StackRadar

CVE-2022-2097

Medium

Advisory

Published 5 Jul 2022In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.047
91st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
862
of 17,787 indexed, latest versions
Container images
849
deployed by those charts
Fix available
3 of 3
affected packages

libopenssl-1_1-devel-1.1.1q-1.1 on GA media

Carried by container images the latest versions of 862 of 17,787 indexed charts deploy, on 849 images.

Affected packageAffected versionsFixed inImages
opensslapk1.1.1i-r0, 1.1.1j-r0, 1.1.1k-r0, 1.1.1l-r0+6 more1.1.1q-r0457
openssldeb1.1.0g-2ubuntu4.1, 1.1.0g-2ubuntu4.3, 1.1.1-1ubuntu2.1~18.04.4, 1.1.1-1ubuntu2.1~18.04.5+36 more1.1.1-1ubuntu2.1~18.04.20, 1.1.1-1ubuntu2.fips.2.1~18.04.20, 1.1.1f-1ubuntu2.16, 1.1.1f-1ubuntu2.fips.16+1 more382
openssl-1_1rpm1.1.0i-14.6.1, 1.1.0i-lp151.8.3.1, 1.1.1d-11.6.11.1.0i-150100.14.36.1, 1.1.1d-150200.11.51.1, 1.1.1q-1.110
OSV records
ALPINE-CVE-2022-2097UBUNTU-CVE-2022-2097openSUSE-SU-2024:12179-1SUSE-SU-2022:2311-1SUSE-SU-2022:2328-1
Also known as
USN-5502-1

Charts affected

862 by stars
ChartLatestAffected imagesRadar Score
kibanawiremindVerified publisher8.5.231 of 2See more

kibana wiremind 8.5.23

1 of the 2 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
library/kibana:8.18.004c0fc150f3a
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.fips.16

Open the chart page →

6,323
kafka-connect-uiwitcom-gmbh0.5.01 of 2See more

kafka-connect-ui witcom-gmbh 0.5.0

1 of the 2 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.3.08c21390be87d
openssl@1.1.1n-r0
1.1.1q-r0

Open the chart page →

2,506
mrtg-backendwitcom-gmbh0.7.01 of 2See more

mrtg-backend witcom-gmbh 0.7.0

1 of the 2 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.2.1febeebebe762
openssl@1.1.1l-r7
1.1.1q-r0

Open the chart page →

2,616
powerdnsadminwitcom-gmbh0.3.41 of 1See more

powerdnsadmin witcom-gmbh 0.3.4

1 of the 1 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
openssl@1.1.1l-r0
1.1.1q-r0

Open the chart page →

2,643
workadventureworkadventure1.1.02 of 9See more

workadventure workadventure 1.1.0

2 of the 9 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
thecodingmachine/workadventure-chat:v1.17.7da12f37e6795
openssl@1.1.1n-r0
1.1.1q-r0
thecodingmachine/workadventure-ejabberd:v1.17.701df99622ad3
openssl@1.1.1n-r0
1.1.1q-r0

Open the chart page →

16,083
default-backendwyrihaximusnetVerified publisher1.1.01 of 1See more

default-backend wyrihaximusnet 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
ghcr.io/wyrihaximusnet/default-backend:randomb24e63efd841
openssl@1.1.1l-r0
1.1.1q-r0

Open the chart page →

2,535
skoonerxdVerified publisher1.1.01 of 1See more

skooner xd 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
ymuski/skooner:latest67819ca511b5
openssl@1.1.1n-r0
1.1.1q-r0

Open the chart page →

1,752
rawfile-csiymatrixVerified publisher0.2.11 of 4See more

rawfile-csi ymatrix 0.2.1

1 of the 4 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
matrixdb/rawfile-csi:v0.2.195b2e38e913d
openssl@1.1.1n-r0
1.1.1q-r0

Open the chart page →

7,972
zahori-schedulerzahoriVerified publisher1.0.11 of 1See more

zahori-scheduler zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
zahoriaut/zahori-scheduler:1.0.047d0979b1184
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.fips.2.1~18.04.20

Open the chart page →

2,464
posthogzeet0.23.21 of 9See more

posthog zeet 0.23.2

1 of the 9 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
edoburu/pgbouncer:1.12.0abc0a4123a81
openssl@1.1.1l-r0
1.1.1q-r0

Open the chart page →

3,697
alertmanager-matrix-forwarderzloi-space1.0.11 of 2See more

alertmanager-matrix-forwarder zloi-space 1.0.1

1 of the 2 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
zl0i/alertmanager-matrix-forwarder:v1.0.0e94047931739
openssl@1.1.1l-r7
1.1.1q-r0

Open the chart page →

3,118
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
openssl@1.1.1-1ubuntu2.1~18.04.14
1.1.1-1ubuntu2.1~18.04.20
yandex/clickhouse-server:21.3.204eccfffb01d7
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.16

Open the chart page →

9,250

Container images carrying it

849 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.fips.16
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.fips.16
1
ghcr.io/spidernet-io/spiderpool/spiderpool-agent:v1.2.08bb9411e47e0
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.fips.16
1
ghcr.io/spidernet-io/spiderpool/spiderpool-controller:v1.2.042304e3ed36e
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.fips.16
1
ghcr.io/star-whale/server:0.6.158368359c8dd0
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.fips.16
1
ghcr.io/stefanprodan/podinfo:6.1.3f25ebb9c6788
openssl@1.1.1n-r0
1.1.1q-r0
1
ghcr.io/streamingfast/substreams-sink-kv:v2.3.026953ec68d5d
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.fips.16
1
ghcr.io/streamingfast/substreams-sink-noop:v1.4.0d7c43c3135c6
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.fips.16
1
ghcr.io/tauffer-consulting/domino-frontend:latesta923b86a0903
openssl@1.1.1k-r0
1.1.1q-r0
1
ghcr.io/wbstack/queryservice-ui:1.4bc79fbb50230
openssl@1.1.1l-r7
1.1.1q-r0
1
ghcr.io/wbstack/ui:3.94b01f67faadf1
openssl@1.1.1n-r0
1.1.1q-r0
1
ghcr.io/wmde/wbaas-backup:v0.1.78e6a9516eac0
openssl@1.1.1-1ubuntu2.1~18.04.17
1.1.1-1ubuntu2.1~18.04.20
1
ghcr.io/wyrihaximusnet/default-backend:randomb24e63efd841
openssl@1.1.1l-r0
1.1.1q-r0
1
mcr.microsoft.com/azure-application-gateway/kubernetes-ingress:1.6.0bccaa701e2df
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.fips.16
1
mcr.microsoft.com/mssql/server:2017-latest13221ac5f673
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.fips.2.1~18.04.20
1
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.16
1
mcr.microsoft.com/mssql/server:2017-latestfbf79e0fea59
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.fips.2.1~18.04.20
1
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
openssl@1.1.1-1ubuntu2.1~18.04.20
1.1.1-1ubuntu2.fips.2.1~18.04.20
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
openssl@1.1.1f-1ubuntu2.3
1.1.1f-1ubuntu2.16
1
quay.io/chriscowley/openldap_exporter:v2.1.16c308e9732e1
openssl@1.1.1i-r0
1.1.1q-r0
1
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
openssl@1.1.1o-r0
1.1.1q-r0
1
quay.io/cortexproject/cortex:v1.9.05d1c2cf4c538
openssl@1.1.1k-r0
1.1.1q-r0
1
quay.io/eclipse/che-plugin-registry:nightlya88add0f8c93
openssl@1.1.1k-r0
1.1.1q-r0
1
quay.io/evl.ms/argocd-exporter:0.0.136ea8f34aa6b
openssl@1.1.1l-r0
1.1.1q-r0
1
quay.io/evl.ms/pgbouncer:1.16.1b550ae5c7179
openssl@1.1.1l-r0
1.1.1q-r0
1
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
openssl@1.1.1-1ubuntu2.1~18.04.20
1.1.1-1ubuntu2.fips.2.1~18.04.20
1
quay.io/giantswarm/helloworld:0.2.07a07ee730305
openssl@1.1.1k-r0
1.1.1q-r0
1
quay.io/ibmgaragecloud/cli-tools:v0.159663f06adcb1
openssl@1.1.1n-r0
1.1.1q-r0
1
quay.io/kiwigrid/k8s-sidecar:1.10.718feb3906286
openssl@1.1.1j-r0
1.1.1q-r0
1
quay.io/kiwigrid/k8s-sidecar:1.15.61f025ae37b7b
openssl@1.1.1l-r8
1.1.1q-r0
1
quay.io/kiwigrid/k8s-sidecar:1.15.1a25886092fa4
openssl@1.1.1l-r8
1.1.1q-r0
1
quay.io/kubernetes-multicluster/kubefed:v0.7.06d56f69b15a3
openssl@1.1.1j-r0
1.1.1q-r0
1
quay.io/metallb/controller:v0.10.221164241c045
openssl@1.1.1k-r0
1.1.1q-r0
1
quay.io/metallb/speaker:v0.10.258cb99053bb3
openssl@1.1.1k-r0
1.1.1q-r0
1
quay.io/netwarps/blockscoutbecd3e39360a
openssl@1.1.1l-r8
1.1.1q-r0
1
quay.io/oauth2-proxy/oauth2-proxy:v7.1.3ecd26b74a01f
openssl@1.1.1j-r0
1.1.1q-r0
1
quay.io/oauth2-proxy/oauth2-proxy:v7.2.1febeebebe762
openssl@1.1.1l-r7
1.1.1q-r0
1
quay.io/opsmxpublic/awsgit:v2-openssh0d21ba756f44
openssl@1.1.1l-r8
1.1.1q-r0
1
quay.io/opsmxpublic/awsgit:v3-js15a6faada3d4
openssl@1.1.1k-r0
1.1.1q-r0
1
quay.io/opsmxpublic/k8s-decoder:halfec086394aa9
openssl@1.1.1i-r0
1.1.1q-r0
1
quay.io/renokico/laravel-helm-demo:0.6.03207f957e80c
openssl@1.1.1k-r0
1.1.1q-r0
1
quay.io/renokico/laravel-helm-demo:worker-0.6.04b188259267e
openssl@1.1.1k-r0
1.1.1q-r0
1
quay.io/soketi/pws:0.8-16-alpine399d2e6b10ef
openssl@1.1.1l-r0
1.1.1q-r0
1
quay.io/srcmaxim/gradle-example-app:1.1.37c3fc28746ef
openssl@1.1.1k-r0
1.1.1q-r0
1
registry.gitlab.com/arm-research/smarter/smarter-device-manager:v1.20.7864fc338571e
openssl@1.1.1k-r0
1.1.1q-r0
1
registry.gitlab.com/autokubeops/kube-image-webhook:v0.2.0fcf464708a21
openssl@1.1.1-1ubuntu2.1~18.04.17
1.1.1-1ubuntu2.1~18.04.20
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
openssl@1.1.1f-1ubuntu2.2
1.1.1f-1ubuntu2.16
1
registry.gitlab.com/timvisee/send:v3.4.2047986cf6ef69
openssl@1.1.1l-r0
1.1.1q-r0
1
registry.k8s.io/ingress-nginx/controller:v1.2.15516d103a9c2
openssl@1.1.1o-r0
1.1.1q-r0
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.