StackRadar

CVE-2022-1271

High

Advisory

Published 7 Apr 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.8
base score, highest
EPSS
0.050
92nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,238
of 17,781 indexed, latest versions
Container images
1,167
deployed by those charts
Fix available
6 of 6
affected packages

Red Hat Security Advisory: gzip security update

Carried by container images the latest versions of 1,238 of 17,781 indexed charts deploy, on 1,167 images.

Affected packageAffected versionsFixed inImages
gzipdeb1.6-3ubuntu1, 1.6-4ubuntu1, 1.6-5+b1, 1.6-5ubuntu1+4 more1.6-3ubuntu1+esm1, 1.6-4ubuntu1+esm1, 1.6-5+deb9u1, 1.6-5ubuntu1.2+3 more848
xz-utilsdeb5.1.1alpha+20120614-2ubuntu2, 5.2.2-1.2+b1, 5.2.2-1.3, 5.2.4-1+2 more5.1.1alpha+20120614-2ubuntu2.14.04.1+esm1, 5.1.1alpha+20120614-2ubuntu2.16.04.1+esm1, 5.2.2-1.2+deb9u1, 5.2.2-1.3ubuntu0.1+3 more846
xzapk5.2.5-r05.2.5-r1214
xzrpm5.2.2-1.el7, 5.2.3-4.3.1, 5.2.3-lp151.4.3.1, 5.2.4-3.el8+2 more0:5.2.2-2.el7_9, 0:5.2.4-4.el8_6, 5.2.3-150000.4.7.1, 5.2.6-1.1104
gziprpm1.5-10.el7, 1.9-9.el8, 1.9-10.el8_2, 1.9-12.el8+1 more0:1.5-11.el7_9, 0:1.9-13.el8_558
gzipapk1.10-r0, 1.10-r11.12-r02
OSV records
ALPINE-CVE-2022-1271RHSA-2022:1537RHSA-2022:2191RHSA-2022:4991RHSA-2022:5052UBUNTU-CVE-2022-1271DLA-2976-1DLA-2977-1DSA-5122-1DSA-5123-1openSUSE-SU-2024:12271-1SUSE-SU-2022:1158-1
Also known as
RHSA-2022:1592, RHSA-2022:1665, RHSA-2022:1676, RHSA-2022:4992, RHSA-2022:4993, RHSA-2022:4994, USN-5378-1, USN-5378-2, USN-5378-3, USN-5378-4

Charts affected

1,238 by stars
ChartLatestAffected imagesRadar Score
db-backupballe-petersen0.1.41 of 1See more

db-backup balle-petersen 0.1.4

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
tobiasbp/db-backup:0.0.314bee6e33a26
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

4,814
livekit-serverbeeinventor1.0.01 of 2See more

livekit-server beeinventor 1.0.0

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
gcr.io/google-containers/startup-script:v29d0006c93668
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1

Open the chart page →

2,602
open-elevationbeeinventor0.1.01 of 2See more

open-elevation beeinventor 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
openelevation/open-elevation:latest82fb21612e86
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1

Open the chart page →

13,145
folding-at-homebrannon0.1.11 of 1See more

folding-at-home brannon 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
brannondorsey/fah:7.5.17bd011904534
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

805
brpservicebrpservice1.1.02 of 4See more

brpservice brpservice 1.1.0

2 of the 4 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/brpservice-nginx:latest4db9b77c4425
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
ghcr.io/conductionnl/brpservice-php:latestc17f1ba17d36
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

7,830
geoserver-cloudcamptocamp20.0.56 of 11See more

geoserver-cloud camptocamp2 0.0.5

6 of the 11 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1

Open the chart page →

84,444
geoserverCloudcamptocamp20.0.66 of 11See more

geoserverCloud camptocamp2 0.0.6

6 of the 11 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1

Open the chart page →

84,444
phpldapadmincetic0.1.41 of 1See more

phpldapadmin cetic 0.1.4

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
osixia/phpldapadmin:0.7.11ab629698ae0
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1

Open the chart page →

2,559
passbolt-hachristianhuthVerified publisher6.0.11 of 4See more

passbolt-ha christianhuth 6.0.1

1 of the 4 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
passbolt/passbolt:3.4.0-ce-non-root655547e17263
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1

Open the chart page →

10,817
distributed-jmetercloudnativeapp1.0.11 of 1See more

distributed-jmeter cloudnativeapp 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
pedrocesarti/jmeter-docker:3.314851f144f57
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1

Open the chart page →

4,532
tensorflow-notebookcloudnativeapp0.1.21 of 1See more

tensorflow-notebook cloudnativeapp 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
tensorflow/tensorflow:1.6.0-devel1e3172090703
gzip@1.6-4ubuntu1
xz-utils@5.1.1alpha+20120614-2ubuntu2
1.6-4ubuntu1+esm1
5.1.1alpha+20120614-2ubuntu2.16.04.1+esm1

Open the chart page →

36,094
cnpg-sandboxcloudnative-pgVerified publisher0.6.11 of 6See more

cnpg-sandbox cloudnative-pg 0.6.1

1 of the 6 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.15.1a25886092fa4
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

7,583
clustereye-stackclustereyeVerified publisher0.1.11 of 5See more

clustereye-stack clustereye 0.1.1

1 of the 5 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
johnblack77/clustereye:latest-amd64bb53ceb8442e
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

4,855
contactcataloguscontact-catalogus1.0.01 of 3See more

contactcatalogus contact-catalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/contactcatalogus-php:latesteeb625bd660c
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

7,303
sops-operatorcraftypathVerified publisher0.8.01 of 1See more

sops-operator craftypath 0.8.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
craftypath/sops-operator:v0.8.0402a0024c732
xz@5.2.4-3.el8
0:5.2.4-4.el8_6

Open the chart page →

6,473
duplicaticronce0.1.01 of 1See more

duplicati cronce 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
duplicati/duplicati:2.0.5.111_canary_2020-09-268660f0eda7c9
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1

Open the chart page →

3,026
cryptlex-enterprisecryptlex3.21.251 of 8See more

cryptlex-enterprise cryptlex 3.21.25

1 of the 8 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
library/postgres:12.3-alpine7693f2082c68
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

2,345
cubefscubefs3.2.02 of 10See more

cubefs cubefs 3.2.0

2 of the 10 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
chubaofs/cfs-client:3.2.015ff74209ce7
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1
chubaofs/cfs-server:3.2.0205030e045f2
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1

Open the chart page →

15,891
data-fairdata354-helmVerified publisher1.1.23 of 12See more

data-fair data354-helm 1.1.2

3 of the 12 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
apsl/thumbor:6.7.051e2de5c2c70
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
koumoul/capture:17108d47be3b2
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
ghcr.io/data-fair/elasticsearch:7.17.1aa45adaf59a7
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1

Open the chart page →

38,346
extendeddaemonsetdatadogVerified publisher0.3.31 of 1See more

extendeddaemonset datadog 0.3.3

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
datadog/extendeddaemonset:v0.8.0513a4377aed5
xz@5.2.4-3.el8
0:5.2.4-4.el8_6

Open the chart page →

4,759
prometheus-sentry-exporterdeliveryheroVerified publisher0.1.51 of 1See more

prometheus-sentry-exporter deliveryhero 0.1.5

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ujamii/prometheus-sentry-exporter:0.5.06243197349e1
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

2,474
weblatedeliveryheroVerified publisher0.3.21 of 3See more

weblate deliveryhero 0.3.2

1 of the 3 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
weblate/weblate:4.2.2-169c160d37a3c
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

7,984
wiremockdeliveryheroVerified publisher1.4.61 of 2See more

wiremock deliveryhero 1.4.6

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
rodolpheche/wiremock:2.26.03be08a386092
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1

Open the chart page →

2,140
frontenddemo-application0.1.01 of 1See more

frontend demo-application 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
azhar008/flaskapplication:latesta1e827b0adea
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1

Open the chart page →

3,558
mailtrapdev-goodies0.1.01 of 1See more

mailtrap dev-goodies 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
eaudeweb/mailtrap:2.3b8ad9b7e19bb
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

2,508
dnsmasqdevplayer0Verified publisher0.1.51 of 2See more

dnsmasq devplayer0 0.1.5

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/devplayer0/kubelan:0.2.3b776dae45d08
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

3,392
zammaddevplayer0Verified publisher4.0.51 of 4See more

zammad devplayer0 4.0.5

1 of the 4 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
zammad/zammad-docker-compose:zammad-4.1.0-312808e2dfa810
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

6,110
calicodevtron0.1.11 of 4See more

calico devtron 0.1.1

1 of the 4 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
gzip@1.9-9.el8
xz@5.2.4-3.el8
0:1.9-13.el8_5
0:5.2.4-4.el8_6

Open the chart page →

10,071
clairdevtron0.1.142 of 2See more

clair devtron 0.1.14

2 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
xz@5.2.4-3.el8
0:5.2.4-4.el8_6
quay.io/devtron/postgres:11.3ef035ac10498
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1

Open the chart page →

6,237
digispoof-interfacedigispoof-interface1.0.02 of 3See more

digispoof-interface digispoof-interface 1.0.0

2 of the 3 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/digispoof-interface-nginx:latest8fa4597217a4
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1
ghcr.io/conductionnl/digispoof-interface-php:latest03aba499950f
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

7,779
matomodigitalist-open-cloud-matomo12.0.201 of 3See more

matomo digitalist-open-cloud-matomo 12.0.20

1 of the 3 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
digitalist/nginx:1.21.6eec27ad73eaa
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

3,539
hbasedmwm-bigdataVerified publisher0.1.61 of 5See more

hbase dmwm-bigdata 0.1.6

1 of the 5 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
gradiant/hdfs:2.7.73b28784ba41f
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

13,392
opentsdbdmwm-bigdataVerified publisher0.1.71 of 6See more

opentsdb dmwm-bigdata 0.1.7

1 of the 6 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
gradiant/hdfs:2.7.73b28784ba41f
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

17,511
spa-demodniel0.7.31 of 1See more

spa-demo dniel 0.7.3

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
dniel/forwardauth-spademo:masterd3e38df449a2
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

1,322
dominodominoVerified publisher0.1.111 of 3See more

domino domino 0.1.11

1 of the 3 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/tauffer-consulting/domino-frontend:latesta923b86a0903
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

8,823
nifi-registrydysnixVerified publisher1.1.51 of 2See more

nifi-registry dysnix 1.1.5

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
apache/nifi-registry:0.8.0974efa2f21da
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

6,531
jenkinsedu2.7.11 of 2See more

jenkins edu 2.7.1

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
kiwigrid/k8s-sidecar:0.1.193170069ff0976
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

4,423
enbuildenbuildVerified publisher0.0.501 of 6See more

enbuild enbuild 0.0.50

1 of the 6 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
gzip@1.9-12.el8
xz@5.2.4-3.el8
0:1.9-13.el8_5
0:5.2.4-4.el8_6

Open the chart page →

31,510
pitchforkexpediagroup0.1.41 of 1See more

pitchfork expediagroup 0.1.4

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
expediagroup/pitchfork:1.314f2cf61e7de9
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1

Open the chart page →

3,309
vidcheckfactlyVerified publisher0.5.21 of 2See more

vidcheck factly 0.5.2

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
factly/vidcheck-studio:0.12.024be158ec7d3
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

3,617
taigafermosit0.0.111 of 7See more

taiga fermosit 0.0.11

1 of the 7 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
library/nginx:1.19-alpine07ab71a2c8e4
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

8,496
flink-operatorflink-operator0.1.11 of 2See more

flink-operator flink-operator 0.1.1

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
gzip@1.6-5ubuntu1
xz-utils@5.2.2-1.3
1.6-5ubuntu1.2
5.2.2-1.3ubuntu0.1

Open the chart page →

12,908
openldapfluktuid0.1.11 of 2See more

openldap fluktuid 0.1.1

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

3,313
appdaemongeek-cookbookVerified publisher8.4.21 of 1See more

appdaemon geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
acockburn/appdaemon:4.0.83a93281d7e94
xz@5.2.5-r0
5.2.5-r1

Open the chart page →

3,461
baikalgeek-cookbookVerified publisher5.2.01 of 1See more

baikal geek-cookbook 5.2.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ckulka/baikal:0.8.0aedb1f4f3fa0
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

1,683
bazarrgeek-cookbookVerified publisher10.6.21 of 1See more

bazarr geek-cookbook 10.6.2

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1

Open the chart page →

17,377
deepstackgeek-cookbookVerified publisher1.5.21 of 2See more

deepstack geek-cookbook 1.5.2

1 of the 2 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
robmarkcole/deepstack-ui:latest410275726459
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1

Open the chart page →

5,305
firefly-iiigeek-cookbookVerified publisher0.3.01 of 1See more

firefly-iii geek-cookbook 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
fireflyiii/core:version-5.6.142f4283bd0cf7
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1

Open the chart page →

2,076
games-on-whalesgeek-cookbookVerified publisher1.8.23 of 7See more

games-on-whales geek-cookbook 1.8.2

3 of the 7 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1

Open the chart page →

35,305
ghostgeek-cookbookVerified publisher2.2.01 of 1See more

ghost geek-cookbook 2.2.0

1 of the 1 container images this version deploys carry CVE-2022-1271.

Container imageDigestPackageFixed in
library/ghost:4.37.0767230c0f263
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1

Open the chart page →

4,260

Container images carrying it

1,167 by charts deploying them

A fixed version is listed for 6 of the 6 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
2
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
gzip@1.6-5ubuntu1
xz-utils@5.2.2-1.3
1.6-5ubuntu1.2
5.2.2-1.3ubuntu0.1
2
quay.io/coreos/etcd:v3.5.628cb0630cb85
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1
2
quay.io/keycloak/keycloak:17.0.1-legacy68f9f38c8f30
gzip@1.9-12.el8
xz@5.2.4-3.el8
0:1.9-13.el8_5
0:5.2.4-4.el8_6
2
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
xz@5.2.4-3.el8
0:5.2.4-4.el8_6
2
quay.io/openshift/origin-cli:4.7464a3af4dfe0
gzip@1.9-13.el8_4
xz@5.2.4-4.el8_4
0:1.9-13.el8_5
0:5.2.4-4.el8_6
2
quay.io/openshift/origin-cli:4.8bb5e052770e5
gzip@1.9-13.el8_4
xz@5.2.4-4.el8_4
0:1.9-13.el8_5
0:5.2.4-4.el8_6
2
a10networks/acos-prometheus-exporter:latest8dc58d434d71
gzip@1.6-5ubuntu1
xz-utils@5.2.2-1.3
1.6-5ubuntu1.2
5.2.2-1.3ubuntu0.1
1
aaionap/haproxy:1.4.089c1078a1b23
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
1
acockburn/appdaemon:4.0.83a93281d7e94
xz@5.2.5-r0
5.2.5-r1
1
adagber/planner:v1.0e5c1ed097752
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1
1
adferrand/backuppc:4.4.06fea97b02758
gzip@1.10-r0
xz@5.2.5-r0
1.12-r0
5.2.5-r1
1
adityaprasadpathak/myapp:3.07e3b9777362c
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1
1
adolfintel/speedtest:latest1f828fe83374
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1
1
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
1
aerospike/aerospike-server:4.5.0.55bec98d46c8a
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
1
afrank/mozalert-controller:latestd463c37b08d7
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
1
ajanvier/polr:2.3.091ac61b88c85
xz@5.2.5-r0
5.2.5-r1
1
alerta/alerta-web:8.5.04786b9eaa606
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
alphayax/phpmemcachedadmin:latestc284977f027a
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
1
alpine/k8s:1.22.600ac10bcb759
xz@5.2.5-r0
5.2.5-r1
1
alpine/k8s:1.18.16a41efe02a041
xz@5.2.5-r0
5.2.5-r1
1
altinity/clickhouse-operator:0.16.1db7dde971407
xz@5.2.2-1.el7
0:5.2.2-2.el7_9
1
altinity/metrics-exporter:0.16.185b4fdbae053
xz@5.2.2-1.el7
0:5.2.2-2.el7_9
1
amancevice/superset:0.28.1c8c04bfe3d66
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
1
amartinm82/planner:v2.01184353ff57b
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
amundsendev/amundsen-frontend:2.1.169e7915e61c1
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
amundsendev/amundsen-metadata:2.5.44d98eb21f5f9
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
amundsendev/amundsen-search:2.4.099dda9502c3e
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
anchore/anchore-engine:v0.10.0bde9eedf639d
gzip@1.9-12.el8
xz@5.2.4-3.el8
0:1.9-13.el8_5
0:5.2.4-4.el8_6
1
anchore/anchore-engine:v0.7.1ed9b3badd17c
gzip@1.9-9.el8
xz@5.2.4-3.el8
0:1.9-13.el8_5
0:5.2.4-4.el8_6
1
ansiblesemaphore/semaphore:v2.8.5303d1f8684027
xz@5.2.5-r0
5.2.5-r1
1
aolde/bredbandskollen-prometheus-exporter:1.0.2dc61ee713720
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
apache/couchdb:2.39f895c8ae371
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
1
apache/iotdb:0.11.28647309f95d1
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
apache/nifi-registry:1.14.0090b7f87ec7f
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
apache/nifi-registry:0.8.0974efa2f21da
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
apachepinot/pinot:latest-jdk110018bb04ced7
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
1
apachepulsar/pulsar:2.6.14db6ff0b4045
gzip@1.9-3
xz-utils@5.2.4-1
1.9-3+deb10u1
5.2.4-1+deb10u1
1
apachepulsar/pulsar:2.9.0d056c89b7131
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
1
apachepulsar/pulsar:2.8.2d538416d5afe
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
1
apache/skywalking-oap-server:8.9.1b4ec8c18d079
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
1
apache/skywalking-ui:8.9.180530f0308a5
gzip@1.10-0ubuntu4
xz-utils@5.2.4-1ubuntu1
1.10-0ubuntu4.1
5.2.4-1ubuntu1.1
1
apache/superset:9cdaa280429ec297db16d56c94fd77b5d2aff107975ab033580d
gzip@1.10-4
xz-utils@5.2.5-2
1.10-4+deb11u1
5.2.5-2.1~deb11u1
1
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
xz@5.2.4-3.el8
0:5.2.4-4.el8_6
1
apsl/thumbor:6.7.051e2de5c2c70
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
1
aquasec/kube-hunter:1950bf607ce9308
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
1
argoproj/argocd:v1.2.1b0230853357d
gzip@1.6-5+b1
xz-utils@5.2.2-1.2+b1
1.6-5+deb9u1
5.2.2-1.2+deb9u1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.