CVE-2026-23490
HighAdvisory
Published 16 Jan 2026In the index since 5 Sept 2026
- Severity
- High
- worst across findings
- CVSS
- 7.5
- base score, highest
- EPSS
- 0.008
- 54th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 101
- of 17,781 indexed, latest versions
- Container images
- 102
- deployed by those charts
- Fix available
- 2 of 2
- affected packages
pyasn1 has a DoS vulnerability in decoder
Carried by container images the latest versions of 101 of 17,781 indexed charts deploy, on 102 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| pyasn1pypi | 0.6.1 | 0.6.2 | 90 |
| pyasn1deb | 0.4.2-3, 0.4.8-1, 0.4.8-3 | 0.4.2-3ubuntu0.18.04.1~esm1, 0.4.8-1ubuntu0.1, 0.4.8-3+deb12u1 | 13 |
- OSV records
- DEBIAN-CVE-2026-23490GHSA-63vm-454h-vhhqUBUNTU-CVE-2026-23490
- Also known as
- DSA-6114-1, PYSEC-2026-1810, USN-7975-1, USN-8134-1
Charts affected
101 by stars
| Chart | Latest | Affected images | Radar Score |
|---|---|---|---|
| zerossl-cert-managerzerossl-cert-manager | 0.1.0 | 1 of 2See more | 570 |
Container images carrying it
102 by charts deploying them
A fixed version is listed for 2 of the 2 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| kiwigrid/ | 4166a019eeaf | pyasn1 | 0.6.2 | 3 |
| kiwigrid/ | cdb361e67b1b | pyasn1 | 0.6.2 | 3 |
| kiwigrid/ | 8c06e1ba643a | pyasn1 | 0.6.2 | 2 |
| ghcr.io/ | 42002d66ddb3 | pyasn1 | 0.6.2 | 2 |
| quay.io/ | 716b0b33ff2d | pyasn1 | 0.6.2 | 2 |
| registry.gitlab.com/ | b1198ea741d1 | pyasn1 | 0.6.2 | 2 |
| airbyte/ | 3b3a670af168 | pyasn1 | 0.6.2 | 1 |
| allegroai/ | 713ae38f7daf | pyasn1 | 0.6.2 | 1 |
| alpine/ | 6dbe6f391eda | pyasn1 | 0.6.2 | 1 |
| alpine/ | 7a319b15cfc9 | pyasn1 | 0.6.2 | 1 |
| alpine/ | 7e1e7d5b7a96 | pyasn1 | 0.6.2 | 1 |
| alpine/ | 9c4976d47656 | pyasn1 | 0.6.2 | 1 |
| alpine/ | eec354133193 | pyasn1 | 0.6.2 | 1 |
| andreymileshin/ | f7b300bc9e66 | pyasn1 | 0.6.2 | 1 |
| andreymileshin/ | e0825acc9e48 | pyasn1 | 0.6.2 | 1 |
| apache/ | ce90bdc3d2af | pyasn1 | 0.6.2 | 1 |
| berkeleyskypilot/ | 8da2f3cda472 | pyasn1 | 0.6.2 | 1 |
| bnjbvr/ | 37e216b182c8 | pyasn1 | 0.4.8-3+deb12u1 | 1 |
| clowder/ | 11f3d844e4c0 | pyasn1 | 0.6.2 | 1 |
| clowder/ | 14155326c7b9 | pyasn1 | 0.6.2 | 1 |
| clowder/ | bf146f1ca24f | pyasn1 | 0.6.2 | 1 |
| danialnabiyan1382/ | f96a7ebf1f42 | pyasn1 | 0.6.2 | 1 |
| datamate/ | 2dd66b722464 | pyasn1 | 0.4.8-1ubuntu0.1 | 1 |
| devopsgoofy/ | ad865312099f | pyasn1 | 0.6.2 | 1 |
| devopstales/ | 8bb837da5aec | pyasn1 | 0.6.2 | 1 |
| dpage/ | 50700ac17936 | pyasn1 | 0.6.2 | 1 |
| dpage/ | 52cb72a9e3da | pyasn1 | 0.6.2 | 1 |
| dpage/ | 561c1f8f99f2 | pyasn1 | 0.6.2 | 1 |
| dserio83/ | d5deae589229 | pyasn1 | 0.6.2 | 1 |
| gethue/ | 7d5c1b9f8a79 | pyasn1 | 0.6.2 | 1 |
| gmelillo/ | c599d608a2f7 | pyasn1 | 0.6.2 | 1 |
| gpappsoft/ | af7841adad26 | pyasn1 | 0.6.2 | 1 |
| grafana/ | 499851658393 | pyasn1 | 0.6.2 | 1 |
| hamzaarshad10/ | 2c1c3b86a8e7 | pyasn1 | 0.6.2 | 1 |
| knspar/ | 09499d2dc91a | pyasn1 | 0.6.2 | 1 |
| knspar/ | 0c4f0543ee58 | pyasn1 | 0.6.2 | 1 |
| kubeflownotebookswg/ | afb52057c997 | pyasn1 | 0.6.2 | 1 |
| kubeflownotebookswg/ | 77f07f52a84a | pyasn1 | 0.6.2 | 1 |
| kubeflownotebookswg/ | f63c3e550af3 | pyasn1 | 0.6.2 | 1 |
| kyovint/ | 48c19e3ae9a3 | pyasn1 | 0.6.2 | 1 |
| kyovint/ | 80084149156e | pyasn1 | 0.6.2 | 1 |
| langgenius/ | 066035f93856 | pyasn1 | 0.6.2 | 1 |
| linuxserver/ | 241009026e6f | pyasn1 | 0.6.2 | 1 |
| linuxserver/ | 052eac68ccc0 | pyasn1 | 0.6.2 | 1 |
| linuxserver/ | 0ac871624394 | pyasn1 | 0.4.2-3ubuntu0.18.04.1~esm1 | 1 |
| linuxserver/ | 2ce561a95e7b | pyasn1 | 0.4.2-3ubuntu0.18.04.1~esm1 | 1 |
| matrixdotorg/ | c3c4a9de2a0b | pyasn1 | 0.6.2 | 1 |
| odavid/ | e7ab3bbc948e | pyasn1 | 0.6.2 | 1 |
| oled01/ | 05d3e398e675 | pyasn1 | 0.6.2 | 1 |
| opea/ | 38c51b791efa | pyasn1 | 0.6.2 | 1 |