CVE-2024-13176
MediumAdvisory
Published 20 Jan 2025In the index since 5 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 4.1
- base score, highest
- EPSS
- 0.006
- 48th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 2,375
- of 17,805 indexed, latest versions
- Container images
- 2,697
- deployed by those charts
- Fix available
- 2 of 5
- affected packages
openssl - security update
Carried by container images the latest versions of 2,375 of 17,805 indexed charts deploy, on 2,697 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| openssldeb | 1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+92 more | 1.1.1f-1ubuntu2.24, 1.1.1f-1ubuntu2.fips.24, 1.1.1w-0+deb11u3, 3.0.2-0ubuntu1.19+2 more | 1,778 |
| opensslapk | 3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+38 more | 3.0.19-r0, 3.1.8-r0, 3.3.2-r2, 3.3.2-r5+1 more | 918 |
| openssl1.0deb | 1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.7+4 more | no fix listed | 20 |
| nodejsdeb | 16.14.2-deb-1nodesource1, 16.18.0-deb-1nodesource1, 20.11.1-1nodesource1, 20.15.0-1nodesource1+1 more | no fix listed | 5 |
| edk2deb | 2022.11-6+deb12u2 | no fix listed | 1 |
- OSV records
- ALPINE-CVE-2024-13176CGA-82rc-p89h-xq36DEBIAN-CVE-2024-13176UBUNTU-CVE-2024-13176DLA-4176-1
- Also known as
- CGA-qxwv-h54f-gwqm, USN-7278-1
Charts affected
2,375 by stars
Container images carrying it
2,697 by charts deploying them
A fixed version is listed for 2 of the 5 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| vientoprojects/ | eb2a71531741 | openssl | no fix listed | 1 |
| vinanrra/ | f9534490bd2b | openssl | no fix listed | 1 |
| vincentgwzhang/ | a9139f2cd98f | openssl | 3.3.2-r2 | 1 |
| vineyardcloudnative/ | 9d419aa18faa | openssl | 3.0.16-1~deb12u1 | 1 |
| visualregressiontracker/ | 941aeb8c8bf9 | openssl | 3.0.16-1~deb12u1 | 1 |
| visualregressiontracker/ | f983a1d4306e | openssl | 3.1.8-r0 | 1 |
| visualregressiontracker/ | ca7835844257 | openssl | 3.0.19-r0 | 1 |
| vlebediantsev/ | e7f20450d2ae | openssl | 1.1.1w-0+deb11u3 | 1 |
| vlebediantsev/ | 10393a89b4a8 | openssl | 1.1.1w-0+deb11u3 | 1 |
| vlebediantsev/ | df8bf38c535b | openssl | 1.1.1w-0+deb11u3 | 1 |
| vlebediantsev/ | 007c6670ff48 | openssl | 3.0.16-1~deb12u1 | 1 |
| vlebediantsev/ | 945675fd2636 | openssl | 3.0.16-1~deb12u1 | 1 |
| vlebediantsev/ | 427af418b75e | openssl | 1.1.1w-0+deb11u3 | 1 |
| vlebediantsev/ | 54f69d116c50 | openssl | 3.0.16-1~deb12u1 | 1 |
| vlebediantsev/ | 9319437f3c8f | openssl | 1.1.1w-0+deb11u3 | 1 |
| volkerraschek/ | c4f10aebf87b | openssl | 1.1.1w-0+deb11u3 | 1 |
| volkerraschek/ | e4cf12c6249d | openssl | 3.0.19-r0 | 1 |
| voltha/ | c4e41e92f046 | openssl | no fix listed | 1 |
| voltha/ | 59ab2a00f712 | openssl | no fix listed | 1 |
| voltha/ | 37f80524c207 | openssl | no fix listed | 1 |
| voltha/ | 9ee8c1f4428c | openssl | no fix listed | 1 |
| voltha/ | e038acb950d3 | openssl | no fix listed | 1 |
| voltha/ | 655c3048a602 | openssl | no fix listed | 1 |
| voltha/ | ff596b62de59 | openssl | no fix listed | 1 |
| voska/ | 7142a431e2c5 | openssl | 3.0.16-1~deb12u1 | 1 |
| vrijbrp/ | bc85c89530b9 | openssl | 3.1.8-r0 | 1 |
| vrijbrp/ | c6603cb829ea | openssl | 3.1.8-r0 | 1 |
| vrijbrp/ | 5c770c2ae48c | openssl | 3.0.19-r0 | 1 |
| wagnermanganelli164/ | d4ef27a4f180 | openssl | 3.3.2-r2 | 1 |
| wallarm/ | a591b9c91570 | openssl | 3.1.8-r0 | 1 |
| wallarm/ | ba00516618ea | openssl | 3.0.19-r0 | 1 |
| wallarm/ | ea9608c82e40 | openssl | 1.1.1f-1ubuntu2.24 | 1 |
| wallarm/ | 097cadc42336 | openssl | 3.1.8-r0 | 1 |
| wallarm/ | 4314f3d2b918 | openssl | 3.3.2-r2 | 1 |
| wateim/ | 2520149ee574 | openssl | 3.0.2-0ubuntu1.19 | 1 |
| wavefronthq/ | d1064d28f6eb | openssl | no fix listed | 1 |
| wazuh/ | 21994f40e0da | openssl | 1.1.1f-1ubuntu2.24 | 1 |
| wistefan/ | e0887302b2d8 | openssl | 3.0.2-0ubuntu1.19 | 1 |
| witcherek7/ | 42a744f29ac0 | openssl | 1.1.1w-0+deb11u3 | 1 |
| wmbusmeters/ | d82715d9ae22 | openssl | 3.3.2-r2 | 1 |
| wolveix/ | 199be1064b18 | openssl | 3.0.2-0ubuntu1.19 | 1 |
| wolveix/ | 464d11e36e10 | openssl | no fix listed | 1 |
| woojoong/ | ec230db19652 | openssl | no fix listed | 1 |
| workadventure/ | 92b664c2a06f | nodejs openssl | no fix listed 3.0.2-0ubuntu1.19 | 1 |
| xeladock/ | 4baf531453f1 | openssl | 3.0.2-0ubuntu1.19 | 1 |
| xeladock/ | c259a67b1dff | openssl | 3.0.2-0ubuntu1.19 | 1 |
| xeotek/ | 39a3b37a17c5 | openssl | no fix listed | 1 |
| xeotek/ | 4c6b04d9ce55 | openssl | 1.1.1f-1ubuntu2.24 | 1 |
| xom4ekp2p/ | d0e0aa238b02 | openssl | 3.0.16-1~deb12u1 | 1 |
| xom4ekp2p/ | 2745b5fd8785 | openssl | 3.0.16-1~deb12u1 | 1 |