r2 | 1 |
| clsen2024/ | 0ba9eff852c5 | openssl | 3.3.2-r2 | 1 |
| clsen2024/ | 51b1d45961cd | openssl | 3.3.2-r2 | 1 |
| clsen2024/ | efb1586c8299 | openssl | 3.3.2-r2 | 1 |
| cm2network/ | 93df54a2e4fb | openssl | 1.1.1w-0+deb11u3 | 1 |
| cmosborn/ | 6ec0a8878ad2 | openssl | 1.1.1w-0+deb11u3 | 1 |
| codecov/ | 0475cb1c3136 | openssl | 3.1.8-r0 | 1 |
| codecov/ | 534bc4778073 | openssl | 3.0.19-r0 | 1 |
| codecov/ | de483faad6e5 | openssl | 3.1.8-r0 | 1 |
| codecov/ | 837f546b479b | openssl | 3.1.8-r0 | 1 |
| codercom/ | 1e2cc688008e | openssl | 1.1.1w-0+deb11u3 | 1 |
| coldatom/ | eae9e82da080 | openssl | 3.0.19-r0 | 1 |
| coldatom/ | 7c2fbbb41bcf | openssl | 3.0.19-r0 | 1 |
| collabora/ | 01dc4ab83977 | openssl | 3.0.16-1~deb12u1 | 1 |
| collabora/ | 05299b452f7f | openssl | 3.0.16-1~deb12u1 | 1 |
| collabora/ | 98c77406cbe0 | openssl | 3.0.16-1~deb12u1 | 1 |
| cometbft/ | 22c2ac018f40 | openssl | 3.3.2-r5 | 1 |
| commerceexperts/ | 341eebe7239b | openssl | 3.3.2-r2 | 1 |
| commerceexperts/ | 9e33ad89baf6 | openssl | 3.1.8-r0 | 1 |
| contentsquareplatform/ | 24555f22d4be | openssl | 3.0.16-1~deb12u1 | 1 |
| cortezaproject/ | 0bcdcbcd3c63 | openssl | no fix listed | 1 |
| cortezaproject/ | 8eb7a26605c9 | openssl | 1.1.1f-1ubuntu2.24 | 1 |
| cortezaproject/ | cb9f200de5d2 | openssl | no fix listed | 1 |
| countly/ | f4cc7447c4f5 | openssl | 1.1.1w-0+deb11u3 | 1 |
| countly/ | e3c238248f99 | openssl | 1.1.1f-1ubuntu2.24 | 1 |
| countly/ | 2acbc11499b6 | openssl | 1.1.1w-0+deb11u3 | 1 |
| cradlepoint/ | 8f5720b0cd03 | openssl | no fix listed | 1 |
| crate/ | ea396813f6f0 | openssl | 3.0.16-1~deb12u1 | 1 |
| crazymax/ | 841b10cdae76 | openssl | 3.1.8-r0 | 1 |
| crazymax/ | fb307f5b87bf | openssl | 3.0.19-r0 | 1 |
| cribl/ | 762747cb6796 | openssl openssl1.0 | no fix listed no fix listed | 1 |
| cryptexlabs/ | 189c07411d7c | openssl | 3.1.8-r0 | 1 |
| cryptexlabs/ | ed0bc94fd412 | openssl | 3.1.8-r0 | 1 |
| curlimages/ | 25d29daeb9b1 | openssl | 3.1.8-r0 | 1 |
| curlimages/ | 5af13420d29b | openssl | 3.0.19-r0 | 1 |