StackRadar

CVE-2024-2236

Medium

Advisory

Published 6 Mar 2024In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.011
65th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,188
of 17,821 indexed, latest versions
Container images
2,182
deployed by those charts
Fix available
3 of 4
affected packages

Red Hat Security Advisory: libgcrypt security update

Carried by container images the latest versions of 2,188 of 17,821 indexed charts deploy, on 2,182 images.

Affected packageAffected versionsFixed inImages
libgcrypt20deb1.6.5-2ubuntu0.2, 1.6.5-2ubuntu0.3, 1.6.5-2ubuntu0.4, 1.6.5-2ubuntu0.5+23 more1.9.4-3ubuntu3.3, 1.10.3-2ubuntu0.2, 1.12.0-2ubuntu1.12,133
libgcryptrpm1.8.2-lp151.9.4.1, 1.8.2-lp152.16.8, 1.10.0-8.el9_0, 1.10.0-10.el9_2+1 more0:1.10.0-11.el9, 1.11.1-2.1, 1.12.1-160000.1.142
libgcrypt11deb1.5.3-2ubuntu4.1, 1.5.3-2ubuntu4.5, 1.5.3-2ubuntu4.6no fix listed7
libgpg-errorrpm1.54-160000.2.21.58-160000.1.11
OSV records
DEBIAN-CVE-2024-2236RHSA-2024:9404RLSA-2024:9404UBUNTU-CVE-2024-2236openSUSE-SU-2025:15239-1SUSE-FU-2026:21213-1
Also known as
RHSA-2025:3530, RHSA-2025:3534, USN-8711-1

Charts affected

2,188 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

2,182 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

No deployed image carries CVE-2024-2236.

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.