CVE-2024-56827
MediumAdvisory
Published 9 Jan 2025In the index since 6 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 5.6
- base score, highest
- EPSS
- 0.003
- 18th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 102
- of 17,781 indexed, latest versions
- Container images
- 111
- deployed by those charts
- Fix available
- 2 of 2
- affected packages
The matching OSV records carry no description.
Carried by container images the latest versions of 102 of 17,781 indexed charts deploy, on 111 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| openjpeg2deb | 2.3.0-1, 2.3.0-2build0.18.04.1, 2.3.1-1ubuntu4, 2.3.1-1ubuntu4.20.04.1+6 more | 2.3.0-2+deb10u2ubuntu0.1~esm4, 2.3.1-1ubuntu4.20.04.4, 2.4.0-6ubuntu0.3, 2.5.0-2+deb12u1+1 more | 109 |
| ghostscriptdeb | 9.18~dfsg~0-0ubuntu2.7, 9.26~dfsg+0-0ubuntu0.18.04.14 | 9.26~dfsg+0-0ubuntu0.16.04.14+esm9, 9.26~dfsg+0-0ubuntu0.18.04.18+esm4 | 2 |
- OSV records
- DEBIAN-CVE-2024-56827UBUNTU-CVE-2024-56827
- Also known as
- USN-7223-1, USN-7623-1
Charts affected
102 by stars
| Chart | Latest | Affected images | Radar Score |
|---|---|---|---|
| demo-backendv2flyVerified publisher | 0.0.3 | 1 of 1See more | 14,358 |
| playwright-synthetic-monitoringwork-adventure | 1.0.1 | 1 of 1See more | 14,100 |
Container images carrying it
111 by charts deploying them
A fixed version is listed for 2 of the 2 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| ghcr.io/ | 5ecb16015aa8 | openjpeg2 | 2.3.1-1ubuntu4.20.04.4 | 1 |
| ghcr.io/ | 1dcca70c6446 | openjpeg2 | 2.3.1-1ubuntu4.20.04.4 | 1 |
| ghcr.io/ | dbaa8527bf4c | openjpeg2 | 2.5.0-2+deb12u1 | 1 |
| ghcr.io/ | d19d886d5090 | openjpeg2 | 2.5.0-2+deb12u1 | 1 |
| ghcr.io/ | fbba58ddb1a6 | openjpeg2 | 2.5.0-2+deb12u1 | 1 |
| ghcr.io/ | 7dc0ee57b628 | openjpeg2 | 2.5.0-2+deb12u1 | 1 |
| public.ecr.aws/ | b1493760c716 | openjpeg2 | 2.5.0-2+deb12u1 | 1 |
| public.ecr.aws/ | 5cd62142d6ed | openjpeg2 | 2.5.0-2+deb12u1 | 1 |
| public.ecr.aws/ | 046ef5c9ed50 | openjpeg2 | 2.5.0-2+deb12u1 | 1 |
| public.ecr.aws/ | f74851ce31f5 | openjpeg2 | 2.5.0-2+deb12u1 | 1 |
| quay.io/ | e0d9b93dbf2b | openjpeg2 | 2.5.0-2+deb12u1 | 1 |