StackRadar

CVE-2019-19956

High

Advisory

Published 24 Dec 2019In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.056
92nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
119
of 17,781 indexed, latest versions
Container images
86
deployed by those charts
Fix available
3 of 3
affected packages

libxml2 - security update

Carried by container images the latest versions of 119 of 17,781 indexed charts deploy, on 86 images.

Affected packageAffected versionsFixed inImages
libxml2deb2.9.1+dfsg1-3ubuntu4.3, 2.9.1+dfsg1-3ubuntu4.4, 2.9.1+dfsg1-3ubuntu4.12, 2.9.1+dfsg1-5+deb8u3+9 more2.9.1+dfsg1-3ubuntu4.13+esm1, 2.9.1+dfsg1-5+deb8u8, 2.9.3+dfsg1-1ubuntu0.7, 2.9.4+dfsg1-6.1ubuntu1.359
libxml2apk2.9.8-r0, 2.9.8-r1, 2.9.9-r0, 2.9.9-r1+1 more2.9.8-r2, 2.9.9-r2, 2.9.9-r325
libxml2rpm2.9.7-lp151.5.3.12.9.7-lp151.5.12.12
OSV records
ALPINE-CVE-2019-19956UBUNTU-CVE-2019-19956DLA-2048-1openSUSE-SU-2020:0781-1
Also known as
USN-4274-1

Charts affected

119 by stars
ChartLatestAffected imagesRadar Score
mariadb-initsmo-helm-chart6.0.01 of 2See more

mariadb-init smo-helm-chart 6.0.0

1 of the 2 container images this version deploys carry CVE-2019-19956.

Container imageDigestPackageFixed in
oomk8s/readiness-check:2.0.2875814cc853d
libxml2@2.9.3+dfsg1-1ubuntu0.6
2.9.3+dfsg1-1ubuntu0.7

Open the chart page →

24,776
msbsmo-helm-chart6.0.01 of 6See more

msb smo-helm-chart 6.0.0

1 of the 6 container images this version deploys carry CVE-2019-19956.

Container imageDigestPackageFixed in
oomk8s/readiness-check:2.0.07daa08b81954
libxml2@2.9.3+dfsg1-1ubuntu0.5
2.9.3+dfsg1-1ubuntu0.7

Open the chart page →

27,477
multicloudsmo-helm-chart6.0.01 of 14See more

multicloud smo-helm-chart 6.0.0

1 of the 14 container images this version deploys carry CVE-2019-19956.

Container imageDigestPackageFixed in
oomk8s/ubuntu-init:1.0.03adf3d21ad3b
libxml2@2.9.3+dfsg1-1ubuntu0.2
2.9.3+dfsg1-1ubuntu0.7

Open the chart page →

9,436
pndasmo-helm-chart6.0.01 of 3See more

pnda smo-helm-chart 6.0.0

1 of the 3 container images this version deploys carry CVE-2019-19956.

Container imageDigestPackageFixed in
oomk8s/readiness-check:2.0.07daa08b81954
libxml2@2.9.3+dfsg1-1ubuntu0.5
2.9.3+dfsg1-1ubuntu0.7

Open the chart page →

27,477
pombasmo-helm-chart6.0.01 of 17See more

pomba smo-helm-chart 6.0.0

1 of the 17 container images this version deploys carry CVE-2019-19956.

Container imageDigestPackageFixed in
oomk8s/readiness-check:2.0.07daa08b81954
libxml2@2.9.3+dfsg1-1ubuntu0.5
2.9.3+dfsg1-1ubuntu0.7

Open the chart page →

29,220
portalsmo-helm-chart6.0.01 of 8See more

portal smo-helm-chart 6.0.0

1 of the 8 container images this version deploys carry CVE-2019-19956.

Container imageDigestPackageFixed in
oomk8s/readiness-check:2.0.07daa08b81954
libxml2@2.9.3+dfsg1-1ubuntu0.5
2.9.3+dfsg1-1ubuntu0.7

Open the chart page →

27,477
sdcsmo-helm-chart6.0.01 of 14See more

sdc smo-helm-chart 6.0.0

1 of the 14 container images this version deploys carry CVE-2019-19956.

Container imageDigestPackageFixed in
oomk8s/readiness-check:2.0.2875814cc853d
libxml2@2.9.3+dfsg1-1ubuntu0.6
2.9.3+dfsg1-1ubuntu0.7

Open the chart page →

25,769
sdnc-ansible-serversmo-helm-chart6.0.01 of 3See more

sdnc-ansible-server smo-helm-chart 6.0.0

1 of the 3 container images this version deploys carry CVE-2019-19956.

Container imageDigestPackageFixed in
oomk8s/readiness-check:2.0.2875814cc853d
libxml2@2.9.3+dfsg1-1ubuntu0.6
2.9.3+dfsg1-1ubuntu0.7

Open the chart page →

25,769
sdnc-portalsmo-helm-chart6.0.01 of 3See more

sdnc-portal smo-helm-chart 6.0.0

1 of the 3 container images this version deploys carry CVE-2019-19956.

Container imageDigestPackageFixed in
oomk8s/readiness-check:2.0.2875814cc853d
libxml2@2.9.3+dfsg1-1ubuntu0.6
2.9.3+dfsg1-1ubuntu0.7

Open the chart page →

25,769
sdnc-promsmo-helm-chart6.0.01 of 2See more

sdnc-prom smo-helm-chart 6.0.0

1 of the 2 container images this version deploys carry CVE-2019-19956.

Container imageDigestPackageFixed in
oomk8s/readiness-check:2.0.2875814cc853d
libxml2@2.9.3+dfsg1-1ubuntu0.6
2.9.3+dfsg1-1ubuntu0.7

Open the chart page →

24,776
sdnc-websmo-helm-chart6.0.01 of 3See more

sdnc-web smo-helm-chart 6.0.0

1 of the 3 container images this version deploys carry CVE-2019-19956.

Container imageDigestPackageFixed in
oomk8s/readiness-check:2.0.2875814cc853d
libxml2@2.9.3+dfsg1-1ubuntu0.6
2.9.3+dfsg1-1ubuntu0.7

Open the chart page →

24,776
ueb-listenersmo-helm-chart6.0.01 of 3See more

ueb-listener smo-helm-chart 6.0.0

1 of the 3 container images this version deploys carry CVE-2019-19956.

Container imageDigestPackageFixed in
oomk8s/readiness-check:2.0.2875814cc853d
libxml2@2.9.3+dfsg1-1ubuntu0.6
2.9.3+dfsg1-1ubuntu0.7

Open the chart page →

25,769
restful-distributed-lock-managerstakaterVerified publisher1.0.41 of 1See more

restful-distributed-lock-manager stakater 1.0.4

1 of the 1 container images this version deploys carry CVE-2019-19956.

Container imageDigestPackageFixed in
stakater/restful-distributed-lock-manager:0.5.34f8e409f30c2
libxml2@2.9.1+dfsg1-5+deb8u6
2.9.1+dfsg1-5+deb8u8

Open the chart page →

3,116
sonarqubestakaterVerified publisher0.10.31 of 2See more

sonarqube stakater 0.10.3

1 of the 2 container images this version deploys carry CVE-2019-19956.

Container imageDigestPackageFixed in
library/postgres:9.6.25284ba74a106
libxml2@2.9.1+dfsg1-5+deb8u4
2.9.1+dfsg1-5+deb8u8

Open the chart page →

11,841
shinystatcan0.1.31 of 2See more

shiny statcan 0.1.3

1 of the 2 container images this version deploys carry CVE-2019-19956.

Container imageDigestPackageFixed in
library/nginx:1.16.0-alpine270bea203d2f
libxml2@2.9.9-r1
2.9.9-r2

Open the chart page →

627
lightstepupdater-lightstep-satellite1.2.21 of 1See more

lightstep updater-lightstep-satellite 1.2.2

1 of the 1 container images this version deploys carry CVE-2019-19956.

Container imageDigestPackageFixed in
lightstep/collector:2021-01-26_23-02-36Z11c5569aaf3b
libxml2@2.9.3+dfsg1-1ubuntu0.6
2.9.3+dfsg1-1ubuntu0.7

Open the chart page →

15,330
Wordressuvaise-wordpress0.2.01 of 2See more

Wordress uvaise-wordpress 0.2.0

1 of the 2 container images this version deploys carry CVE-2019-19956.

Container imageDigestPackageFixed in
library/wordpress:4.8-apache6216f64ab88f
libxml2@2.9.1+dfsg1-5+deb8u5
2.9.1+dfsg1-5+deb8u8

Open the chart page →

1,339
Wordresswordpress0.2.01 of 2See more

Wordress wordpress 0.2.0

1 of the 2 container images this version deploys carry CVE-2019-19956.

Container imageDigestPackageFixed in
library/wordpress:4.8-apache6216f64ab88f
libxml2@2.9.1+dfsg1-5+deb8u5
2.9.1+dfsg1-5+deb8u8

Open the chart page →

1,339
satisfyymrs1.0.21 of 1See more

satisfy ymrs 1.0.2

1 of the 1 container images this version deploys carry CVE-2019-19956.

Container imageDigestPackageFixed in
anapsix/satisfydigest-pinnedfae78e3809e9
libxml2@2.9.8-r1
2.9.8-r2

Open the chart page →

1,572

Container images carrying it

86 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
oomk8s/readiness-check:2.0.2875814cc853d
libxml2@2.9.3+dfsg1-1ubuntu0.6
2.9.3+dfsg1-1ubuntu0.7
11
library/postgres:9.6.25284ba74a106
libxml2@2.9.1+dfsg1-5+deb8u4
2.9.1+dfsg1-5+deb8u8
7
oomk8s/readiness-check:2.0.07daa08b81954
libxml2@2.9.3+dfsg1-1ubuntu0.5
2.9.3+dfsg1-1ubuntu0.7
6
bde2020/hive:2.3.2-postgresql-metastore620267768985
libxml2@2.9.1+dfsg1-5+deb8u6
2.9.1+dfsg1-5+deb8u8
4
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
libxml2@2.9.3+dfsg1-1ubuntu0.5
2.9.3+dfsg1-1ubuntu0.7
4
hyperledger/fabric-couchdb:0.4.15f6c724592abf
libxml2@2.9.3+dfsg1-1ubuntu0.6
2.9.3+dfsg1-1ubuntu0.7
4
library/wordpress:4.8-apache6216f64ab88f
libxml2@2.9.1+dfsg1-5+deb8u5
2.9.1+dfsg1-5+deb8u8
4
anapsix/satisfyfae78e3809e9
libxml2@2.9.8-r1
2.9.8-r2
3
library/postgres:9.6.11-alpine83bc87df343f
libxml2@2.9.9-r0
2.9.9-r2
3
mautic/mautic:2.13-apachea954c5868d76
libxml2@2.9.1+dfsg1-5+deb8u6
2.9.1+dfsg1-5+deb8u8
3
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
libxml2@2.9.3+dfsg1-1ubuntu0.6
2.9.3+dfsg1-1ubuntu0.7
3
omecproject/pod-init:1.0.016c14327ce4a
libxml2@2.9.9-r2
2.9.9-r3
3
gradiant/hive:2.3.2-postgresql-metastoreaae4f8a21f8b
libxml2@2.9.1+dfsg1-5+deb8u6
2.9.1+dfsg1-5+deb8u8
2
lightstep/collector:2021-01-26_23-02-36Z11c5569aaf3b
libxml2@2.9.3+dfsg1-1ubuntu0.6
2.9.3+dfsg1-1ubuntu0.7
2
migmartri/prerender:latest486aacfd5aa9
libxml2@2.9.1+dfsg1-5+deb8u4
2.9.1+dfsg1-5+deb8u8
2
mojaloop/reporting-hub-bop-role-ui:v1.5.55f025fe3554b
libxml2@2.9.9-r1
2.9.9-r2
2
mojaloop/reporting-hub-bop-shell:v2.3.3c338940807c9
libxml2@2.9.9-r1
2.9.9-r2
2
mojaloop/reporting-hub-bop-trx-ui:v2.0.289cb2e16a2a3
libxml2@2.9.9-r1
2.9.9-r2
2
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
libxml2@2.9.4+dfsg1-6.1ubuntu1
2.9.4+dfsg1-6.1ubuntu1.3
2
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
libxml2@2.9.3+dfsg1-1ubuntu0.6
2.9.3+dfsg1-1ubuntu0.7
2
spoonest/clickhouse-tabix-web-client:stablefd2b754a5d37
libxml2@2.9.1+dfsg1-5+deb8u6
2.9.1+dfsg1-5+deb8u8
2
wurstmeister/zookeeper:latest7a7fd44a7210
libxml2@2.9.1+dfsg1-3ubuntu4.3
2.9.1+dfsg1-3ubuntu4.13+esm1
2
apacherocketmq/rocketmq-dashboard:1.0.024799aff6cf8
libxml2@2.9.1+dfsg1-5+deb8u4
2.9.1+dfsg1-5+deb8u8
1
billimek/comcastusage-for-influxdb:latest801bba1228ac
libxml2@2.9.1+dfsg1-5+deb8u6
2.9.1+dfsg1-5+deb8u8
1
camptocamp/r10k-dashboard:0.2.6073be594d145
libxml2@2.9.1+dfsg1-5+deb8u6
2.9.1+dfsg1-5+deb8u8
1
cfcontainerization/cf-operator:v2.3.0-0.g27a91cdf82fa261c18a8
libxml2@2.9.7-lp151.5.3.1
2.9.7-lp151.5.12.1
1
cfcontainerization/quarks-job:v0.0.0-0.g70ae34b58fb1c173a46
libxml2@2.9.7-lp151.5.3.1
2.9.7-lp151.5.12.1
1
cheyang/distributed-tf:1.6.046cc34755493
libxml2@2.9.3+dfsg1-1ubuntu0.5
2.9.3+dfsg1-1ubuntu0.7
1
chorss/docker-pgadmin4:4.115c549cacb8ab
libxml2@2.9.9-r1
2.9.9-r2
1
confluentinc/cp-kafka:5.0.1c87b1c07fb53
libxml2@2.9.1+dfsg1-5+deb8u7
2.9.1+dfsg1-5+deb8u8
1
dniel/www:master8519808fba22
libxml2@2.9.9-r1
2.9.9-r2
1
fiware/bae-activation-service:v0.0.33e3ec88d59ed
libxml2@2.9.1+dfsg1-5+deb8u6
2.9.1+dfsg1-5+deb8u8
1
galaxy/galaxy-init:v18.010267bad550e6
libxml2@2.9.1+dfsg1-3ubuntu4.12
2.9.1+dfsg1-3ubuntu4.13+esm1
1
galaxy/galaxy-stable:v18.018e577a626dfd
libxml2@2.9.1+dfsg1-3ubuntu4.12
2.9.1+dfsg1-3ubuntu4.13+esm1
1
gradiant/jmxproxy:3.4.045eceb1bc55c
libxml2@2.9.8-r0
2.9.8-r2
1
hickey/puppet_forge:1.10.0c1148a09ef20
libxml2@2.9.1+dfsg1-5+deb8u5
2.9.1+dfsg1-5+deb8u8
1
hyperledger/fabric-couchdb:0.4.10c65891b6c237
libxml2@2.9.3+dfsg1-1ubuntu0.5
2.9.3+dfsg1-1ubuntu0.7
1
ibmcom/icp-sert-bats:3.2.0b558f2b444ae
libxml2@2.9.9-r1
2.9.9-r2
1
ibmcom/icp-swift-sample:latestb5d8c6714dbc
libxml2@2.9.3+dfsg1-1ubuntu0.5
2.9.3+dfsg1-1ubuntu0.7
1
ibmcom/skydive:0.22.0395e60cc6e3d
libxml2@2.9.4+dfsg1-6.1ubuntu1.2
2.9.4+dfsg1-6.1ubuntu1.3
1
igrantio/bb-consent-admin-dashboard:2023.11.6852574120a1e
libxml2@2.9.9-r0
2.9.9-r2
1
igrantio/bb-consent-privacy-dashboard:2023.11.6c12f80997b0f
libxml2@2.9.9-r1
2.9.9-r2
1
kennethreitz/httpbin:latest599fe5e50731
libxml2@2.9.4+dfsg1-6.1ubuntu1.2
2.9.4+dfsg1-6.1ubuntu1.3
1
konradkleine/docker-registry-frontend:v2181aad54ee64
libxml2@2.9.1+dfsg1-5+deb8u5
2.9.1+dfsg1-5+deb8u8
1
library/nginx:1.17.4-alpine0649f548ea26
libxml2@2.9.9-r2
2.9.9-r3
1
library/nginx:1.16.0-alpine270bea203d2f
libxml2@2.9.9-r1
2.9.9-r2
1
library/nginx:1.15.9-alpine55390addbb1a
libxml2@2.9.9-r1
2.9.9-r2
1
library/nginx:1.15-alpine57a226fb6ab6
libxml2@2.9.9-r1
2.9.9-r2
1
library/postgres:9.6.52f2b1f4d9d83
libxml2@2.9.1+dfsg1-5+deb8u5
2.9.1+dfsg1-5+deb8u8
1
linuxserver/couchpotato:75e576ee-ls389cd8d5fb1ac
libxml2@2.9.8-r1
2.9.8-r2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.