{"id":"CGA-5434-xmvc-pj64","modified":"2026-07-17T18:37:26.777697633Z","published":"2026-01-14T17:40:46Z","upstream":["CVE-2017-7519","GHSA-ghfm-8rwr-p3hr"],"references":[{"type":"ADVISORY","url":"http://www.securityfocus.com/bid/99075"},{"type":"ADVISORY","url":"https://www.debian.org/security/2018/dsa-4339"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-7519"}],"affected":[{"package":{"name":"ceph-20-libs","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/ceph-20-libs?arch=aarch64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0"}]}],"ecosystem_specific":{"components":[{"component_name":"ceph-20-libs","component_version":"20.2.0-r1","component_type":"apk","component_location":"/.PKGINFO","component_purl":"pkg:apk/ceph-20-libs@20.2.0-r1","latest_event_status":"false_positive_determination","latest_event_timestamp":"2026-01-23T12:59:29Z","architecture":"aarch64"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-5434-xmvc-pj64.json"}},{"package":{"name":"ceph-20-libs","ecosystem":"Wolfi","purl":"pkg:apk/wolfi/ceph-20-libs?arch=aarch64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0"}]}],"ecosystem_specific":{"components":[{"latest_event_status":"false_positive_determination","latest_event_timestamp":"2026-01-23T12:59:29Z","architecture":"aarch64","component_name":"ceph-20-libs","component_version":"20.2.0-r1","component_type":"apk","component_location":"/.PKGINFO","component_purl":"pkg:apk/ceph-20-libs@20.2.0-r1"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-5434-xmvc-pj64.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H"}]}