StackRadar

CVE-2022-1271

High

Advisory

Published 7 Apr 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.8
base score, highest
EPSS
0.050
92nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,242
of 17,787 indexed, latest versions
Container images
1,171
deployed by those charts
Fix available
6 of 6
affected packages

Red Hat Security Advisory: gzip security update

Carried by container images the latest versions of 1,242 of 17,787 indexed charts deploy, on 1,171 images.

Affected packageAffected versionsFixed inImages
gzipdeb1.6-3ubuntu1, 1.6-4ubuntu1, 1.6-5+b1, 1.6-5ubuntu1+4 more1.6-3ubuntu1+esm1, 1.6-4ubuntu1+esm1, 1.6-5+deb9u1, 1.6-5ubuntu1.2+3 more851
xz-utilsdeb5.1.1alpha+20120614-2ubuntu2, 5.2.2-1.2+b1, 5.2.2-1.3, 5.2.4-1+2 more5.1.1alpha+20120614-2ubuntu2.14.04.1+esm1, 5.1.1alpha+20120614-2ubuntu2.16.04.1+esm1, 5.2.2-1.2+deb9u1, 5.2.2-1.3ubuntu0.1+3 more849
xzapk5.2.5-r05.2.5-r1215
xzrpm5.2.2-1.el7, 5.2.3-4.3.1, 5.2.3-lp151.4.3.1, 5.2.4-3.el8+2 more0:5.2.2-2.el7_9, 0:5.2.4-4.el8_6, 5.2.3-150000.4.7.1, 5.2.6-1.1104
gziprpm1.5-10.el7, 1.9-9.el8, 1.9-10.el8_2, 1.9-12.el8+1 more0:1.5-11.el7_9, 0:1.9-13.el8_558
gzipapk1.10-r0, 1.10-r11.12-r02
OSV records
ALPINE-CVE-2022-1271RHSA-2022:1537RHSA-2022:2191RHSA-2022:4991RHSA-2022:5052UBUNTU-CVE-2022-1271DLA-2976-1DLA-2977-1DSA-5122-1DSA-5123-1openSUSE-SU-2024:12271-1SUSE-SU-2022:1158-1
Also known as
RHSA-2022:1592, RHSA-2022:1665, RHSA-2022:1676, RHSA-2022:4992, RHSA-2022:4993, RHSA-2022:4994, USN-5378-1, USN-5378-2, USN-5378-3, USN-5378-4

Charts affected

1,242 by stars
ChartLatestAffected imagesRadar Score
db-backupballe-petersen0.1.41 of 1See more

db-backup balle-petersen 0.1.4

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
tobiasbp/db-backup:0.0.314bee6e33a26
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

4,814
livekit-serverbeeinventor1.0.01 of 2See more

livekit-server beeinventor 1.0.0

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
gcr.io/google-containers/startup-script:v29d0006c93668
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1

Open the chart page →

2,602
open-elevationbeeinventor0.1.01 of 2See more

open-elevation beeinventor 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
openelevation/open-elevation:latest82fb21612e86
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1

Open the chart page →

13,199
folding-at-homebrannon0.1.11 of 1See more

folding-at-home brannon 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
brannondorsey/fah:7.5.17bd011904534
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

805
brpservicebrpservice1.1.02 of 4See more

brpservice brpservice 1.1.0

2 of the 4 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/brpservice-nginx:latest4db9b77c4425
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
ghcr.io/conductionnl/brpservice-php:latestc17f1ba17d36
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

7,830
geoserver-cloudcamptocamp20.0.56 of 11See more

geoserver-cloud camptocamp2 0.0.5

6 of the 11 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1

Open the chart page →

84,678
geoserverCloudcamptocamp20.0.66 of 11See more

geoserverCloud camptocamp2 0.0.6

6 of the 11 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1

Open the chart page →

84,678
phpldapadmincetic0.1.41 of 1See more

phpldapadmin cetic 0.1.4

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
osixia/phpldapadmin:0.7.11ab629698ae0
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1

Open the chart page →

2,559
passbolt-hachristianhuthVerified publisher6.0.11 of 4See more

passbolt-ha christianhuth 6.0.1

1 of the 4 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
passbolt/passbolt:3.4.0-ce-non-root655547e17263
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1

Open the chart page →

10,873
distributed-jmetercloudnativeapp1.0.11 of 1See more

distributed-jmeter cloudnativeapp 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
pedrocesarti/jmeter-docker:3.314851f144f57
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1

Open the chart page →

4,532
tensorflow-notebookcloudnativeapp0.1.21 of 1See more

tensorflow-notebook cloudnativeapp 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
tensorflow/tensorflow:1.6.0-devel1e3172090703
gzip@1.6-4ubuntu1
xz-utils@5.1.1alpha+20120614-2ubuntu2
1.6-4ubuntu1+esm1
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm1

Open the chart page →

36,132
cnpg-sandboxcloudnative-pgVerified publisher0.6.11 of 6See more

cnpg-sandbox cloudnative-pg 0.6.1

1 of the 6 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.15.1a25886092fa4
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

7,583
clustereye-stackclustereyeVerified publisher0.1.11 of 5See more

clustereye-stack clustereye 0.1.1

1 of the 5 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
johnblack77/clustereye:latest-amd64bb53ceb8442e
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

4,896
contactcataloguscontact-catalogus1.0.01 of 3See more

contactcatalogus contact-catalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/contactcatalogus-php:latesteeb625bd660c
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

7,303
sops-operatorcraftypathVerified publisher0.8.01 of 1See more

sops-operator craftypath 0.8.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
craftypath/sops-operator:v0.8.0402a0024c732
xz@5.2.4-3.el8
0:5.2.4-4.el8_6

Open the chart page →

6,473
duplicaticronce0.1.01 of 1See more

duplicati cronce 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
duplicati/duplicati:2.0.5.111_canary_2020-09-268660f0eda7c9
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1

Open the chart page →

3,026
cryptlex-enterprisecryptlex3.21.251 of 8See more

cryptlex-enterprise cryptlex 3.21.25

1 of the 8 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
library/postgres:12.3-alpine7693f2082c68
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

2,345
cubefscubefs3.2.02 of 10See more

cubefs cubefs 3.2.0

2 of the 10 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
chubaofs/cfs-client:3.2.015ff74209ce7
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1
chubaofs/cfs-server:3.2.0205030e045f2
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1

Open the chart page →

15,891
data-fairdata354-helmVerified publisher1.1.23 of 12See more

data-fair data354-helm 1.1.2

3 of the 12 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
apsl/thumbor:6.7.051e2de5c2c70
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
koumoul/capture:17108d47be3b2
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
ghcr.io/data-fair/elasticsearch:7.17.1aa45adaf59a7
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1

Open the chart page →

38,424
extendeddaemonsetdatadogVerified publisher0.3.31 of 1See more

extendeddaemonset datadog 0.3.3

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
datadog/extendeddaemonset:v0.8.0513a4377aed5
xz@5.2.4-3.el8
0:5.2.4-4.el8_6

Open the chart page →

4,759
prometheus-sentry-exporterdeliveryheroVerified publisher0.1.51 of 1See more

prometheus-sentry-exporter deliveryhero 0.1.5

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ujamii/prometheus-sentry-exporter:0.5.06243197349e1
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

2,473
weblatedeliveryheroVerified publisher0.3.21 of 3See more

weblate deliveryhero 0.3.2

1 of the 3 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
weblate/weblate:4.2.2-169c160d37a3c
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

7,987
wiremockdeliveryheroVerified publisher1.4.61 of 2See more

wiremock deliveryhero 1.4.6

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
rodolpheche/wiremock:2.26.03be08a386092
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1

Open the chart page →

2,140
frontenddemo-application0.1.01 of 1See more

frontend demo-application 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
azhar008/flaskapplication:latesta1e827b0adea
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1

Open the chart page →

3,558
mailtrapdev-goodies0.1.01 of 1See more

mailtrap dev-goodies 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
eaudeweb/mailtrap:2.3b8ad9b7e19bb
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

2,508
dnsmasqdevplayer0Verified publisher0.1.51 of 2See more

dnsmasq devplayer0 0.1.5

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/devplayer0/kubelan:0.2.3b776dae45d08
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

3,392
zammaddevplayer0Verified publisher4.0.51 of 4See more

zammad devplayer0 4.0.5

1 of the 4 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
zammad/zammad-docker-compose:zammad-4.1.0-312808e2dfa810
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

6,113
calicodevtron0.1.11 of 4See more

calico devtron 0.1.1

1 of the 4 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
gzip@1.9-9.el8
xz@5.2.4-3.el8
0:1.9-13.el8_5
0:5.2.4-4.el8_6

Open the chart page →

10,073
clairdevtron0.1.142 of 2See more

clair devtron 0.1.14

2 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
xz@5.2.4-3.el8
0:5.2.4-4.el8_6
quay.io/devtron/postgres:11.3ef035ac10498
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1

Open the chart page →

6,237
digispoof-interfacedigispoof-interface1.0.02 of 3See more

digispoof-interface digispoof-interface 1.0.0

2 of the 3 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/digispoof-interface-nginx:latest8fa4597217a4
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1
ghcr.io/conductionnl/digispoof-interface-php:latest03aba499950f
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

7,779
matomodigitalist-open-cloud-matomo12.0.201 of 3See more

matomo digitalist-open-cloud-matomo 12.0.20

1 of the 3 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
digitalist/nginx:1.21.6eec27ad73eaa
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

3,539
hbasedmwm-bigdataVerified publisher0.1.61 of 5See more

hbase dmwm-bigdata 0.1.6

1 of the 5 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
gradiant/hdfs:2.7.73b28784ba41f
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

13,390
opentsdbdmwm-bigdataVerified publisher0.1.71 of 6See more

opentsdb dmwm-bigdata 0.1.7

1 of the 6 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
gradiant/hdfs:2.7.73b28784ba41f
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

17,509
spa-demodniel0.7.31 of 1See more

spa-demo dniel 0.7.3

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
dniel/forwardauth-spademo:masterd3e38df449a2
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

1,322
dominodominoVerified publisher0.1.111 of 3See more

domino domino 0.1.11

1 of the 3 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/tauffer-consulting/domino-frontend:latesta923b86a0903
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

8,842
nifi-registrydysnixVerified publisher1.1.51 of 2See more

nifi-registry dysnix 1.1.5

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
apache/nifi-registry:0.8.0974efa2f21da
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

6,531
jenkinsedu2.7.11 of 2See more

jenkins edu 2.7.1

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:0.1.193170069ff0976
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

4,434
enbuildenbuildVerified publisher0.0.501 of 6See more

enbuild enbuild 0.0.50

1 of the 6 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
gzip@1.9-12.el8
xz@5.2.4-3.el8
0:1.9-13.el8_5
0:5.2.4-4.el8_6

Open the chart page →

31,572
pitchforkexpediagroup0.1.41 of 1See more

pitchfork expediagroup 0.1.4

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
expediagroup/pitchfork:1.314f2cf61e7de9
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1

Open the chart page →

3,309
vidcheckfactlyVerified publisher0.5.21 of 2See more

vidcheck factly 0.5.2

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
factly/vidcheck-studio:0.12.024be158ec7d3
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

3,617
taigafermosit0.0.111 of 7See more

taiga fermosit 0.0.11

1 of the 7 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
library/nginx:1.19-alpine07ab71a2c8e4
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

8,520
flink-operatorflink-operator0.1.11 of 2See more

flink-operator flink-operator 0.1.1

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
gzip@1.6-5ubuntu1
xz-utils@5.2.2-1.3
1.6-5ubuntu1.2
5.2.2-1.3ubuntu0.1

Open the chart page →

12,914
openldapfluktuid0.1.11 of 2See more

openldap fluktuid 0.1.1

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

3,313
appdaemongeek-cookbookVerified publisher8.4.21 of 1See more

appdaemon geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
acockburn/appdaemon:4.0.83a93281d7e94
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

3,461
baikalgeek-cookbookVerified publisher5.2.01 of 1See more

baikal geek-cookbook 5.2.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ckulka/baikal:0.8.0aedb1f4f3fa0
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

1,683
bazarrgeek-cookbookVerified publisher10.6.21 of 1See more

bazarr geek-cookbook 10.6.2

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1

Open the chart page →

17,438
deepstackgeek-cookbookVerified publisher1.5.21 of 2See more

deepstack geek-cookbook 1.5.2

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
robmarkcole/deepstack-ui:latest410275726459
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1

Open the chart page →

5,305
firefly-iiigeek-cookbookVerified publisher0.3.01 of 1See more

firefly-iii geek-cookbook 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
fireflyiii/core:version-5.6.142f4283bd0cf7
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

2,076
games-on-whalesgeek-cookbookVerified publisher1.8.23 of 7See more

games-on-whales geek-cookbook 1.8.2

3 of the 7 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1

Open the chart page →

35,464
ghostgeek-cookbookVerified publisher2.2.01 of 1See more

ghost geek-cookbook 2.2.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
library/ghost:4.37.0767230c0f263
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1

Open the chart page →

4,260

Container images carrying it

1,171 by charts deploying them

A fixed version is listed for 6 of the 6 affected packages.

Container imageDigestPackageFixed inUsed by
zohardocker12/weather_app_flask:latestb86d60dbb68d
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
zooz/predator:1.6f491d1f7a865
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
1
gcr.io/cadvisor/cadvisor:v0.40.0135327c978de
xz@5.2.5-r0
5.2.5-r1
1
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
gzip@1.6-5ubuntu1
xz-utils@5.2.2-1.3
1.6-5ubuntu1.2
5.2.2-1.3ubuntu0.1
1
gcr.io/gke-release/gcp-compute-persistent-disk-csi-driver:v0.6.2-gke.0cf3c3af0187e
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
gcr.io/google-containers/echoserver:1.910f4dbc8eeeb
gzip@1.6-4ubuntu1
xz-utils@5.1.1alpha+20120614-2ubuntu2
1.6-4ubuntu1+esm1
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm1
1
gcr.io/google_containers/echoserver:1.10cb5c1bddd1b5
gzip@1.6-4ubuntu1
xz-utils@5.1.1alpha+20120614-2ubuntu2
1.6-4ubuntu1+esm1
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm1
1
gcr.io/google-containers/startup-script:v29d0006c93668
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
1
gcr.io/google-samples/microservices-demo/frontend:v0.2.3ca5c0f0771c8
xz@5.2.5-r0
5.2.5-r1
1
gcr.io/google-samples/microservices-demo/loadgenerator:v0.2.3360130ab5850
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
gcr.io/google-samples/microservices-demo/recommendationservice:v0.2.35f60c4988859
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
gcr.io/istio-release/pilot:release-1.0-latest-daily5ea7b7f3632a
gzip@1.6-4ubuntu1
xz-utils@5.1.1alpha+20120614-2ubuntu2
1.6-4ubuntu1+esm1
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm1
1
gcr.io/istio-release/pilot:1.11.1c552478f8f11
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
1
gcr.io/istio-release/proxyv2:release-1.0-latest-daily8f9ff98fdbef
gzip@1.6-4ubuntu1
xz-utils@5.1.1alpha+20120614-2ubuntu2
1.6-4ubuntu1+esm1
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm1
1
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
1
gcr.io/kubecost1/frontend:prod-1.81.096dfb19838b8
xz@5.2.5-r0
5.2.5-r1
1
gcr.io/kubecost1/frontend:prod-1.82.2ba66607c947c
xz@5.2.5-r0
5.2.5-r1
1
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
gzip@1.6-4ubuntu1
xz-utils@5.1.1alpha+20120614-2ubuntu2
1.6-4ubuntu1+esm1
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm1
1
gcr.io/tfx-oss-public/ml_metadata_store_server:1.5.0db8691752b4c
gzip@1.6-5ubuntu1.1
xz-utils@5.2.2-1.3
1.6-5ubuntu1.2
5.2.2-1.3ubuntu0.1
1
ghcr.io/0xerr0r/blocky:v0.18b15824464acb
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/alexanderbabel/database-s3-backup:1.3.33191b771a6f2
gzip@1.10-r1
xz@5.2.5-r0
1.12-r0
5.2.5-r1
1
ghcr.io/appuio/cloud-portal:v0.2.18c7e08d32d70
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1
1
ghcr.io/aws-exporters/prometheus-ecr-exporter:0.1.442b0c87470d6
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/aws-exporters/prometheus-inspector-exporter:0.0.29c7c11293b3c
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/cfcontainerizationbot/kubecf-kubectl:v1.19.261daa1bba5cb
xz@5.2.3-4.3.1
5.2.3-150000.4.7.1
1
ghcr.io/cloudfoundry-incubator/quarks-job:v1.0.213760eee87f839
xz@5.2.3-4.3.1
5.2.3-150000.4.7.1
1
ghcr.io/cloudfoundry-incubator/quarks-operator:v7.0.1-0.g5396b116a1432b0d503
xz@5.2.3-4.3.1
5.2.3-150000.4.7.1
1
ghcr.io/cloudfoundry-incubator/quarks-secret:v1.0.754f059af4de8ed
xz@5.2.3-4.3.1
5.2.3-150000.4.7.1
1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1304-g4b4f2ac5c7c70b527255
xz@5.2.3-4.3.1
5.2.3-150000.4.7.1
1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1308-g6a8b2220e24a9e0a21b6
xz@5.2.3-4.3.1
5.2.3-150000.4.7.1
1
ghcr.io/conductionnl/adresservice-nginx:latest849af80ab017
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
ghcr.io/conductionnl/adresservice-php:latestc5075f0320cd
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/conductionnl/authorization-component-nginx:latest02d0644aa99b
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
ghcr.io/conductionnl/authorization-component-php:latest94a749392fcf
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/conductionnl/berichtservice-php:latestee6a21e66ff0
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/conductionnl/bisc-frontend:latestd8a0334cddfc
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
ghcr.io/conductionnl/brpservice-nginx:latest4db9b77c4425
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
ghcr.io/conductionnl/brpservice-php:latestc17f1ba17d36
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/conductionnl/contactcatalogus-php:latesteeb625bd660c
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/conductionnl/digispoof-interface-nginx:latest8fa4597217a4
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1
1
ghcr.io/conductionnl/digispoof-interface-php:latest03aba499950f
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/conductionnl/eav-component-php:latest24bbca4a52a8
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/conductionnl/education-component-php:latestda6b05a1a601
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/conductionnl/eherkenning-ui-nginx:latestfcd2100d863f
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
ghcr.io/conductionnl/eherkenning-ui-php:latestdeed102b4255
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/conductionnl/grafregistratiecomponent-nginx:latestd0daf48dec68
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
ghcr.io/conductionnl/grafregistratiecomponent-php:latest35225eaa87ab
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/conductionnl/instemmingservice-nginx:latesteeeb4e9f0485
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
ghcr.io/conductionnl/instemmingservice-php:latest4ffe222b3e3a
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/conductionnl/landelijketabellencatalogus-nginx:lateste7076242888a
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.