CVE-2024-5535
CriticalAdvisory
Published 27 Jun 2024In the index since 5 Sept 2026
- Severity
- Critical
- worst across findings
- CVSS
- 9.1
- base score, highest
- EPSS
- 0.056
- 92nd percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 1,715
- of 17,787 indexed, latest versions
- Container images
- 1,873
- deployed by those charts
- Fix available
- 5 of 6
- affected packages
Red Hat Security Advisory: openssl security update
Carried by container images the latest versions of 1,715 of 17,787 indexed charts deploy, on 1,873 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| openssldeb | 1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+80 more | 1.0.1f-1ubuntu2.27+esm16, 1.0.2g-1ubuntu4.20+esm18, 1.1.1-1ubuntu2.1~18.04.23+esm10, 1.1.1f-1ubuntu2.23+4 more | 1,037 |
| opensslapk | 3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+25 more | 3.0.14-r0, 3.1.6-r0, 3.3.1-r1, 3.3.1-r3 | 652 |
| nodejsdeb | 4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 more | no fix listed | 16 |
| openssl1.0deb | 1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more | 1.0.2n-1ubuntu5.13+esm6 | 15 |
| opensslrpm | 1:1.1.1-8.el8, 1:1.1.1c-2.el8_1.1, 1:1.1.1c-15.el8, 1:1.1.1c-19.el8_2+15 more | 1:1.1.1k-14.el8_6, 1:1.1.1k-14.el8_10, 1:3.0.7-29.el9_4 | 183 |
| openssl-1_1rpm | 1.1.1d-11.6.1 | 1.1.1d-150200.11.94.1 | 1 |
- OSV records
- ALPINE-CVE-2024-5535CGA-6r9r-wppq-f3vfDEBIAN-CVE-2024-5535UBUNTU-CVE-2024-5535RHSA-2024:7846RHSA-2024:7847RHSA-2024:7848RHSA-2025:3666RLSA-2024:7848SUSE-SU-2024:2909-1
- Also known as
- CGA-r27g-x88q-7j3g, USN-6937-1, USN-8678-2
Charts affected
1,715 by stars
Container images carrying it
1,873 by charts deploying them
A fixed version is listed for 5 of the 6 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| ciscolabs/ | 36d02faad958 | openssl | 3.0.2-0ubuntu1.17 | 1 |
| citizenstig/ | b81c818ccb86 | openssl | 1.0.2g-1ubuntu4.20+esm18 | 1 |
| ckan/ | ef8e5d3e6be1 | openssl | no fix listed | 1 |
| clickhouse/ | 01b81d1432c4 | openssl | no fix listed | 1 |
| clickhouse/ | 1ffa82edee00 | openssl | 1.1.1f-1ubuntu2.24+esm5 | 1 |
| clickhouse/ | 2e6587b81a26 | openssl | 1.1.1f-1ubuntu2.23 | 1 |
| clickhouse/ | 512bb8a21483 | openssl | 1.1.1f-1ubuntu2.23 | 1 |
| clickhouse/ | 810861a2e2d0 | openssl | no fix listed | 1 |
| clickhouse/ | 8745843b17f9 | openssl | no fix listed | 1 |
| clickhouse/ | 92098d3b31dd | openssl | no fix listed | 1 |
| clickhouse/ | a65ca89ddbe8 | openssl | no fix listed | 1 |
| clickhouse/ | b627d7a9bc0e | openssl | no fix listed | 1 |
| clickhouse/ | dc5658853ce1 | openssl | 3.0.2-0ubuntu1.17 | 1 |
| clickhouse/ | e019438e1e05 | openssl | no fix listed | 1 |
| cloudnativelabs/ | 0ec7cd73f43f | openssl | 3.0.14-r0 | 1 |
| cloudve/ | af56e77ca587 | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm10 | 1 |
| cloudve/ | d79c1c5881c0 | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm10 | 1 |
| cockroachdb/ | 1116820f4134 | openssl | 1:1.1.1k-14.el8_6 | 1 |
| cockroachdb/ | 983312754620 | openssl | 1:1.1.1k-14.el8_6 | 1 |
| codecov/ | 0475cb1c3136 | openssl | 3.1.6-r0 | 1 |
| codecov/ | 534bc4778073 | openssl | 3.0.14-r0 | 1 |
| codecov/ | de483faad6e5 | openssl | 3.1.6-r0 | 1 |
| codecov/ | 837f546b479b | openssl | 3.1.6-r0 | 1 |
| coderenvs/ | 1deffc4670e6 | openssl | 1:1.1.1k-14.el8_6 | 1 |
| coderenvs/ | 76fd37fe6830 | openssl | 1:1.1.1k-14.el8_6 | 1 |
| codetogether/ | 4348c8a38752 | openssl | 1:3.0.7-29.el9_4 | 1 |
| coldatom/ | eae9e82da080 | openssl | 3.0.14-r0 | 1 |
| coldatom/ | 7c2fbbb41bcf | openssl | 3.0.14-r0 | 1 |
| collabora/ | 05299b452f7f | openssl | 3.0.15-1~deb12u1 | 1 |
| commerceexperts/ | 9e33ad89baf6 | openssl | 3.1.6-r0 | 1 |
| confluentinc/ | f2975d507a2a | openssl | 1:1.1.1k-14.el8_6 | 1 |
| confluentinc/ | 8f1544df1f48 | openssl | 1:1.1.1k-14.el8_6 | 1 |
| confluentinc/ | 3bf359d5e340 | openssl | 1:1.1.1k-14.el8_6 | 1 |
| confluentinc/ | c0224a1adf7a | openssl | 1:1.1.1k-14.el8_6 | 1 |
| confluentinc/ | dc9b972db002 | openssl | 1:1.1.1k-14.el8_6 | 1 |
| confluentinc/ | 4bc70a83ca6f | openssl | 1:1.1.1k-14.el8_6 | 1 |
| confluentinc/ | b0b7aa26254a | openssl | 1:1.1.1k-14.el8_6 | 1 |
| confluentinc/ | 8ec46c27982f | openssl | 1:1.1.1k-14.el8_6 | 1 |
| confluentinc/ | ee403d5b9090 | openssl | 1:1.1.1k-14.el8_6 | 1 |
| confluentinc/ | b651d4b6185a | openssl | 1:1.1.1k-14.el8_6 | 1 |
| confluentinc/ | 0bec03c1f3ce | openssl | 1:1.1.1k-14.el8_6 | 1 |
| confluentinc/ | 78c190f4472c | openssl | 1:1.1.1k-14.el8_6 | 1 |
| contentsquareplatform/ | 24555f22d4be | openssl | 3.0.15-1~deb12u1 | 1 |
| cortezaproject/ | 0bcdcbcd3c63 | openssl | no fix listed | 1 |
| cortezaproject/ | 8eb7a26605c9 | openssl | 1.1.1f-1ubuntu2.24+esm5 | 1 |
| cortezaproject/ | cb9f200de5d2 | openssl | no fix listed | 1 |
| countly/ | e3c238248f99 | openssl | 1.1.1f-1ubuntu2.23 | 1 |
| cradlepoint/ | 8f5720b0cd03 | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm10 | 1 |
| craftypath/ | 402a0024c732 | openssl | 1:1.1.1k-14.el8_6 | 1 |
| crazymax/ | 841b10cdae76 | openssl | 3.1.6-r0 | 1 |