CVE-2024-7592
HighAdvisory
Published 19 Aug 2024In the index since 5 Sept 2026
- Severity
- High
- worst across findings
- CVSS
- 7.5
- base score, highest
- EPSS
- 0.023
- 82nd percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 403
- of 17,781 indexed, latest versions
- Container images
- 375
- deployed by those charts
- Fix available
- 11 of 13
- affected packages
Red Hat Security Advisory: python3.12 security update
Carried by container images the latest versions of 403 of 17,781 indexed charts deploy, on 375 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| python3.8deb | 3.8.5-1~20.04, 3.8.5-1~20.04.2, 3.8.5-1~20.04.3, 3.8.10-0ubuntu1~20.04+9 more | 3.8.10-0ubuntu1~20.04.12 | 93 |
| python3.11deb | 3.11.0~rc1-1~22.04, 3.11.0~rc1-1~22.04.1, 3.11.2-6, 3.11.2-6+deb12u2+2 more | 3.11.2-6+deb12u5 | 87 |
| python3apk | 3.10.8-r3, 3.10.9-r1, 3.10.10-r0, 3.10.12-r0+10 more | 3.10.15-r0, 3.11.10-r0, 3.12.6-r0 | 55 |
| python2.7deb | 2.7.6-8, 2.7.6-8ubuntu0.4, 2.7.12-1ubuntu0~16.04.2, 2.7.12-1ubuntu0~16.04.3+11 more | 2.7.6-8ubuntu0.6+esm20, 2.7.12-1ubuntu0~16.04.18+esm10, 2.7.17-1~18.04ubuntu1.13+esm5, 2.7.18-1~20.04.4+esm2+1 more | 53 |
| python3.6deb | 3.6.6-1~18.04, 3.6.7-1~18.04, 3.6.9-1~18.04, 3.6.9-1~18.04ubuntu1+7 more | no fix listed | 44 |
| python3.10deb | 3.10.4-3, 3.10.4-3ubuntu0.1, 3.10.6-1~22.04, 3.10.6-1~22.04.1+7 more | 3.10.12-1~22.04.6 | 36 |
| python3.5deb | 3.5.2-2ubuntu0~16.04.1, 3.5.2-2ubuntu0~16.04.4, 3.5.2-2ubuntu0~16.04.5, 3.5.2-2ubuntu0~16.04.9 | 3.5.2-2ubuntu0~16.04.13+esm14 | 25 |
| python3.4deb | 3.4.0-2ubuntu1, 3.4.3-1ubuntu1~14.04.5, 3.4.3-1ubuntu1~14.04.6, 3.4.3-1ubuntu1~14.04.7 | no fix listed | 7 |
| python3.12deb | 3.12.3-1 | 3.12.3-1ubuntu0.2 | 2 |
| nodejs-20apk | 20.18.3-r0 | 20.19.5-r0 | 1 |
| python-3.12apk | 3.12.0-r1 | 3.12.5-r2 | 1 |
| python3.11rpm | 3.11.7-1.el9, 3.11.7-1.el9_4.5 | 0:3.11.9-7.el9_5.3 | 2 |
| python3.12rpm | 3.12.5-2.el9_5.2 | 0:3.12.5-2.el9_5.3 | 1 |
- OSV records
- ALPINE-CVE-2024-7592CGA-3xrq-9xcg-jm4qCGA-gwv8-8hxg-2f6rDEBIAN-CVE-2024-7592UBUNTU-CVE-2024-7592RHSA-2025:3631RHSA-2025:3634
- Also known as
- CGA-q637-x447-73vh, CGA-vg94-939g-9wq8, USN-7015-1, USN-7015-2
Charts affected
403 by stars
Container images carrying it
375 by charts deploying them
A fixed version is listed for 11 of the 13 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| istio/ | e7e110a421c2 | python3.6 | no fix listed | 1 |
| istio/ | 0c78be035e98 | python3.5 | 3.5.2-2ubuntu0~16.04.13+esm14 | 1 |
| istio/ | 87a9db561d2e | python3.6 | no fix listed | 1 |
| istio/ | 88c6c693e67a | python3.6 | no fix listed | 1 |
| jakowenko/ | b858bac9e32a | python3.8 | 3.8.10-0ubuntu1~20.04.12 | 1 |
| jedi132000/ | dc2a81e92f23 | python3.8 | 3.8.10-0ubuntu1~20.04.12 | 1 |
| jmferrer/ | 030f68ec6998 | python3.5 | 3.5.2-2ubuntu0~16.04.13+esm14 | 1 |
| josh5/ | 4d49c4816260 | python3.10 | 3.10.12-1~22.04.6 | 1 |
| jupyterhub/ | b6b4a1a34bf0 | python3.8 | 3.8.10-0ubuntu1~20.04.12 | 1 |
| jupyterhub/ | e4770285aaf7 | python3.8 | 3.8.10-0ubuntu1~20.04.12 | 1 |
| kennethreitz/ | 599fe5e50731 | python3.6 | no fix listed | 1 |
| kfirfer/ | c257c1e0e8b9 | python3 | 3.11.10-r0 | 1 |
| kfirfer/ | 2efb4a5d74a3 | python3.8 | 3.8.10-0ubuntu1~20.04.12 | 1 |
| knspar/ | 0c4f0543ee58 | python3.11 | 3.11.2-6+deb12u5 | 1 |
| kubeoperator/ | be8f0d624640 | python3.6 | no fix listed | 1 |
| library/ | b095ff3248c6 | python2.7 | 2.7.18-1~20.04.4+esm2 | 1 |
| library/ | d41127070014 | python3.11 | 3.11.2-6+deb12u5 | 1 |
| library/ | 1b0f675d2f24 | python3.8 | 3.8.10-0ubuntu1~20.04.12 | 1 |
| library/ | b6dd45cc35b3 | python3.6 | no fix listed | 1 |
| library/ | 8ae66efb09a2 | python3.11 | 3.11.2-6+deb12u5 | 1 |
| linuxserver/ | a847b5b2d860 | python2.7 python3.6 | 2.7.17-1~18.04ubuntu1.13+esm5 no fix listed | 1 |
| linuxserver/ | 938810eca3d3 | python3.8 | 3.8.10-0ubuntu1~20.04.12 | 1 |
| linuxserver/ | b801bbcf6386 | python2.7 | 2.7.17-1~18.04ubuntu1.13+esm5 | 1 |
| linuxserver/ | 0ac871624394 | python3.6 | no fix listed | 1 |
| linuxserver/ | 2ce561a95e7b | python3.6 | no fix listed | 1 |
| linuxserver/ | 94696dab3c50 | python3 | 3.10.15-r0 | 1 |
| linuxserver/ | f93d2560e233 | python3.6 | no fix listed | 1 |
| linuxserver/ | 6f5b9586a93e | python3 | 3.11.10-r0 | 1 |
| logiqai/ | 65b996bc7bdc | python3.11 | 3.11.2-6+deb12u5 | 1 |
| longhornio/ | dca34321452c | python3.8 | 3.8.10-0ubuntu1~20.04.12 | 1 |
| longhornio/ | ede61fe2a472 | python3.6 | no fix listed | 1 |
| lsstsqre/ | b75bf8aaafa4 | python2.7 python3.8 | 2.7.18-1~20.04.4+esm2 3.8.10-0ubuntu1~20.04.12 | 1 |
| mediagis/ | c15e941485ef | python3.8 | 3.8.10-0ubuntu1~20.04.12 | 1 |
| mediagis/ | d0eae7b51374 | python3.10 | 3.10.12-1~22.04.6 | 1 |
| moonrailgun/ | b528c8f8fcc4 | python3 | 3.12.6-r0 | 1 |
| moreillon/ | d2ee0423b797 | python3.11 | 3.11.2-6+deb12u5 | 1 |
| mshanley80/ | 5b189a70c0fb | python3.8 | 3.8.10-0ubuntu1~20.04.12 | 1 |
| muhammedgamal/ | 74b4cd69b6fa | python3.11 | 3.11.2-6+deb12u5 | 1 |
| muluder/ | 43b597a93da7 | python2.7 python3.5 | 2.7.12-1ubuntu0~16.04.18+esm10 3.5.2-2ubuntu0~16.04.13+esm14 | 1 |
| netboxcommunity/ | 3d652dca5351 | python3.10 | 3.10.12-1~22.04.6 | 1 |
| nodered/ | e2632a7a35dd | python3 | 3.11.10-r0 | 1 |
| offchainlabs/ | e95865866129 | python3.11 | 3.11.2-6+deb12u5 | 1 |
| omecproject/ | 28a90cc26716 | python2.7 | 2.7.18-1~20.04.4+esm2 | 1 |
| omecproject/ | bcc5f19fd676 | python3.6 | no fix listed | 1 |
| omecproject/ | 5715e5648aa0 | python2.7 python3.5 | 2.7.12-1ubuntu0~16.04.18+esm10 3.5.2-2ubuntu0~16.04.13+esm14 | 1 |
| omecproject/ | d109a8e57e71 | python2.7 python3.5 | 2.7.12-1ubuntu0~16.04.18+esm10 3.5.2-2ubuntu0~16.04.13+esm14 | 1 |
| opea/ | 2bee4eb66f3e | python3.11 | 3.11.2-6+deb12u5 | 1 |
| opea/ | 3ef121f34610 | python3.11 | 3.11.2-6+deb12u5 | 1 |
| opea/ | 7f854e9bffaf | python3.11 | 3.11.2-6+deb12u5 | 1 |
| opea/ | 249afad3d268 | python3.11 | 3.11.2-6+deb12u5 | 1 |