CVE-2024-26458
MediumAdvisory
Published 29 Feb 2024In the index since 5 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 5.3
- base score, highest
- EPSS
- 0.008
- 55th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 1,624
- of 17,787 indexed, latest versions
- Container images
- 1,425
- deployed by those charts
- Fix available
- 1 of 1
- affected package
The matching OSV records carry no description.
Carried by container images the latest versions of 1,624 of 17,787 indexed charts deploy, on 1,425 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| krb5deb | 1.12+dfsg-2ubuntu5, 1.12+dfsg-2ubuntu5.1, 1.12+dfsg-2ubuntu5.3, 1.12+dfsg-2ubuntu5.4+36 more | 1.17-6ubuntu4.9, 1.19.2-2ubuntu0.6, 1.20.1-6ubuntu2.5 | 1,425 |
- OSV records
- DEBIAN-CVE-2024-26458UBUNTU-CVE-2024-26458
- Also known as
- USN-7314-1
Charts affected
1,624 by stars
Container images carrying it
1,425 by charts deploying them
A fixed version is listed for 1 of the 1 affected package.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| dgraph/ | 3b55ea83fffe | krb5 | 1.17-6ubuntu4.9 | 3 |
| dnationcloud/ | 78fed4f3c130 | krb5 | no fix listed | 3 |
| envoyproxy/ | 2bf7f042e396 | krb5 | 1.19.2-2ubuntu0.6 | 3 |
| fluent/ | d792375ca8e5 | krb5 | no fix listed | 3 |
| gchq/ | 5ec58edbb2db | krb5 | 1.20.1-6ubuntu2.5 | 3 |
| library/ | a484819eb602 | krb5 | no fix listed | 3 |
| library/ | be23f54a88d3 | krb5 | no fix listed | 3 |
| omecproject/ | d59ccb138ffb | krb5 | no fix listed | 3 |
| selenium/ | 02f251d48d5f | krb5 | 1.17-6ubuntu4.9 | 3 |
| vaultwarden/ | ebdfe70701c6 | krb5 | no fix listed | 3 |
| xenondb/ | 0e26872a2b67 | krb5 | 1.17-6ubuntu4.9 | 3 |
| ghcr.io/ | 6a5594b7b32c | krb5 | no fix listed | 3 |
| quay.io/ | 6545dac92173 | krb5 | no fix listed | 3 |
| quay.io/ | 2b6db27eaf3d | krb5 | 1.19.2-2ubuntu0.6 | 3 |
| quay.io/ | 4c3b91bebd3d | krb5 | no fix listed | 3 |
| quay.io/ | f296c2ec5db7 | krb5 | 1.19.2-2ubuntu0.6 | 3 |
| quay.io/ | 709c7da19c5a | krb5 | no fix listed | 3 |
| apache/ | 7cdfd8deec92 | krb5 | 1.19.2-2ubuntu0.6 | 2 |
| apache/ | ae0b86d3c4d0 | krb5 | 1.20.1-6ubuntu2.5 | 2 |
| bitnamilegacy/ | 00176a47afa0 | krb5 | no fix listed | 2 |
| bitnamilegacy/ | d3bf3910f148 | krb5 | no fix listed | 2 |
| bitnamilegacy/ | f12387ec882b | krb5 | no fix listed | 2 |
| cagriekin/ | 99e17aa165df | krb5 | no fix listed | 2 |
| cfssl/ | c9018c2ddf0b | krb5 | no fix listed | 2 |
| eqalpha/ | 6537505c4235 | krb5 | 1.17-6ubuntu4.9 | 2 |
| eqalpha/ | eceb1806730c | krb5 | 1.17-6ubuntu4.9 | 2 |
| fireflyiii/ | fe4ecec4c2ba | krb5 | no fix listed | 2 |
| fireflyiii/ | ab52bf932546 | krb5 | no fix listed | 2 |
| freeradius/ | 21c8bfa904d8 | krb5 | no fix listed | 2 |
| geoservercloud/ | 756559ee788a | krb5 | 1.17-6ubuntu4.9 | 2 |
| geoservercloud/ | 99540eef78ad | krb5 | 1.17-6ubuntu4.9 | 2 |
| geoservercloud/ | 5c254c53a357 | krb5 | 1.17-6ubuntu4.9 | 2 |
| geoservercloud/ | c687b1cbc891 | krb5 | 1.17-6ubuntu4.9 | 2 |
| geoservercloud/ | 5288f320cf36 | krb5 | 1.17-6ubuntu4.9 | 2 |
| geoservercloud/ | a30a60ac6cd0 | krb5 | 1.17-6ubuntu4.9 | 2 |
| gjeanmart/ | 926264c8f2d1 | krb5 | no fix listed | 2 |
| gotenberg/ | 87c16b9f3642 | krb5 | no fix listed | 2 |
| gotenberg/ | f29984bd1e22 | krb5 | no fix listed | 2 |
| gradiant/ | 015b30d5fa0f | krb5 | 1.19.2-2ubuntu0.6 | 2 |
| graviteeio/ | 05fd67a93056 | krb5 | no fix listed | 2 |
| graviteeio/ | 27374522cd04 | krb5 | no fix listed | 2 |
| hjacobs/ | 4b2147f47425 | krb5 | no fix listed | 2 |
| hookiesolutions/ | 0629694246ba | krb5 | 1.17-6ubuntu4.9 | 2 |
| hyperledger/ | a674d35eec9a | krb5 | 1.17-6ubuntu4.9 | 2 |
| infisical/ | 02082bf13163 | krb5 | no fix listed | 2 |
| istio/ | dbb7726d1bf0 | krb5 | no fix listed | 2 |
| istio/ | 757d28c24100 | krb5 | 1.19.2-2ubuntu0.6 | 2 |
| istio/ | a78b7a165744 | krb5 | no fix listed | 2 |
| jenkins/ | b470bcdc4ecd | krb5 | no fix listed | 2 |
| jenkins/ | c4098086090c | krb5 | no fix listed | 2 |