CVE-2024-4603
MediumAdvisory
Published 16 May 2024In the index since 5 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 5.3
- base score, highest
- EPSS
- 0.011
- 65th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 1,040
- of 17,787 indexed, latest versions
- Container images
- 1,126
- deployed by those charts
- Fix available
- 2 of 3
- affected packages
The matching OSV records carry no description.
Carried by container images the latest versions of 1,040 of 17,787 indexed charts deploy, on 1,126 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| opensslapk | 3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+21 more | 3.0.13-r0, 3.1.5-r0, 3.3.0-r2, 3.3.0-r8 | 606 |
| openssldeb | 1.1.1f-1ubuntu2.24, 3.0.2-0ubuntu1, 3.0.2-0ubuntu1.2, 3.0.2-0ubuntu1.5+25 more | 3.0.2-0ubuntu1.17, 3.0.13-0ubuntu3.2, 3.0.14-1~deb12u1 | 509 |
| nodejsdeb | 4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 more | no fix listed | 16 |
- OSV records
- ALPINE-CVE-2024-4603CGA-97xx-3w7g-6gm5DEBIAN-CVE-2024-4603UBUNTU-CVE-2024-4603
- Also known as
- CGA-x4h6-5v9h-cxhv, USN-6937-1
Charts affected
1,040 by stars
Container images carrying it
1,126 by charts deploying them
A fixed version is listed for 2 of the 3 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| jenkins/ | de4fea113221 | openssl | 3.0.14-1~deb12u1 | 1 |
| jhoncytech/ | 18c3ca1f411e | openssl | 3.0.14-1~deb12u1 | 1 |
| jlesage/ | 0752dcb72bd1 | openssl | 3.0.13-r0 | 1 |
| josepht05/ | 36cb0c618c94 | openssl | 3.0.13-r0 | 1 |
| josepht05/ | d94024965d78 | openssl | 3.0.13-r0 | 1 |
| josh5/ | 4d49c4816260 | nodejs openssl | no fix listed 3.0.2-0ubuntu1.17 | 1 |
| juicedata/ | 3e4daf9626d5 | openssl | 3.1.5-r0 | 1 |
| jupyterhub/ | 7adeeed34a36 | openssl | 3.1.5-r0 | 1 |
| jupyterhub/ | 91f8f833fc1d | openssl | 3.1.5-r0 | 1 |
| kafkakraft/ | 062d697db7e5 | openssl | 3.0.2-0ubuntu1.17 | 1 |
| kafkakraft/ | f261ad288fce | openssl | 3.0.2-0ubuntu1.17 | 1 |
| kafkakraft/ | 2e4b593b878b | openssl | 3.0.2-0ubuntu1.17 | 1 |
| kfirfer/ | c257c1e0e8b9 | openssl | 3.1.5-r0 | 1 |
| kfirfer/ | c05d9fc7ae77 | openssl | 3.0.13-r0 | 1 |
| kfirfer/ | d23d173f333f | openssl | 3.1.5-r0 | 1 |
| kfirfer/ | 461331bd838e | openssl | 3.1.5-r0 | 1 |
| kiwigrid/ | e271016441af | openssl | 3.1.5-r0 | 1 |
| knspar/ | 0c4f0543ee58 | openssl | 3.0.14-1~deb12u1 | 1 |
| kong/ | a6ac46531193 | openssl | no fix listed | 1 |
| krontechnology/ | 1cc7d5be6529 | openssl | no fix listed | 1 |
| krontechnology/ | 9dd602db8baa | openssl | no fix listed | 1 |
| kserve/ | 73486345a602 | openssl | 3.0.14-1~deb12u1 | 1 |
| ktitilayo2/ | 8bac28058688 | openssl | 3.0.13-r0 | 1 |
| kubebb/ | 0fbb732379bc | openssl | 3.1.5-r0 | 1 |
| kubebb/ | fd8ecbd73213 | openssl | 3.1.5-r0 | 1 |
| kubebb/ | 163ebbfc7a82 | openssl | 3.1.5-r0 | 1 |
| kubeflownotebookswg/ | af55c22ef5de | openssl | 3.1.5-r0 | 1 |
| kubegems/ | 7c93c84b2055 | openssl | 3.0.13-r0 | 1 |
| kubegems/ | 8905c9dbbb5d | openssl | 3.0.13-r0 | 1 |
| kubegems/ | c3b4be9a54f5 | openssl | 3.0.13-r0 | 1 |
| kubegems/ | 870ee3a77add | openssl | 3.0.14-1~deb12u1 | 1 |
| kubesec/ | c0f3b0673578 | openssl | 3.0.13-r0 | 1 |
| kubeshop/ | 48958b4126a4 | openssl | 3.1.5-r0 | 1 |
| kubesphere/ | 29681958f220 | openssl | 3.1.5-r0 | 1 |
| kubestar/ | 656606941255 | openssl | 3.1.5-r0 | 1 |
| kubesuite/ | 0262424ee702 | openssl | 3.1.5-r0 | 1 |
| kubevious/ | 2d9ba6eb46b6 | openssl | 3.1.5-r0 | 1 |
| kubevious/ | f58226f9d84e | openssl | 3.1.5-r0 | 1 |
| kubevious/ | 9bf567704de2 | openssl | 3.0.13-r0 | 1 |
| kubevious/ | 99ae7a5168c2 | openssl | 3.1.5-r0 | 1 |
| kubevious/ | 0b0f4c507eb6 | openssl | 3.0.13-r0 | 1 |
| kubevirtmanager/ | df3ea27d4a9e | openssl | 3.1.5-r0 | 1 |
| kusionstack/ | b707d3bf0abd | openssl | 3.0.13-r0 | 1 |
| kusionstack/ | 126c8f0b0976 | openssl | no fix listed | 1 |
| kvalitetsit/ | e89e351733ad | openssl | 3.0.13-r0 | 1 |
| kvalitetsit/ | f0af0ba589af | openssl | 3.0.2-0ubuntu1.17 | 1 |
| kvalitetsit/ | fd5c4f60ef80 | openssl | 3.0.13-r0 | 1 |
| kyleslugg/ | ba8c36dfdfbd | openssl | 3.0.13-r0 | 1 |
| kyso/ | 68091eace89c | openssl | 3.0.13-r0 | 1 |
| kyso/ | 82299a9e5a86 | openssl | 3.0.13-r0 | 1 |