StackRadar

CVE-2024-2236

Medium

Advisory

Published 6 Mar 2024In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.011
65th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,188
of 17,821 indexed, latest versions
Container images
2,182
deployed by those charts
Fix available
3 of 4
affected packages

Red Hat Security Advisory: libgcrypt security update

Carried by container images the latest versions of 2,188 of 17,821 indexed charts deploy, on 2,182 images.

Affected packageAffected versionsFixed inImages
libgcrypt20deb1.6.5-2ubuntu0.2, 1.6.5-2ubuntu0.3, 1.6.5-2ubuntu0.4, 1.6.5-2ubuntu0.5+23 more1.9.4-3ubuntu3.3, 1.10.3-2ubuntu0.2, 1.12.0-2ubuntu1.12,133
libgcryptrpm1.8.2-lp151.9.4.1, 1.8.2-lp152.16.8, 1.10.0-8.el9_0, 1.10.0-10.el9_2+1 more0:1.10.0-11.el9, 1.11.1-2.1, 1.12.1-160000.1.142
libgcrypt11deb1.5.3-2ubuntu4.1, 1.5.3-2ubuntu4.5, 1.5.3-2ubuntu4.6no fix listed7
libgpg-errorrpm1.54-160000.2.21.58-160000.1.11
OSV records
DEBIAN-CVE-2024-2236RHSA-2024:9404RLSA-2024:9404UBUNTU-CVE-2024-2236openSUSE-SU-2025:15239-1SUSE-FU-2026:21213-1
Also known as
RHSA-2025:3530, RHSA-2025:3534, USN-8711-1

Charts affected

2,188 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

2,182 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
sslhep/servicex-did-finder-atlasopenmagic:v1.8.554aaf1721d03
libgcrypt20@1.11.0-7+deb13u1
no fix listed
1
sslhep/servicex-did-finder-cernopendata:v1.8.52cb88ceab5bb
libgcrypt20@1.11.0-7+deb13u1
no fix listed
1
sslhep/servicex-did-finder-xrootd:v1.8.5c284442b44e3
libgcrypt20@1.11.0-7+deb13u1
no fix listed
1
stackstorm/st2actionrunner:3.888235ba70cad
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
1
stackstorm/st2api:3.86f56d239d280
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
1
stackstorm/st2auth:3.833ecfda16608
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
1
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
1
stackstorm/st2notifier:3.8f190a6212195
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
1
stackstorm/st2rulesengine:3.8259503496ff9
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
1
stackstorm/st2scheduler:3.8b1de2055c362
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
1
stackstorm/st2sensorcontainer:3.8b1a338f64773
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
1
stackstorm/st2stream:3.81c8904a3bf67
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
1
stackstorm/st2timersengine:3.81bf35bfaf00c
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
1
stackstorm/st2web:3.809989a26c8b7
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
1
stackstorm/st2workflowengine:3.819fdfffdbba8
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
1
stashapp/stash:latest24dbd7607174
libgcrypt20@1.8.5-5ubuntu1
no fix listed
1
stashapp/stash-box:latesta534c8afdf39
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.2
1
statcan/ckan:2.93921305425b8
libgcrypt20@1.8.5-5ubuntu1
no fix listed
1
statusim/nimbus-eth2:multiarch-latest6ccd9d382885
libgcrypt20@1.10.1-3+deb12u1
no fix listed
1
steamcmd/steamcmd:latest5028a25268e7
libgcrypt20@1.12.0-2ubuntu1
1.12.0-2ubuntu1.1
1
strangebee/thehive:5.8.0-1a7f7b05fba24
libgcrypt20@1.10.1-3+deb12u1
no fix listed
1
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.1611bceacec8fb
libgcrypt20@1.8.5-5ubuntu1
no fix listed
1
structurizr/onpremises:2025.11.094b5ffb5119c8
libgcrypt20@1.10.3-2build1
1.10.3-2ubuntu0.2
1
substratusai/verba:v0.4.0-baseURL261695be635eb
libgcrypt20@1.10.1-3
no fix listed
1
supabase/edge-runtime:v1.74.02781daf92394
libgcrypt20@1.10.1-3
no fix listed
1
supabase/edge-runtime:v1.59.0eff9c554d649
libgcrypt20@1.10.1-3
no fix listed
1
supabase/postgres-meta:v0.96.6a84cc713585e
libgcrypt20@1.10.1-3
no fix listed
1
supabase/postgres-meta:v0.84.2d0a96973e9f1
libgcrypt20@1.10.1-3
no fix listed
1
supabase/realtime:v2.102.3aa1c92c0cf32
libgcrypt20@1.10.1-3
no fix listed
1
supabase/realtime:v2.33.8d207e6e23ad3
libgcrypt20@1.10.1-3
no fix listed
1
supabase/studio:20241021-9f9b08326d8070c55e9
libgcrypt20@1.10.1-3
no fix listed
1
supabase/studio:2026.08.03-sha-022b374606aca9fdaa7
libgcrypt20@1.10.1-3+deb12u1
no fix listed
1
supabase/studio:latest94a2a9d2906e
libgcrypt20@1.10.1-3+deb12u1
no fix listed
1
svtechnmaa/svtech_debuger:v1.0.3a934ffd63d25
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.3
1
svtechnmaa/svtech_grafana:v1.2.21d71314424aa
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
1
svtechnmaa/svtech_maxscale:v1.0.3410a25b51f9f
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.3
1
svtechnmaa/svtech_nagvis:v1.2.118394b08e6c3
libgcrypt20@1.10.1-3
no fix listed
1
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
libgcrypt20@1.8.5-5ubuntu1.1
no fix listed
1
swimmwatch/cloakbrowser-mcp:1.13.0d48c705a58c8
libgcrypt20@1.10.1-3+deb12u1
no fix listed
1
sysnet4admin/colosseum-agg:logbc25b152d88e
libgcrypt20@1.9.4-3ubuntu3.2
1.9.4-3ubuntu3.3
1
sysnet4admin/colosseum-cms:loge74b43c7f492
libgcrypt20@1.10.1-3
no fix listed
1
sysnet4admin/colosseum-prm:log5802bfcd7fed
libgcrypt20@1.10.1-3
no fix listed
1
tchiotludo/akhq:0.28.0c2824dc2ae44
libgcrypt20@1.12.0-2ubuntu1
1.12.0-2ubuntu1.1
1
tdengine/tdengine:3.0.2.24140a4021ddb
libgcrypt20@1.8.1-4ubuntu1.3
no fix listed
1
technitium/dns-server:15.4.0df7d90ef0f7b
libgcrypt20@1.10.3-2ubuntu0.1
1.10.3-2ubuntu0.2
1
teknas09/bird-pod:latest12a1fa85c4aa
libgcrypt20@1.10.1-3
no fix listed
1
tensorflow/serving:latest8a208c232297
libgcrypt20@1.9.4-3ubuntu3
1.9.4-3ubuntu3.3
1
tensorflow/tensorflow:1.6.0-devel1e3172090703
libgcrypt20@1.6.5-2ubuntu0.3
no fix listed
1
tenureai/tenure:v1.0.285f5b222df9a5
libgcrypt20@1.11.0-7+dhi2
no fix listed
1
thecampagnards/trafficlight-api:main7dca9d973837
libgcrypt20@1.8.5-5ubuntu1
no fix listed
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.