StackRadar

CVE-2024-13176

Medium

Advisory

Published 20 Jan 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.1
base score, highest
EPSS
0.006
48th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,451
of 17,832 indexed, latest versions
Container images
2,775
deployed by those charts
Fix available
2 of 5
affected packages

openssl - security update

Carried by container images the latest versions of 2,451 of 17,832 indexed charts deploy, on 2,775 images.

Affected packageAffected versionsFixed inImages
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+92 more1.1.1f-1ubuntu2.24, 1.1.1f-1ubuntu2.fips.24, 1.1.1w-0+deb11u3, 3.0.2-0ubuntu1.19+2 more1,828
opensslapk3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+38 more3.0.19-r0, 3.1.8-r0, 3.3.2-r2, 3.3.2-r5+1 more946
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.7+5 moreno fix listed20
nodejsdeb16.14.2-deb-1nodesource1, 16.18.0-deb-1nodesource1, 20.11.1-1nodesource1, 20.15.0-1nodesource1+1 moreno fix listed5
edk2deb2022.11-6+deb12u2no fix listed1
OSV records
ALPINE-CVE-2024-13176CGA-82rc-p89h-xq36DEBIAN-CVE-2024-13176UBUNTU-CVE-2024-13176DLA-4176-1
Also known as
CGA-qxwv-h54f-gwqm, USN-7278-1

Charts affected

2,451 by stars
ChartLatestAffected imagesRadar Score
zoo-project-druzoo-projectOfficialVerified publisher0.10.41 of 6See more

zoo-project-dru zoo-project 0.10.4

1 of the 6 container images this version deploys carry CVE-2024-13176.

Container imageDigestPackageFixed in
zooproject/zoo-project:dru-19f3c4eed7c9ec9d1f0375bbe59f9d204a42bd3a9a507cb7e2dd
openssl@3.0.2-0ubuntu1.26
no fix listed

Open the chart page →

8,128

Container images carrying it

2,775 by charts deploying them

A fixed version is listed for 2 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/blakeblackshear/frigate:0.12.0c862771e38e8
openssl@1.1.1n-0+deb11u4
1.1.1w-0+deb11u3
1
ghcr.io/borgmatic-collective/borgmatic:1.9.9835b72878606
openssl@3.3.2-r4
3.3.2-r5
1
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
openssl@1.1.1f-1ubuntu2.17
1.1.1f-1ubuntu2.24
1
ghcr.io/bryopsida/redis:main5ef6bdb63604
openssl@3.1.2-r0
3.1.8-r0
1
ghcr.io/buanet/iobroker:v9.1.2ca7dc7362968
openssl@3.0.13-1~deb12u1
3.0.16-1~deb12u1
1
ghcr.io/camptocamp/tetragon-policy-builder:master0e99f12bb040
openssl@3.0.15-1~deb12u1
3.0.16-1~deb12u1
1
ghcr.io/camunda-community-hub/zeebe-simple-monitor:2.6.2d9d796a1b846
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.19
1
ghcr.io/caninehq/canine:latest68b19aee1c64
openssl@3.0.13-1~deb12u1
3.0.16-1~deb12u1
1
ghcr.io/celestiaorg/celestia-node:v0.16.041177982c584
openssl@3.3.1-r3
3.3.2-r2
1
ghcr.io/cfi2017/opencve-scheduler:3.0.08d943799621b
openssl@3.0.15-1~deb12u1
3.0.16-1~deb12u1
1
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
openssl@3.0.15-1~deb12u1
3.0.16-1~deb12u1
1
ghcr.io/chaos-mesh/chaos-dashboard:v2.7.211cdbbc479b3
openssl@3.0.15-1~deb12u1
3.0.16-1~deb12u1
1
ghcr.io/chatwoot/pgvector:14.4.0-debian-11-r0f759f1510d09
openssl@1.1.1n-0+deb11u2
1.1.1w-0+deb11u3
1
ghcr.io/chgl/magnifhir:v1.5.213f121613edd
openssl@3.0.2-0ubuntu1.15
3.0.2-0ubuntu1.19
1
ghcr.io/chronicleprotocol/oracles-updates-exporter:0.0.4992d0e793af6
openssl@3.3.2-r0
3.3.2-r2
1
ghcr.io/clastix/kamaji-console:v0.2.129ecf8d4fa65
openssl@3.1.4-r1
3.1.8-r0
1
ghcr.io/cloudnative-pg/postgresql:14.5b3b30d04b362
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u3
1
ghcr.io/clusternet/clusternet-controller-manager:v1.0.02ce077d3d02d
openssl@3.3.2-r4
3.3.2-r5
1
ghcr.io/clusternet/clusternet-hub:v1.0.059f75504c5d4
openssl@3.3.2-r4
3.3.2-r5
1
ghcr.io/clusternet/clusternet-scheduler:v1.0.0a6ae5aff81ce
openssl@3.3.2-r4
3.3.2-r5
1
ghcr.io/codingducksrl/wordpress:6.0.23113c0960507
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u3
1
ghcr.io/colenio/slo-reporting:0.3.316b64d194a27d
openssl@3.0.15-1~deb12u1
3.0.16-1~deb12u1
1
ghcr.io/conductionnl/berichtservice-nginx:latest833d26df3840
openssl@1.1.1n-0+deb11u1
1.1.1w-0+deb11u3
1
ghcr.io/conductionnl/contactcatalogus-nginx:latest480c84fa9e63
openssl@1.1.1n-0+deb11u1
1.1.1w-0+deb11u3
1
ghcr.io/conductionnl/digispoof-interface-nginx:latest8fa4597217a4
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u3
1
ghcr.io/conductionnl/eav-component-nginx:latestd785c893096c
openssl@1.1.1n-0+deb11u2
1.1.1w-0+deb11u3
1
ghcr.io/conductionnl/education-component-nginx:latest38900bc76ee0
openssl@1.1.1n-0+deb11u1
1.1.1w-0+deb11u3
1
ghcr.io/conductionnl/medewerkercatalogus-nginx:latest06c3b27462e6
openssl@1.1.1n-0+deb11u1
1.1.1w-0+deb11u3
1
ghcr.io/conductionnl/skeleton-pip:devce1ebe9387a2
openssl@1.1.1n-0+deb11u2
1.1.1w-0+deb11u3
1
ghcr.io/conductionnl/user-component-nginx:latestb721579df8c3
openssl@1.1.1n-0+deb11u1
1.1.1w-0+deb11u3
1
ghcr.io/conductionnl/waardepapieren-nginx:latestaf31cf6cd59f
openssl@1.1.1k-1+deb11u1
1.1.1w-0+deb11u3
1
ghcr.io/conductionnl/webresourcecatalogus-nginx:latest6de60c83128d
openssl@1.1.1n-0+deb11u1
1.1.1w-0+deb11u3
1
ghcr.io/cosmo-workspace/cosmo-traefik-plugins:v0.9.1435518f49e23
openssl@3.1.0-r4
3.1.8-r0
1
ghcr.io/cosmo-workspace/dev-code-server:v0.0.316fda01ae58a
openssl@3.0.15-1~deb12u1
3.0.16-1~deb12u1
1
ghcr.io/cubeengine/sponge:1.20.2-11.0.0-RC13755c85f2b82064
openssl@3.1.3-r0
3.1.8-r0
1
ghcr.io/cunningpike/fediblockhole:0.4.22abc5f0350dc
openssl@1.1.1n-0+deb11u3
1.1.1w-0+deb11u3
1
ghcr.io/curium-rocks/k8s-mutating-webhook:mainaaab005242ae
openssl@3.1.4-r5
3.1.8-r0
1
ghcr.io/curium-rocks/k8s-validating-webhook:main8344061b2f22
openssl@3.1.4-r5
3.1.8-r0
1
ghcr.io/curium-rocks/mitre-siphon:main503c00321502
openssl@3.1.1-r1
3.1.8-r0
1
ghcr.io/daocloud/crproxy/crproxy:v0.8.0ee1eb3c9c9a1
openssl@3.3.1-r0
3.3.2-r2
1
ghcr.io/daocloud/dao-2048:v1.4.121275bc02f75
openssl@3.0.8-r0
3.0.19-r0
1
ghcr.io/dask/dask:2024.1.0080150de7d86
openssl@1.1.1f-1ubuntu2.20
1.1.1f-1ubuntu2.24
1
ghcr.io/dask/dask-gateway-server:2024.1.0881e7acfc5a0
openssl@1.1.1w-0+deb11u1
1.1.1w-0+deb11u3
1
ghcr.io/dask/dask-notebook:2024.1.0f53bde3acd4f
openssl@3.0.2-0ubuntu1.12
3.0.2-0ubuntu1.19
1
ghcr.io/data-fair/data-fair:3cc9498b64b5b
openssl@3.1.3-r0
3.1.8-r0
1
ghcr.io/data-fair/elasticsearch:7.17.1aa45adaf59a7
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.24
1
ghcr.io/data-fair/metrics:0a8d40779eeae
openssl@3.1.1-r1
3.1.8-r0
1
ghcr.io/data-fair/portals:18b621866ceb2
openssl@3.0.8-r3
3.0.19-r0
1
ghcr.io/data-fair/processings:15a9216989707
openssl@3.1.3-r0
3.1.8-r0
1
ghcr.io/debridmediamanager/zurg-testing:v0.9.3-final5c47ef99443a
openssl@3.3.1-r0
3.3.2-r2
1

syft 1.42.1 · advisories as of 23 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.