StackRadar

CVE-2019-11922

High

Advisory

Published 25 Jul 2019In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
8.1
base score, highest
EPSS
0.014
71st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
23
of 17,781 indexed, latest versions
Container images
20
deployed by those charts
Fix available
2 of 2
affected packages

libzstd-devel-1.5.0-1.13 on GA media

Carried by container images the latest versions of 23 of 17,781 indexed charts deploy, on 20 images.

Affected packageAffected versionsFixed inImages
libzstddeb1.3.1+dfsg-1~ubuntu0.16.04.1, 1.3.3+dfsg-2ubuntu11.3.1+dfsg-1~ubuntu0.16.04.1+esm2, 1.3.3+dfsg-2ubuntu1.118
zstdrpm1.4.2-lp151.3.3.11.5.0-1.132
OSV records
UBUNTU-CVE-2019-11922openSUSE-SU-2024:11544-1
Also known as
USN-4108-1, USN-5593-1

Charts affected

23 by stars
ChartLatestAffected imagesRadar Score
typesensehmphuVerified publisher0.1.61 of 1See more

typesense hmphu 0.1.6

1 of the 1 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
typesense/typesense:0.23.03accb727cbe2
libzstd@1.3.1+dfsg-1~ubuntu0.16.04.1
1.3.1+dfsg-1~ubuntu0.16.04.1+esm2

Open the chart page →

3,868
pgbouncerkubernetes-helm-chart-pgbouncer1.0.151 of 1See more

pgbouncer kubernetes-helm-chart-pgbouncer 1.0.15

1 of the 1 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
cradlepoint/pgbouncer:1.0.18f5720b0cd03
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1

Open the chart page →

5,802
acos-prometheus-exporter-helm-charta10-prometheus-exporter0.1.01 of 1See more

acos-prometheus-exporter-helm-chart a10-prometheus-exporter 0.1.0

1 of the 1 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
a10networks/acos-prometheus-exporter:latest8dc58d434d71
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1

Open the chart page →

12,007
ombibryanalves0.4.01 of 1See more

ombi bryanalves 0.4.0

1 of the 1 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
linuxserver/ombi:3.0.4572-ls452fbb21fb4903
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1

Open the chart page →

10,776
daskcloudnativeapp2.2.11 of 2See more

dask cloudnativeapp 2.2.1

1 of the 2 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
daskdev/dask-notebook:1.1.0052630f5ca04
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1

Open the chart page →

29,901
datacubedatacube-charts0.18.21 of 1See more

datacube datacube-charts 0.18.2

1 of the 1 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
opendatacube/wms:latest1b90cdf68831
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1

Open the chart page →

27,728
datacube-processingdatacube-charts0.1.11 of 2See more

datacube-processing datacube-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
opendatacube/pipelines:wofs-1.225d810e8504b8
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1

Open the chart page →

22,405
restcubedatacube-charts0.2.91 of 1See more

restcube datacube-charts 0.2.9

1 of the 1 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
opendatacube/restcube:latest91870111837c
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1

Open the chart page →

24,335
devtron-enterprisedevtron48.0.01 of 28See more

devtron-enterprise devtron 48.0.0

1 of the 28 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
libzstd@1.3.1+dfsg-1~ubuntu0.16.04.1
1.3.1+dfsg-1~ubuntu0.16.04.1+esm2

Open the chart page →

68,240
devtron-enterprisedevtron-labs48.0.01 of 28See more

devtron-enterprise devtron-labs 48.0.0

1 of the 28 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
libzstd@1.3.1+dfsg-1~ubuntu0.16.04.1
1.3.1+dfsg-1~ubuntu0.16.04.1+esm2

Open the chart page →

68,240
oom-event-generatorfairwinds-incubator0.2.21 of 1See more

oom-event-generator fairwinds-incubator 0.2.2

1 of the 1 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
xingse/kubernetes-oom-event-generator:v1.2.09f9d5492e4bf
libzstd@1.3.1+dfsg-1~ubuntu0.16.04.1
1.3.1+dfsg-1~ubuntu0.16.04.1+esm2

Open the chart page →

4,639
ibm-skydive-devibm-charts1.1.21 of 1See more

ibm-skydive-dev ibm-charts 1.1.2

1 of the 1 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
ibmcom/skydive:0.22.0395e60cc6e3d
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1

Open the chart page →

12,611
kovi-appkovi-charts0.8.11 of 1See more

kovi-app kovi-charts 0.8.1

1 of the 1 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
kennethreitz/httpbin:latest599fe5e50731
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1

Open the chart page →

14,813
csi-neonsankubesphere-testVerified publisher1.3.01 of 6See more

csi-neonsan kubesphere-test 1.3.0

1 of the 6 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
csiplugin/csi-neonsan:v1.2.21fa83d45417f
libzstd@1.3.1+dfsg-1~ubuntu0.16.04.1
1.3.1+dfsg-1~ubuntu0.16.04.1+esm2

Open the chart page →

18,475
cdn-remoteopencord0.2.41 of 3See more

cdn-remote opencord 0.2.4

1 of the 3 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1

Open the chart page →

63,223
comac-cuopencord0.1.11 of 4See more

comac-cu opencord 0.1.1

1 of the 4 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1

Open the chart page →

8,047
mcord-cdn-remoteopencord0.1.61 of 2See more

mcord-cdn-remote opencord 0.1.6

1 of the 2 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
woojoong/wowza:latestec230db19652
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1

Open the chart page →

42,614
mcord-control-planeopencord0.2.21 of 5See more

mcord-control-plane opencord 0.2.2

1 of the 5 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1

Open the chart page →

15,648
omec-control-planeopencord0.1.311 of 8See more

omec-control-plane opencord 0.1.31

1 of the 8 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
omecproject/c3po-hss:master-latest638671ef4842
libzstd@1.3.1+dfsg-1~ubuntu0.16.04.1
1.3.1+dfsg-1~ubuntu0.16.04.1+esm2

Open the chart page →

40,715
voltha-infraopencord2.14.01 of 10See more

voltha-infra opencord 2.14.0

1 of the 10 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
library/ubuntu:16.041f1a2d56de1d
libzstd@1.3.1+dfsg-1~ubuntu0.16.04.1
1.3.1+dfsg-1~ubuntu0.16.04.1+esm2

Open the chart page →

41,044
cf-operatorquarks2.3.0+0.g27a91cdf2 of 2See more

cf-operator quarks 2.3.0+0.g27a91cdf

2 of the 2 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
cfcontainerization/cf-operator:v2.3.0-0.g27a91cdf82fa261c18a8
zstd@1.4.2-lp151.3.3.1
1.5.0-1.13
cfcontainerization/quarks-job:v0.0.0-0.g70ae34b58fb1c173a46
zstd@1.4.2-lp151.3.3.1
1.5.0-1.13

Open the chart page →

11,942
devtron-enterpriseromholdings48.0.01 of 28See more

devtron-enterprise romholdings 48.0.0

1 of the 28 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
libzstd@1.3.1+dfsg-1~ubuntu0.16.04.1
1.3.1+dfsg-1~ubuntu0.16.04.1+esm2

Open the chart page →

68,240
space-engineerssoblivionscall1.0.21 of 2See more

space-engineers soblivionscall 1.0.2

1 of the 2 container images this version deploys carry CVE-2019-11922.

Container imageDigestPackageFixed in
library/ubuntu:xenial1f1a2d56de1d
libzstd@1.3.1+dfsg-1~ubuntu0.16.04.1
1.3.1+dfsg-1~ubuntu0.16.04.1+esm2

Open the chart page →

2,766

Container images carrying it

20 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
libzstd@1.3.1+dfsg-1~ubuntu0.16.04.1
1.3.1+dfsg-1~ubuntu0.16.04.1+esm2
3
library/ubuntu:16.04:xenial1f1a2d56de1d
libzstd@1.3.1+dfsg-1~ubuntu0.16.04.1
1.3.1+dfsg-1~ubuntu0.16.04.1+esm2
2
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1
2
a10networks/acos-prometheus-exporter:latest8dc58d434d71
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1
1
cfcontainerization/cf-operator:v2.3.0-0.g27a91cdf82fa261c18a8
zstd@1.4.2-lp151.3.3.1
1.5.0-1.13
1
cfcontainerization/quarks-job:v0.0.0-0.g70ae34b58fb1c173a46
zstd@1.4.2-lp151.3.3.1
1.5.0-1.13
1
cradlepoint/pgbouncer:1.0.18f5720b0cd03
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1
1
csiplugin/csi-neonsan:v1.2.21fa83d45417f
libzstd@1.3.1+dfsg-1~ubuntu0.16.04.1
1.3.1+dfsg-1~ubuntu0.16.04.1+esm2
1
daskdev/dask-notebook:1.1.0052630f5ca04
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1
1
ibmcom/skydive:0.22.0395e60cc6e3d
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1
1
kennethreitz/httpbin:latest599fe5e50731
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1
1
linuxserver/ombi:3.0.4572-ls452fbb21fb4903
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1
1
omecproject/c3po-hss:master-latest638671ef4842
libzstd@1.3.1+dfsg-1~ubuntu0.16.04.1
1.3.1+dfsg-1~ubuntu0.16.04.1+esm2
1
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1
1
opendatacube/pipelines:wofs-1.225d810e8504b8
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1
1
opendatacube/restcube:latest91870111837c
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1
1
opendatacube/wms:latest1b90cdf68831
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1
1
typesense/typesense:0.23.03accb727cbe2
libzstd@1.3.1+dfsg-1~ubuntu0.16.04.1
1.3.1+dfsg-1~ubuntu0.16.04.1+esm2
1
woojoong/wowza:latestec230db19652
libzstd@1.3.3+dfsg-2ubuntu1
1.3.3+dfsg-2ubuntu1.1
1
xingse/kubernetes-oom-event-generator:v1.2.09f9d5492e4bf
libzstd@1.3.1+dfsg-1~ubuntu0.16.04.1
1.3.1+dfsg-1~ubuntu0.16.04.1+esm2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.