StackRadar

CVE-2018-25032

High

Advisory

Published 25 Mar 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.2
base score, highest
EPSS
0.517
99th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,468
of 17,787 indexed, latest versions
Container images
1,469
deployed by those charts
Fix available
10 of 10
affected packages

Red Hat Security Advisory: zlib security update

Carried by container images the latest versions of 1,468 of 17,787 indexed charts deploy, on 1,469 images.

Affected packageAffected versionsFixed inImages
zlibrpm1.2.7-18.el7, 1.2.7-19.el7_9, 1.2.11-3.12.1, 1.2.11-3.18.1+7 more0:1.2.7-20.el7_9, 0:1.2.11-11.el8_1.1, 0:1.2.11-18.el8_5, 1.2.11-150000.3.30.196
rsyncrpm3.1.3-7.el8, 3.1.3-7.el8_2.2, 3.1.3-12.el8, 3.1.3-12.el8_4.20:3.1.3-7.el8_2.1, 0:3.1.3-12.el8_4.1, 0:3.1.3-14.el8_6.210
zlibdeb1:1.2.8.dfsg-1ubuntu1, 1:1.2.8.dfsg-1ubuntu1.1, 1:1.2.8.dfsg-2ubuntu4, 1:1.2.8.dfsg-2ubuntu4.1+7 more1:1.2.8.dfsg-1ubuntu1.1+esm1, 1:1.2.8.dfsg-2ubuntu4.3+esm1, 1:1.2.8.dfsg-5+deb9u1, 1:1.2.11.dfsg-0ubuntu2.1+3 more830
zlibapk1.2.11-r31.2.12-r0534
nokogirigem1.8.2, 1.10.8, 1.10.9, 1.10.10+4 more1.13.421
rsyncdeb3.1.1-3ubuntu1.1, 3.1.1-3ubuntu1.2, 3.1.1-3ubuntu1.3, 3.1.2-2.1ubuntu1+3 more3.1.1-3ubuntu1.3+esm1, 3.1.2-2.1ubuntu1.4, 3.1.3-8ubuntu0.320
mariadbapk10.5.8-r0, 10.5.9-r0, 10.5.11-r0, 10.5.12-r0+4 more10.5.17-r0, 10.6.9-r011
klibcdeb2.0.3-0ubuntu1, 2.0.3-0ubuntu1.14.04.32.0.3-0ubuntu1.14.04.3+esm37
mariadb-10.3deb1:10.3.34-0ubuntu0.20.04.11:10.3.37-0ubuntu0.20.04.11
mariadb-10.6deb1:10.6.7-2ubuntu11:10.6.11-0ubuntu0.22.04.11
OSV records
ALPINE-CVE-2018-25032GHSA-jc36-42cf-vqwjRHSA-2022:1591RHSA-2022:1642RHSA-2022:2192RHSA-2022:2198RHSA-2022:2201RHSA-2022:2213UBUNTU-CVE-2018-25032DLA-2968-1DSA-5111-1SUSE-SU-2022:1061-1
Also known as
PSF-2022-3, RHSA-2022:1661, RHSA-2022:4845, RHSA-2023:0943, RHSA-2023:0975, USN-5355-1, USN-5355-2, USN-5359-1, USN-5359-2, USN-5739-1, USN-6736-1

Charts affected

1,468 by stars
ChartLatestAffected imagesRadar Score
mrtg-backendwitcom-gmbh0.7.01 of 2See more

mrtg-backend witcom-gmbh 0.7.0

1 of the 2 container images this version deploys carry CVE-2018-25032.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.2.1febeebebe762
zlib@1.2.11-r3
1.2.12-r0

Open the chart page →

2,616
powerdnsadminwitcom-gmbh0.3.41 of 1See more

powerdnsadmin witcom-gmbh 0.3.4

1 of the 1 container images this version deploys carry CVE-2018-25032.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
zlib@1.2.11-r3
1.2.12-r0

Open the chart page →

2,643
Wordresswordpress0.2.01 of 2See more

Wordress wordpress 0.2.0

1 of the 2 container images this version deploys carry CVE-2018-25032.

Container imageDigestPackageFixed in
library/mysql:5.620575ecebe62
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1

Open the chart page →

1,339
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2018-25032.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
rsync@3.1.3-12.el8
0:3.1.3-14.el8_6.2

Open the chart page →

11,592
myfirstchartww-helm-charts-repo0.1.01 of 1See more

myfirstchart ww-helm-charts-repo 0.1.0

1 of the 1 container images this version deploys carry CVE-2018-25032.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginx:0.1.0205961b09a80
zlib@1:1.2.11.dfsg-1
1:1.2.11.dfsg-1+deb10u1

Open the chart page →

1,138
default-backendwyrihaximusnetVerified publisher1.1.01 of 1See more

default-backend wyrihaximusnet 1.1.0

1 of the 1 container images this version deploys carry CVE-2018-25032.

Container imageDigestPackageFixed in
ghcr.io/wyrihaximusnet/default-backend:randomb24e63efd841
zlib@1.2.11-r3
1.2.12-r0

Open the chart page →

2,535
skoonerxdVerified publisher1.1.01 of 1See more

skooner xd 1.1.0

1 of the 1 container images this version deploys carry CVE-2018-25032.

Container imageDigestPackageFixed in
ymuski/skooner:latest67819ca511b5
zlib@1.2.11-r3
1.2.12-r0

Open the chart page →

1,752
upsourcexykongVerified publisher0.1.11 of 1See more

upsource xykong 0.1.1

1 of the 1 container images this version deploys carry CVE-2018-25032.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1

Open the chart page →

702
helmexampleycztest0.1.01 of 1See more

helmexample ycztest 0.1.0

1 of the 1 container images this version deploys carry CVE-2018-25032.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1

Open the chart page →

702
mychartyi-test-chart0.1.01 of 1See more

mychart yi-test-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2018-25032.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1

Open the chart page →

702
rcloneymrs0.1.41 of 2See more

rclone ymrs 0.1.4

1 of the 2 container images this version deploys carry CVE-2018-25032.

Container imageDigestPackageFixed in
quay.io/simplyzee/kube-rclone:v1.52.389a0c23d5ad3
zlib@1.2.11-r3
1.2.12-r0

Open the chart page →

1,198
version-checkerymrs0.2.31 of 1See more

version-checker ymrs 0.2.3

1 of the 1 container images this version deploys carry CVE-2018-25032.

Container imageDigestPackageFixed in
quay.io/jetstack/version-checker:v0.2.15f6f8ba0b671
zlib@1.2.11-r3
1.2.12-r0

Open the chart page →

3,023
helmexampleyunpeng-helmexample0.1.01 of 1See more

helmexample yunpeng-helmexample 0.1.0

1 of the 1 container images this version deploys carry CVE-2018-25032.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1

Open the chart page →

702
posthogzeet0.23.21 of 9See more

posthog zeet 0.23.2

1 of the 9 container images this version deploys carry CVE-2018-25032.

Container imageDigestPackageFixed in
edoburu/pgbouncer:1.12.0abc0a4123a81
zlib@1.2.11-r3
1.2.12-r0

Open the chart page →

3,697
myfirstchartzikilabVerified publisher0.2.01 of 1See more

myfirstchart zikilab 0.2.0

1 of the 1 container images this version deploys carry CVE-2018-25032.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
zlib@1:1.2.11.dfsg-1
1:1.2.11.dfsg-1+deb10u1

Open the chart page →

1,138
alertmanager-matrix-forwarderzloi-space1.0.12 of 2See more

alertmanager-matrix-forwarder zloi-space 1.0.1

2 of the 2 container images this version deploys carry CVE-2018-25032.

Container imageDigestPackageFixed in
matrixdotorg/pantalaimon:v0.10.4ba6a587fa508
zlib@1:1.2.11.dfsg-1
1:1.2.11.dfsg-1+deb10u1
zl0i/alertmanager-matrix-forwarder:v1.0.0e94047931739
zlib@1.2.11-r3
1.2.12-r0

Open the chart page →

3,118
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2018-25032.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
zlib@1:1.2.11.dfsg-0ubuntu2
1:1.2.11.dfsg-0ubuntu2.1
yandex/clickhouse-server:21.3.204eccfffb01d7
zlib@1:1.2.11.dfsg-2ubuntu1.2
1:1.2.11.dfsg-2ubuntu1.3

Open the chart page →

9,250
grafana-matrix-forwarderzloi-space1.0.01 of 2See more

grafana-matrix-forwarder zloi-space 1.0.0

1 of the 2 container images this version deploys carry CVE-2018-25032.

Container imageDigestPackageFixed in
matrixdotorg/pantalaimon:v0.10.4ba6a587fa508
zlib@1:1.2.11.dfsg-1
1:1.2.11.dfsg-1+deb10u1

Open the chart page →

1,636

Container images carrying it

1,469 by charts deploying them

A fixed version is listed for 10 of the 10 affected packages.

Container imageDigestPackageFixed inUsed by
chetangautamm/repo:Opensips_Buildb4b94155ff5a
klibc@2.0.3-0ubuntu1.14.04.3
zlib@1:1.2.8.dfsg-1ubuntu1.1
2.0.3-0ubuntu1.14.04.3+esm3
1:1.2.8.dfsg-1ubuntu1.1+esm1
1
chetangautamm/repo:sipp.v3e7f7049e1544
zlib@1:1.2.11.dfsg-2ubuntu1.2
1:1.2.11.dfsg-2ubuntu1.3
1
cheyang/distributed-tf:1.6.046cc34755493
rsync@3.1.1-3ubuntu1.2
zlib@1:1.2.8.dfsg-2ubuntu4.1
3.1.1-3ubuntu1.3+esm1
1:1.2.8.dfsg-2ubuntu4.3+esm1
1
chirpstack/chirpstack-application-server:3.17.6e0b23dfd24d6
zlib@1.2.11-r3
1.2.12-r0
1
chirpstack/chirpstack-gateway-bridge:3.13.2ce3f2cdca8a9
zlib@1.2.11-r3
1.2.12-r0
1
chirpstack/chirpstack-network-server:3.16.1c98d7fe06bce
zlib@1.2.11-r3
1.2.12-r0
1
chubaofs/cfs-client:3.2.015ff74209ce7
zlib@1:1.2.11.dfsg-2
1:1.2.11.dfsg-2+deb11u1
1
chubaofs/cfs-server:3.2.0205030e045f2
zlib@1:1.2.11.dfsg-2
1:1.2.11.dfsg-2+deb11u1
1
citizenstig/httpbin:latestb81c818ccb86
zlib@1:1.2.8.dfsg-2ubuntu4
1:1.2.8.dfsg-2ubuntu4.3+esm1
1
ckulka/baikal:0.8.0aedb1f4f3fa0
zlib@1:1.2.11.dfsg-1
1:1.2.11.dfsg-1+deb10u1
1
clastix/kubectl:v1.2187fabaccb3a6
zlib@1.2.11-r3
1.2.12-r0
1
clastix/kubectl:v1.22d0376d87ac6b
zlib@1.2.11-r3
1.2.12-r0
1
cloudecho/hello:0.1.0f76ede067ab9
zlib@1.2.11-r3
1.2.12-r0
1
cloudentity/openbanking-quickstart-bank:1.11.19402ec4b5016
zlib@1.2.11-r3
1.2.12-r0
1
cloudentity/openbanking-quickstart-configuration:1.11.18a1890eb8265
zlib@1.2.11-r3
1.2.12-r0
1
cloudentity/openbanking-quickstart-consent-admin-portal:1.11.1ee83cdd45b7b
zlib@1.2.11-r3
1.2.12-r0
1
cloudentity/openbanking-quickstart-consent-page:1.11.15728654cecb7
zlib@1.2.11-r3
1.2.12-r0
1
cloudentity/openbanking-quickstart-consent-self-service-portal:1.11.18ca94ae6acf4
zlib@1.2.11-r3
1.2.12-r0
1
cloudentity/openbanking-quickstart-financroo-tpp:1.11.1c04eb10c77b7
zlib@1.2.11-r3
1.2.12-r0
1
cloudve/janis-terminal:latestaf56e77ca587
zlib@1:1.2.11.dfsg-0ubuntu2
1:1.2.11.dfsg-0ubuntu2.1
1
cloudve/ttyd:latestd79c1c5881c0
zlib@1:1.2.11.dfsg-0ubuntu2
1:1.2.11.dfsg-0ubuntu2.1
1
cockroachdb/cockroach-operator:v2.1.0983312754620
zlib@1.2.11-17.el8
0:1.2.11-18.el8_5
1
codaprotocol/buildkite-exporter:0.2.137c68e67a401
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1
1
codaprotocol/coda-user-agent:0.1.54ba4dd3a041f
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1
1
codercom/code-server:3.10.247605610ad8d
zlib@1:1.2.11.dfsg-1
1:1.2.11.dfsg-1+deb10u1
1
codeskyblue/gohttpserver:latestcaa862590e34
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1
1
conduction/agendaservice-nginx:lateste1c176458aaf
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1
1
conduction/agendaservice-php:latest9cfeeb6c7c20
zlib@1.2.11-r3
1.2.12-r0
1
conduction/balance-registration-nginx:dev9e24264ea8f3
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1
1
conduction/balance-registration-php:devc36094a41369
zlib@1.2.11-r3
1.2.12-r0
1
conduction/balance-registration-varnish:dev07c44005da9d
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1
1
conduction/betaalservice-nginx:latestd3577ddd5c67
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1
1
conduction/betaalservice-php:latestece1ab544c57
zlib@1.2.11-r3
1.2.12-r0
1
conduction/cgrc-nginx:devd8e23f10e882
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1
1
conduction/cgrc-varnish:deve154d5781c8a
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1
1
conduction/checkin-component-nginx:dev583d2cd8476c
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1
1
conduction/checkin-component-php:dev3423845692c1
zlib@1.2.11-r3
1.2.12-r0
1
conduction/checkin-component-varnish:devef3a3fb0ad47
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1
1
conduction/conduction-ui-nginx:devd9b38e234de9
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1
1
conduction/conduction-ui-php:dev2744565516e8
zlib@1.2.11-r3
1.2.12-r0
1
conduction/conduction-ui-varnish:dev5f5add2c12e0
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1
1
conduction/contactmoment-component-nginx:dev353dc46303ac
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1
1
conduction/contactmoment-component-php:deve1d4ad1e22a8
zlib@1.2.11-r3
1.2.12-r0
1
conduction/contactmoment-component-varnish:deve3546b97faea
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1
1
conduction/docparser-nginx:dev08524d8327b8
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1
1
conduction/docparser-php:devb6f95c8ead7d
zlib@1.2.11-r3
1.2.12-r0
1
conduction/docparser-varnish:dev45f20c4cd2fa
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1
1
conduction/kvk-nginx:devcf163d2b95b5
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1
1
conduction/kvk-php:dev8f177f9f8a7b
zlib@1.2.11-r3
1.2.12-r0
1
conduction/kvk-varnish:dev8722700f1768
zlib@1:1.2.8.dfsg-5
1:1.2.8.dfsg-5+deb9u1
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.