CVE-2024-4603
MediumAdvisory
Published 16 May 2024In the index since 5 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 5.3
- base score, highest
- EPSS
- 0.011
- 65th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 1,040
- of 17,787 indexed, latest versions
- Container images
- 1,126
- deployed by those charts
- Fix available
- 2 of 3
- affected packages
The matching OSV records carry no description.
Carried by container images the latest versions of 1,040 of 17,787 indexed charts deploy, on 1,126 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| opensslapk | 3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+21 more | 3.0.13-r0, 3.1.5-r0, 3.3.0-r2, 3.3.0-r8 | 606 |
| openssldeb | 1.1.1f-1ubuntu2.24, 3.0.2-0ubuntu1, 3.0.2-0ubuntu1.2, 3.0.2-0ubuntu1.5+25 more | 3.0.2-0ubuntu1.17, 3.0.13-0ubuntu3.2, 3.0.14-1~deb12u1 | 509 |
| nodejsdeb | 4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 more | no fix listed | 16 |
- OSV records
- ALPINE-CVE-2024-4603CGA-97xx-3w7g-6gm5DEBIAN-CVE-2024-4603UBUNTU-CVE-2024-4603
- Also known as
- CGA-x4h6-5v9h-cxhv, USN-6937-1
Charts affected
1,040 by stars
Container images carrying it
1,126 by charts deploying them
A fixed version is listed for 2 of the 3 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| bitnamilegacy/ | 6e412c178ef9 | openssl | 3.0.14-1~deb12u1 | 1 |
| bitnamilegacy/ | d24925821dd2 | openssl | 3.0.14-1~deb12u1 | 1 |
| bitnamilegacy/ | 3332e81afb4f | openssl | 3.0.14-1~deb12u1 | 1 |
| bitnamilegacy/ | 90fda44bfa42 | openssl | 3.0.14-1~deb12u1 | 1 |
| bitnamilegacy/ | cc55da2fa366 | openssl | 3.0.14-1~deb12u1 | 1 |
| bitnamilegacy/ | ea55532b6f75 | openssl | 3.0.14-1~deb12u1 | 1 |
| bitnamilegacy/ | fdc6979dbc53 | openssl | 3.0.14-1~deb12u1 | 1 |
| bitnamilegacy/ | cd593809e359 | openssl | 3.0.14-1~deb12u1 | 1 |
| bitnamilegacy/ | 5261cae9e407 | openssl | 3.0.14-1~deb12u1 | 1 |
| bitnamilegacy/ | 70cafc5a71e8 | openssl | 3.0.14-1~deb12u1 | 1 |
| bitnamilegacy/ | 9c6fecd24bf3 | openssl | 3.0.14-1~deb12u1 | 1 |
| blipai/ | 737d5d19a312 | openssl | 3.1.5-r0 | 1 |
| bnwokoye/ | 74de7dc7ebfb | openssl | 3.0.13-r0 | 1 |
| boxcutter/ | 84e13f01bcab | openssl | 3.0.2-0ubuntu1.17 | 1 |
| btungut/ | 4a072e2edf71 | openssl | 3.1.5-r0 | 1 |
| caarlos0/ | d11dec138900 | openssl | 3.1.5-r0 | 1 |
| camunda/ | ab5abc09e407 | openssl | 3.0.2-0ubuntu1.17 | 1 |
| casbin/ | 66f836ef778b | openssl | 3.0.13-r0 | 1 |
| catalysm/ | f003b35f54d9 | openssl | 3.1.5-r0 | 1 |
| chandanteekinavar/ | c96f759b6ce4 | openssl | 3.1.5-r0 | 1 |
| checkmk/ | c11b422210c4 | openssl | no fix listed | 1 |
| cheveo/ | 82240f890884 | openssl | no fix listed | 1 |
| chirpstack/ | fb7667fe037f | openssl | 3.0.13-r0 | 1 |
| chirpstack/ | c0bbbb7a3f1e | openssl | 3.0.13-r0 | 1 |
| chriseaton/ | 54c3384ce701 | openssl | no fix listed | 1 |
| chrisfu/ | f8b4996a203d | openssl | 3.1.5-r0 | 1 |
| chrislusf/ | 634b094b2183 | openssl | 3.1.5-r0 | 1 |
| chrislusf/ | ed80f00fde46 | openssl | 3.1.5-r0 | 1 |
| chriswells0/ | f3918ec8471c | openssl | 3.1.5-r0 | 1 |
| circleci/ | 4d8d0ae5efc3 | openssl | 3.0.13-r0 | 1 |
| ciscolabs/ | 36d02faad958 | openssl | 3.0.2-0ubuntu1.17 | 1 |
| ckan/ | ef8e5d3e6be1 | openssl | no fix listed | 1 |
| clickhouse/ | 01b81d1432c4 | openssl | no fix listed | 1 |
| clickhouse/ | 810861a2e2d0 | openssl | no fix listed | 1 |
| clickhouse/ | 8745843b17f9 | openssl | no fix listed | 1 |
| clickhouse/ | 92098d3b31dd | openssl | no fix listed | 1 |
| clickhouse/ | a65ca89ddbe8 | openssl | no fix listed | 1 |
| clickhouse/ | b627d7a9bc0e | openssl | no fix listed | 1 |
| clickhouse/ | dc5658853ce1 | openssl | 3.0.2-0ubuntu1.17 | 1 |
| clickhouse/ | e019438e1e05 | openssl | no fix listed | 1 |
| cloudnativelabs/ | 0ec7cd73f43f | openssl | 3.0.13-r0 | 1 |
| codecov/ | 0475cb1c3136 | openssl | 3.1.5-r0 | 1 |
| codecov/ | 534bc4778073 | openssl | 3.0.13-r0 | 1 |
| codecov/ | de483faad6e5 | openssl | 3.1.5-r0 | 1 |
| codecov/ | 837f546b479b | openssl | 3.1.5-r0 | 1 |
| coldatom/ | eae9e82da080 | openssl | 3.0.13-r0 | 1 |
| coldatom/ | 7c2fbbb41bcf | openssl | 3.0.13-r0 | 1 |
| collabora/ | 05299b452f7f | openssl | 3.0.14-1~deb12u1 | 1 |
| commerceexperts/ | 9e33ad89baf6 | openssl | 3.1.5-r0 | 1 |
| cortezaproject/ | 0bcdcbcd3c63 | openssl | no fix listed | 1 |