StackRadar

CVE-2022-1271

High

Advisory

Published 7 Apr 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.8
base score, highest
EPSS
0.050
92nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,242
of 17,787 indexed, latest versions
Container images
1,171
deployed by those charts
Fix available
6 of 6
affected packages

Red Hat Security Advisory: gzip security update

Carried by container images the latest versions of 1,242 of 17,787 indexed charts deploy, on 1,171 images.

Affected packageAffected versionsFixed inImages
gzipdeb1.6-3ubuntu1, 1.6-4ubuntu1, 1.6-5+b1, 1.6-5ubuntu1+4 more1.6-3ubuntu1+esm1, 1.6-4ubuntu1+esm1, 1.6-5+deb9u1, 1.6-5ubuntu1.2+3 more851
xz-utilsdeb5.1.1alpha+20120614-2ubuntu2, 5.2.2-1.2+b1, 5.2.2-1.3, 5.2.4-1+2 more5.1.1alpha+20120614-2ubuntu2.14.04.1+esm1, 5.1.1alpha+20120614-2ubuntu2.16.04.1+esm1, 5.2.2-1.2+deb9u1, 5.2.2-1.3ubuntu0.1+3 more849
xzapk5.2.5-r05.2.5-r1215
xzrpm5.2.2-1.el7, 5.2.3-4.3.1, 5.2.3-lp151.4.3.1, 5.2.4-3.el8+2 more0:5.2.2-2.el7_9, 0:5.2.4-4.el8_6, 5.2.3-150000.4.7.1, 5.2.6-1.1104
gziprpm1.5-10.el7, 1.9-9.el8, 1.9-10.el8_2, 1.9-12.el8+1 more0:1.5-11.el7_9, 0:1.9-13.el8_558
gzipapk1.10-r0, 1.10-r11.12-r02
OSV records
ALPINE-CVE-2022-1271RHSA-2022:1537RHSA-2022:2191RHSA-2022:4991RHSA-2022:5052UBUNTU-CVE-2022-1271DLA-2976-1DLA-2977-1DSA-5122-1DSA-5123-1openSUSE-SU-2024:12271-1SUSE-SU-2022:1158-1
Also known as
RHSA-2022:1592, RHSA-2022:1665, RHSA-2022:1676, RHSA-2022:4992, RHSA-2022:4993, RHSA-2022:4994, USN-5378-1, USN-5378-2, USN-5378-3, USN-5378-4

Charts affected

1,242 by stars
ChartLatestAffected imagesRadar Score
db-backupballe-petersen0.1.41 of 1See more

db-backup balle-petersen 0.1.4

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
tobiasbp/db-backup:0.0.314bee6e33a26
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

4,814
livekit-serverbeeinventor1.0.01 of 2See more

livekit-server beeinventor 1.0.0

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
gcr.io/google-containers/startup-script:v29d0006c93668
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1

Open the chart page →

2,602
open-elevationbeeinventor0.1.01 of 2See more

open-elevation beeinventor 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
openelevation/open-elevation:latest82fb21612e86
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1

Open the chart page →

13,199
folding-at-homebrannon0.1.11 of 1See more

folding-at-home brannon 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
brannondorsey/fah:7.5.17bd011904534
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

805
brpservicebrpservice1.1.02 of 4See more

brpservice brpservice 1.1.0

2 of the 4 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/brpservice-nginx:latest4db9b77c4425
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
ghcr.io/conductionnl/brpservice-php:latestc17f1ba17d36
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

7,830
geoserver-cloudcamptocamp20.0.56 of 11See more

geoserver-cloud camptocamp2 0.0.5

6 of the 11 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1

Open the chart page →

84,678
geoserverCloudcamptocamp20.0.66 of 11See more

geoserverCloud camptocamp2 0.0.6

6 of the 11 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1

Open the chart page →

84,678
phpldapadmincetic0.1.41 of 1See more

phpldapadmin cetic 0.1.4

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
osixia/phpldapadmin:0.7.11ab629698ae0
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1

Open the chart page →

2,559
passbolt-hachristianhuthVerified publisher6.0.11 of 4See more

passbolt-ha christianhuth 6.0.1

1 of the 4 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
passbolt/passbolt:3.4.0-ce-non-root655547e17263
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1

Open the chart page →

10,873
distributed-jmetercloudnativeapp1.0.11 of 1See more

distributed-jmeter cloudnativeapp 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
pedrocesarti/jmeter-docker:3.314851f144f57
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1

Open the chart page →

4,532
tensorflow-notebookcloudnativeapp0.1.21 of 1See more

tensorflow-notebook cloudnativeapp 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
tensorflow/tensorflow:1.6.0-devel1e3172090703
gzip@1.6-4ubuntu1
xz-utils@5.1.1alpha+20120614-2ubuntu2
1.6-4ubuntu1+esm1
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm1

Open the chart page →

36,132
cnpg-sandboxcloudnative-pgVerified publisher0.6.11 of 6See more

cnpg-sandbox cloudnative-pg 0.6.1

1 of the 6 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.15.1a25886092fa4
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

7,583
clustereye-stackclustereyeVerified publisher0.1.11 of 5See more

clustereye-stack clustereye 0.1.1

1 of the 5 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
johnblack77/clustereye:latest-amd64bb53ceb8442e
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

4,896
contactcataloguscontact-catalogus1.0.01 of 3See more

contactcatalogus contact-catalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/contactcatalogus-php:latesteeb625bd660c
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

7,303
sops-operatorcraftypathVerified publisher0.8.01 of 1See more

sops-operator craftypath 0.8.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
craftypath/sops-operator:v0.8.0402a0024c732
xz@5.2.4-3.el8
0:5.2.4-4.el8_6

Open the chart page →

6,473
duplicaticronce0.1.01 of 1See more

duplicati cronce 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
duplicati/duplicati:2.0.5.111_canary_2020-09-268660f0eda7c9
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1

Open the chart page →

3,026
cryptlex-enterprisecryptlex3.21.251 of 8See more

cryptlex-enterprise cryptlex 3.21.25

1 of the 8 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
library/postgres:12.3-alpine7693f2082c68
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

2,345
cubefscubefs3.2.02 of 10See more

cubefs cubefs 3.2.0

2 of the 10 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
chubaofs/cfs-client:3.2.015ff74209ce7
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1
chubaofs/cfs-server:3.2.0205030e045f2
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1

Open the chart page →

15,891
data-fairdata354-helmVerified publisher1.1.23 of 12See more

data-fair data354-helm 1.1.2

3 of the 12 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
apsl/thumbor:6.7.051e2de5c2c70
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
koumoul/capture:17108d47be3b2
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
ghcr.io/data-fair/elasticsearch:7.17.1aa45adaf59a7
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1

Open the chart page →

38,424
extendeddaemonsetdatadogVerified publisher0.3.31 of 1See more

extendeddaemonset datadog 0.3.3

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
datadog/extendeddaemonset:v0.8.0513a4377aed5
xz@5.2.4-3.el8
0:5.2.4-4.el8_6

Open the chart page →

4,759
prometheus-sentry-exporterdeliveryheroVerified publisher0.1.51 of 1See more

prometheus-sentry-exporter deliveryhero 0.1.5

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ujamii/prometheus-sentry-exporter:0.5.06243197349e1
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

2,473
weblatedeliveryheroVerified publisher0.3.21 of 3See more

weblate deliveryhero 0.3.2

1 of the 3 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
weblate/weblate:4.2.2-169c160d37a3c
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

7,987
wiremockdeliveryheroVerified publisher1.4.61 of 2See more

wiremock deliveryhero 1.4.6

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
rodolpheche/wiremock:2.26.03be08a386092
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1

Open the chart page →

2,140
frontenddemo-application0.1.01 of 1See more

frontend demo-application 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
azhar008/flaskapplication:latesta1e827b0adea
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1

Open the chart page →

3,558
mailtrapdev-goodies0.1.01 of 1See more

mailtrap dev-goodies 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
eaudeweb/mailtrap:2.3b8ad9b7e19bb
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

2,508
dnsmasqdevplayer0Verified publisher0.1.51 of 2See more

dnsmasq devplayer0 0.1.5

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/devplayer0/kubelan:0.2.3b776dae45d08
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

3,392
zammaddevplayer0Verified publisher4.0.51 of 4See more

zammad devplayer0 4.0.5

1 of the 4 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
zammad/zammad-docker-compose:zammad-4.1.0-312808e2dfa810
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

6,113
calicodevtron0.1.11 of 4See more

calico devtron 0.1.1

1 of the 4 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
gzip@1.9-9.el8
xz@5.2.4-3.el8
0:1.9-13.el8_5
0:5.2.4-4.el8_6

Open the chart page →

10,073
clairdevtron0.1.142 of 2See more

clair devtron 0.1.14

2 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
xz@5.2.4-3.el8
0:5.2.4-4.el8_6
quay.io/devtron/postgres:11.3ef035ac10498
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1

Open the chart page →

6,237
digispoof-interfacedigispoof-interface1.0.02 of 3See more

digispoof-interface digispoof-interface 1.0.0

2 of the 3 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/digispoof-interface-nginx:latest8fa4597217a4
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1
ghcr.io/conductionnl/digispoof-interface-php:latest03aba499950f
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

7,779
matomodigitalist-open-cloud-matomo12.0.201 of 3See more

matomo digitalist-open-cloud-matomo 12.0.20

1 of the 3 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
digitalist/nginx:1.21.6eec27ad73eaa
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

3,539
hbasedmwm-bigdataVerified publisher0.1.61 of 5See more

hbase dmwm-bigdata 0.1.6

1 of the 5 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
gradiant/hdfs:2.7.73b28784ba41f
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

13,390
opentsdbdmwm-bigdataVerified publisher0.1.71 of 6See more

opentsdb dmwm-bigdata 0.1.7

1 of the 6 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
gradiant/hdfs:2.7.73b28784ba41f
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

17,509
spa-demodniel0.7.31 of 1See more

spa-demo dniel 0.7.3

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
dniel/forwardauth-spademo:masterd3e38df449a2
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

1,322
dominodominoVerified publisher0.1.111 of 3See more

domino domino 0.1.11

1 of the 3 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/tauffer-consulting/domino-frontend:latesta923b86a0903
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

8,842
nifi-registrydysnixVerified publisher1.1.51 of 2See more

nifi-registry dysnix 1.1.5

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
apache/nifi-registry:0.8.0974efa2f21da
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

6,531
jenkinsedu2.7.11 of 2See more

jenkins edu 2.7.1

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:0.1.193170069ff0976
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

4,434
enbuildenbuildVerified publisher0.0.501 of 6See more

enbuild enbuild 0.0.50

1 of the 6 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
gzip@1.9-12.el8
xz@5.2.4-3.el8
0:1.9-13.el8_5
0:5.2.4-4.el8_6

Open the chart page →

31,572
pitchforkexpediagroup0.1.41 of 1See more

pitchfork expediagroup 0.1.4

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
expediagroup/pitchfork:1.314f2cf61e7de9
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1

Open the chart page →

3,309
vidcheckfactlyVerified publisher0.5.21 of 2See more

vidcheck factly 0.5.2

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
factly/vidcheck-studio:0.12.024be158ec7d3
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

3,617
taigafermosit0.0.111 of 7See more

taiga fermosit 0.0.11

1 of the 7 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
library/nginx:1.19-alpine07ab71a2c8e4
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

8,520
flink-operatorflink-operator0.1.11 of 2See more

flink-operator flink-operator 0.1.1

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
gzip@1.6-5ubuntu1
xz-utils@5.2.2-1.3
1.6-5ubuntu1.2
5.2.2-1.3ubuntu0.1

Open the chart page →

12,914
openldapfluktuid0.1.11 of 2See more

openldap fluktuid 0.1.1

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

3,313
appdaemongeek-cookbookVerified publisher8.4.21 of 1See more

appdaemon geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
acockburn/appdaemon:4.0.83a93281d7e94
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

3,461
baikalgeek-cookbookVerified publisher5.2.01 of 1See more

baikal geek-cookbook 5.2.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ckulka/baikal:0.8.0aedb1f4f3fa0
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

1,683
bazarrgeek-cookbookVerified publisher10.6.21 of 1See more

bazarr geek-cookbook 10.6.2

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1

Open the chart page →

17,438
deepstackgeek-cookbookVerified publisher1.5.21 of 2See more

deepstack geek-cookbook 1.5.2

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
robmarkcole/deepstack-ui:latest410275726459
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1

Open the chart page →

5,305
firefly-iiigeek-cookbookVerified publisher0.3.01 of 1See more

firefly-iii geek-cookbook 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
fireflyiii/core:version-5.6.142f4283bd0cf7
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

2,076
games-on-whalesgeek-cookbookVerified publisher1.8.23 of 7See more

games-on-whales geek-cookbook 1.8.2

3 of the 7 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1

Open the chart page →

35,464
ghostgeek-cookbookVerified publisher2.2.01 of 1See more

ghost geek-cookbook 2.2.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
library/ghost:4.37.0767230c0f263
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1

Open the chart page →

4,260

Container images carrying it

1,171 by charts deploying them

A fixed version is listed for 6 of the 6 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/miguelndecarvalho/speedtest-exporter:v3.2.29e36964bce26
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/mmontes11/github-explorer:v0.7.0bf2234545584
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/mmontes11/iot-front:v3.11.0eb942172cda9
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/mmontes11/iot-nginx:v3.11.0dc8c7bb6605e
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/nathanvaughn/webtrees:2.0.1969423a100fab
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1
1
ghcr.io/netsoc/docs:latest48890a52b327
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/netsoc/shhd:0.1.60bb44992b62c
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/netsoc/website:latesta9618107fa50
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/reitermarkus/strongswan:v1.0.0e7a8afe6e6eb
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/saiakhil46/burger-app:latest68b76520c0a9
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/savonet/liquidsoap:v2.0.19e08148e1055
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1
1
ghcr.io/skyoo2003/digdag:0.0.1821fd6a6f2cd
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/tauffer-consulting/domino-frontend:latesta923b86a0903
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/wbstack/cradle:2.0.11c7a78c54f77
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
ghcr.io/wbstack/queryservice-gateway:2.2ab8e2f583e56
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
1
ghcr.io/wbstack/queryservice-ui:1.4bc79fbb50230
xz@5.2.5-r0
5.2.5-r1
1
ghcr.io/wbstack/quickstatements:1.3.588423e422ea8
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
ghcr.io/wbstack/widar:1.31702fc9df79f
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
ghcr.io/wyrihaximusnet/default-backend:randomb24e63efd841
xz@5.2.5-r0
5.2.5-r1
1
mcr.microsoft.com/k8s/csi/azuredisk-csi:v1.1.1ec1803037ed9
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
mcr.microsoft.com/oss/bitnami/redis:6.0.8.9e1e9cf5297a6
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
public.ecr.aws/jtekt-corporation/ecr-pullsecret-renewer:latest442cc3b32935
xz@5.2.5-r0
5.2.5-r1
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
1
quay.io/backube/scribe:0.2.0cdefc81c6b2e
gzip@1.9-12.el8
xz@5.2.4-3.el8
0:1.9-13.el8_5
0:5.2.4-4.el8_6
1
quay.io/coreos/etcd:v3.4.17c2126f99e5c9
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
1
quay.io/coreos/etcd:v3.4.16ea7bb56278ab
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
1
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
gzip@1.9-12.el8
xz@5.2.4-3.el8
0:1.9-13.el8_5
0:5.2.4-4.el8_6
1
quay.io/eclipse/che-devfile-registry:nightly5d25d47d6e17
xz@5.2.5-r0
5.2.5-r1
1
quay.io/eclipse/che-plugin-registry:nightlya88add0f8c93
xz@5.2.5-r0
5.2.5-r1
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
gzip@1.9-12.el8
xz@5.2.4-3.el8
0:1.9-13.el8_5
0:5.2.4-4.el8_6
1
quay.io/evl.ms/argocd-exporter:0.0.136ea8f34aa6b
xz@5.2.5-r0
5.2.5-r1
1
quay.io/fairwinds/yelb-appserver:v0.6.0fae21f06131f
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
quay.io/fairwinds/yelb-ui:v0.1.05ac114e567ed
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
xz@5.2.4-3.el8
0:5.2.4-4.el8_6
1
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
xz@5.2.4-3.el8
0:5.2.4-4.el8_6
1
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
gzip@1.9-12.el8
xz@5.2.4-3.el8
0:1.9-13.el8_5
0:5.2.4-4.el8_6
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
gzip@1.9-9.el8
xz@5.2.4-3.el8
0:1.9-13.el8_5
0:5.2.4-4.el8_6
1
quay.io/ibmgaragecloud/nodejs:latest01c3b7acb301
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
1
quay.io/ibmgaragecloud/slack-notifications:latest041df93e2bac
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
1
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
gzip@1.9-12.el8
xz@5.2.4-3.el8
0:1.9-13.el8_5
0:5.2.4-4.el8_6
1
quay.io/keycloak/keycloak-operator:18.0.0-legacy36ce77526145
xz@5.2.4-3.el8
0:5.2.4-4.el8_6
1
quay.io/kiwigrid/k8s-sidecar:1.10.718feb3906286
xz@5.2.5-r0
5.2.5-r1
1
quay.io/kiwigrid/k8s-sidecar:1.15.61f025ae37b7b
xz@5.2.5-r0
5.2.5-r1
1
quay.io/kiwigrid/k8s-sidecar:1.15.1a25886092fa4
xz@5.2.5-r0
5.2.5-r1
1
quay.io/kube-ops/promtail:2.2.134de6387233b
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
xz@5.2.4-3.el8
0:5.2.4-4.el8_6
1
quay.io/mcouliba/quarkus-serverless:1.0c2851757eca4
xz@5.2.4-3.el8
0:5.2.4-4.el8_6
1
quay.io/mongodb/farm-intro-backend:0.11a9ce0b8fbd4
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1
1
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
gzip@1.6-4ubuntu1
xz-utils@5.1.1alpha+20120614-2ubuntu2
1.6-4ubuntu1+esm1
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm1
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.