CVE-2024-5535
CriticalAdvisory
Published 27 Jun 2024In the index since 5 Sept 2026
- Severity
- Critical
- worst across findings
- CVSS
- 9.1
- base score, highest
- EPSS
- 0.056
- 92nd percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 1,715
- of 17,787 indexed, latest versions
- Container images
- 1,873
- deployed by those charts
- Fix available
- 5 of 6
- affected packages
Red Hat Security Advisory: openssl security update
Carried by container images the latest versions of 1,715 of 17,787 indexed charts deploy, on 1,873 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| openssldeb | 1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+80 more | 1.0.1f-1ubuntu2.27+esm16, 1.0.2g-1ubuntu4.20+esm18, 1.1.1-1ubuntu2.1~18.04.23+esm10, 1.1.1f-1ubuntu2.23+4 more | 1,037 |
| opensslapk | 3.0.7-r0, 3.0.7-r2, 3.0.8-r0, 3.0.8-r1+25 more | 3.0.14-r0, 3.1.6-r0, 3.3.1-r1, 3.3.1-r3 | 652 |
| nodejsdeb | 4.2.6~dfsg-1ubuntu4.1, 7.10.1-2nodesource1~xenial1, 8.9.4-1nodesource1, 8.10.0~dfsg-2ubuntu0.4+8 more | no fix listed | 16 |
| openssl1.0deb | 1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 more | 1.0.2n-1ubuntu5.13+esm6 | 15 |
| opensslrpm | 1:1.1.1-8.el8, 1:1.1.1c-2.el8_1.1, 1:1.1.1c-15.el8, 1:1.1.1c-19.el8_2+15 more | 1:1.1.1k-14.el8_6, 1:1.1.1k-14.el8_10, 1:3.0.7-29.el9_4 | 183 |
| openssl-1_1rpm | 1.1.1d-11.6.1 | 1.1.1d-150200.11.94.1 | 1 |
- OSV records
- ALPINE-CVE-2024-5535CGA-6r9r-wppq-f3vfDEBIAN-CVE-2024-5535UBUNTU-CVE-2024-5535RHSA-2024:7846RHSA-2024:7847RHSA-2024:7848RHSA-2025:3666RLSA-2024:7848SUSE-SU-2024:2909-1
- Also known as
- CGA-r27g-x88q-7j3g, USN-6937-1, USN-8678-2
Charts affected
1,715 by stars
Container images carrying it
1,873 by charts deploying them
A fixed version is listed for 5 of the 6 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| istio/ | db08d6963975 | openssl | 3.0.2-0ubuntu1.17 | 1 |
| istio/ | e7e110a421c2 | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm10 | 1 |
| istio/ | 0c78be035e98 | openssl | 1.0.2g-1ubuntu4.20+esm18 | 1 |
| istio/ | 87a9db561d2e | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm10 | 1 |
| istio/ | 88c6c693e67a | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm10 | 1 |
| istio/ | df69c1a7af7c | openssl | 1.1.1f-1ubuntu2.23 | 1 |
| jacobalberty/ | 4a3616625dda | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm10 | 1 |
| jacobalberty/ | b3edc809a3ff | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm10 | 1 |
| jacobalberty/ | c409924e2463 | openssl | 1.0.2g-1ubuntu4.20+esm18 | 1 |
| jakowenko/ | b858bac9e32a | openssl | 1.1.1f-1ubuntu2.23 | 1 |
| jedi132000/ | dc2a81e92f23 | openssl | 1.1.1f-1ubuntu2.23 | 1 |
| jellyfin/ | 79fb3d73a3e9 | openssl | 3.0.15-1~deb12u1 | 1 |
| jenkins/ | 95313257a8cd | openssl | 3.0.15-1~deb12u1 | 1 |
| jenkins/ | de4fea113221 | openssl | 3.0.15-1~deb12u1 | 1 |
| jhaals/ | 26873480863b | openssl | 3.0.15-1~deb12u1 | 1 |
| jhipster/ | 7184525acd4d | openssl | 1.1.1f-1ubuntu2.24+esm5 | 1 |
| jhoncytech/ | 18c3ca1f411e | openssl | 3.0.15-1~deb12u1 | 1 |
| jingking/ | 43e74ab234e1 | openssl | 1.1.1f-1ubuntu2.23 | 1 |
| jlesage/ | 0752dcb72bd1 | openssl | 3.0.14-r0 | 1 |
| jmferrer/ | 030f68ec6998 | openssl | 1.0.2g-1ubuntu4.20+esm18 | 1 |
| josepht05/ | 36cb0c618c94 | openssl | 3.0.14-r0 | 1 |
| josepht05/ | d94024965d78 | openssl | 3.0.14-r0 | 1 |
| josh5/ | 4d49c4816260 | nodejs openssl | no fix listed 3.0.2-0ubuntu1.17 | 1 |
| juicedata/ | 3e4daf9626d5 | openssl | 3.1.6-r0 | 1 |
| jupyterhub/ | 7adeeed34a36 | openssl | 3.1.6-r0 | 1 |
| jupyterhub/ | b6b4a1a34bf0 | openssl | 1.1.1f-1ubuntu2.23 | 1 |
| jupyterhub/ | e4770285aaf7 | openssl | 1.1.1f-1ubuntu2.23 | 1 |
| jupyterhub/ | 91f8f833fc1d | openssl | 3.1.6-r0 | 1 |
| jupyterhub/ | e3e6f3051df8 | openssl | 1.1.1f-1ubuntu2.23 | 1 |
| kafkakraft/ | 062d697db7e5 | openssl | 3.0.2-0ubuntu1.17 | 1 |
| kafkakraft/ | f261ad288fce | openssl | 3.0.2-0ubuntu1.17 | 1 |
| kafkakraft/ | 2e4b593b878b | openssl | 3.0.2-0ubuntu1.17 | 1 |
| kennethreitz/ | 599fe5e50731 | openssl | 1.1.1-1ubuntu2.1~18.04.23+esm10 | 1 |
| kfirfer/ | c257c1e0e8b9 | openssl | 3.1.6-r0 | 1 |
| kfirfer/ | c05d9fc7ae77 | openssl | 3.0.14-r0 | 1 |
| kfirfer/ | d23d173f333f | openssl | 3.1.6-r0 | 1 |
| kfirfer/ | 2efb4a5d74a3 | openssl | 1.1.1f-1ubuntu2.23 | 1 |
| kfirfer/ | 461331bd838e | openssl | 3.1.6-r0 | 1 |
| kiwigrid/ | e271016441af | openssl | 3.1.6-r0 | 1 |
| knspar/ | 0c4f0543ee58 | openssl | 3.0.15-1~deb12u1 | 1 |
| kong/ | a6ac46531193 | openssl | no fix listed | 1 |
| krontechnology/ | 1cc7d5be6529 | openssl | no fix listed | 1 |
| krontechnology/ | 7feef7d2ab42 | openssl | 1.1.1f-1ubuntu2.23 | 1 |
| krontechnology/ | 9dd602db8baa | openssl | no fix listed | 1 |
| kserve/ | 73486345a602 | openssl | 3.0.15-1~deb12u1 | 1 |
| ktitilayo2/ | 8bac28058688 | openssl | 3.0.14-r0 | 1 |
| kubebb/ | 0fbb732379bc | openssl | 3.1.6-r0 | 1 |
| kubebb/ | fd8ecbd73213 | openssl | 3.1.6-r0 | 1 |
| kubebb/ | 163ebbfc7a82 | openssl | 3.1.6-r0 | 1 |
| kubeflow/ | 5783f6db428f | openssl | 1:1.1.1k-14.el8_6 | 1 |