StackRadar

CVE-2022-2097

Medium

Advisory

Published 5 Jul 2022In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.047
91st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
862
of 17,787 indexed, latest versions
Container images
849
deployed by those charts
Fix available
3 of 3
affected packages

libopenssl-1_1-devel-1.1.1q-1.1 on GA media

Carried by container images the latest versions of 862 of 17,787 indexed charts deploy, on 849 images.

Affected packageAffected versionsFixed inImages
opensslapk1.1.1i-r0, 1.1.1j-r0, 1.1.1k-r0, 1.1.1l-r0+6 more1.1.1q-r0457
openssldeb1.1.0g-2ubuntu4.1, 1.1.0g-2ubuntu4.3, 1.1.1-1ubuntu2.1~18.04.4, 1.1.1-1ubuntu2.1~18.04.5+36 more1.1.1-1ubuntu2.1~18.04.20, 1.1.1-1ubuntu2.fips.2.1~18.04.20, 1.1.1f-1ubuntu2.16, 1.1.1f-1ubuntu2.fips.16+1 more382
openssl-1_1rpm1.1.0i-14.6.1, 1.1.0i-lp151.8.3.1, 1.1.1d-11.6.11.1.0i-150100.14.36.1, 1.1.1d-150200.11.51.1, 1.1.1q-1.110
OSV records
ALPINE-CVE-2022-2097UBUNTU-CVE-2022-2097openSUSE-SU-2024:12179-1SUSE-SU-2022:2311-1SUSE-SU-2022:2328-1
Also known as
USN-5502-1

Charts affected

862 by stars
ChartLatestAffected imagesRadar Score
kibanawiremindVerified publisher8.5.231 of 2See more

kibana wiremind 8.5.23

1 of the 2 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
library/kibana:8.18.004c0fc150f3a
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.fips.16

Open the chart page →

6,323
kafka-connect-uiwitcom-gmbh0.5.01 of 2See more

kafka-connect-ui witcom-gmbh 0.5.0

1 of the 2 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.3.08c21390be87d
openssl@1.1.1n-r0
1.1.1q-r0

Open the chart page →

2,506
mrtg-backendwitcom-gmbh0.7.01 of 2See more

mrtg-backend witcom-gmbh 0.7.0

1 of the 2 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.2.1febeebebe762
openssl@1.1.1l-r7
1.1.1q-r0

Open the chart page →

2,616
powerdnsadminwitcom-gmbh0.3.41 of 1See more

powerdnsadmin witcom-gmbh 0.3.4

1 of the 1 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
openssl@1.1.1l-r0
1.1.1q-r0

Open the chart page →

2,643
workadventureworkadventure1.1.02 of 9See more

workadventure workadventure 1.1.0

2 of the 9 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
thecodingmachine/workadventure-chat:v1.17.7da12f37e6795
openssl@1.1.1n-r0
1.1.1q-r0
thecodingmachine/workadventure-ejabberd:v1.17.701df99622ad3
openssl@1.1.1n-r0
1.1.1q-r0

Open the chart page →

16,083
default-backendwyrihaximusnetVerified publisher1.1.01 of 1See more

default-backend wyrihaximusnet 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
ghcr.io/wyrihaximusnet/default-backend:randomb24e63efd841
openssl@1.1.1l-r0
1.1.1q-r0

Open the chart page →

2,535
skoonerxdVerified publisher1.1.01 of 1See more

skooner xd 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
ymuski/skooner:latest67819ca511b5
openssl@1.1.1n-r0
1.1.1q-r0

Open the chart page →

1,752
rawfile-csiymatrixVerified publisher0.2.11 of 4See more

rawfile-csi ymatrix 0.2.1

1 of the 4 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
matrixdb/rawfile-csi:v0.2.195b2e38e913d
openssl@1.1.1n-r0
1.1.1q-r0

Open the chart page →

7,972
zahori-schedulerzahoriVerified publisher1.0.11 of 1See more

zahori-scheduler zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
zahoriaut/zahori-scheduler:1.0.047d0979b1184
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.fips.2.1~18.04.20

Open the chart page →

2,464
posthogzeet0.23.21 of 9See more

posthog zeet 0.23.2

1 of the 9 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
edoburu/pgbouncer:1.12.0abc0a4123a81
openssl@1.1.1l-r0
1.1.1q-r0

Open the chart page →

3,697
alertmanager-matrix-forwarderzloi-space1.0.11 of 2See more

alertmanager-matrix-forwarder zloi-space 1.0.1

1 of the 2 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
zl0i/alertmanager-matrix-forwarder:v1.0.0e94047931739
openssl@1.1.1l-r7
1.1.1q-r0

Open the chart page →

3,118
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2022-2097.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
openssl@1.1.1-1ubuntu2.1~18.04.14
1.1.1-1ubuntu2.1~18.04.20
yandex/clickhouse-server:21.3.204eccfffb01d7
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.16

Open the chart page →

9,250

Container images carrying it

849 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
hashicorp/vault:1.8.34db614d40d0e
openssl@1.1.1l-r0
1.1.1q-r0
2
hashicorp/vault-k8s:0.13.1bebb03e8e800
openssl@1.1.1l-r0
1.1.1q-r0
2
hookiesolutions/webhookie:latest0629694246ba
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.16
2
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.fips.16
2
interlayhq/interbtc:latesta66d0e35e70f
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.fips.16
2
interlayhq/interbtc-clients:vault-masterc3e311de67da
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.16
2
istio/kubectl:1.5.10dbb7726d1bf0
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.20
2
istio/proxyv2:1.10.3a78b7a165744
openssl@1.1.1-1ubuntu2.1~18.04.9
1.1.1-1ubuntu2.1~18.04.20
2
jaegertracing/all-in-one:1.3104d224a9999b
openssl@1.1.1l-r0
1.1.1q-r0
2
jvstein/bitcoin-prometheus-exporter:v0.6.07645ba790ea8
openssl@1.1.1k-r0
1.1.1q-r0
2
library/cassandra:3.11.65aa8400b4b3b
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.20
2
library/docker:19.03ea1f0761c92b
openssl@1.1.1k-r0
1.1.1q-r0
2
library/elasticsearch:7.17.35e6ac15bf6a5
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.16
2
library/mongo:5.041108d183e97
openssl@1.1.1f-1ubuntu2.24
1.1.1f-1ubuntu2.fips.16
2
library/mongo:4.2.358b25d51baa1
openssl@1.1.1-1ubuntu2.1~18.04.5
1.1.1-1ubuntu2.1~18.04.20
2
library/nginx:1.19-alpine07ab71a2c8e4
openssl@1.1.1k-r0
1.1.1q-r0
2
library/postgres:9.6-alpine8342bcb43446
openssl@1.1.1l-r7
1.1.1q-r0
2
library/traefik:v2.57d5a6ae66572
openssl@1.1.1l-r0
1.1.1q-r0
2
listmonk/listmonk:v2.1.0d2eac77ddfad
openssl@1.1.1l-r7
1.1.1q-r0
2
maxrocketinternet/new-relic-app-exporter:0.185e5f55b6ddc
openssl@1.1.1j-r0
1.1.1q-r0
2
mbentley/omada-controller:4.3f4e682274bed
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.fips.2.1~18.04.20
2
mesosphere/kommander:6.100.13917e82333a9
openssl@1.1.1l-r0
1.1.1q-r0
2
mesosphere/kubeaddons-catalog:v0.11.4073db43d0b8b
openssl@1.1.1f-1ubuntu2
1.1.1f-1ubuntu2.16
2
mojaloop/reporting-hub-bop-api-svc:v4.1.2b45a2d6f0f2a
openssl@1.1.1n-r0
1.1.1q-r0
2
natsio/nats-account-server:1.0.0a3381560aab6
openssl@1.1.1k-r0
1.1.1q-r0
2
natsio/nats-box:0.11.09fbf7bf684e4
openssl@1.1.1n-r0
1.1.1q-r0
2
ngick8stesting/c3po-mmeinit:latest1e764eab77b4
openssl@1.1.0g-2ubuntu4.1
1.1.1-1ubuntu2.1~18.04.20
2
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
openssl@1.1.1l-r0
1.1.1q-r0
2
obsidiandynamics/kafdrop:3.30.05337c9e0e2de
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.16
2
pecan/db:latest9a1cdc3a9ccb
openssl@1.1.1l-r7
1.1.1q-r0
2
privatebin/pdo:1.3.500466418121c
openssl@1.1.1n-r0
1.1.1q-r0
2
qingcloud/cloud-controller-manager:v1.4.1210f66b5df886
openssl@1.1.1l-r7
1.1.1q-r0
2
qingcloud/hostnic-plus:v1.0.34cd5366a9f51
openssl@1.1.1k-r0
1.1.1q-r0
2
smartedge/generic-multi-access-network-virtualization:1.04cd63c22ce36
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.fips.16
2
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
openssl@1.1.1f-1ubuntu2.22
1.1.1f-1ubuntu2.fips.16
2
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
openssl@3.0.2-0ubuntu1.5
3.0.2-0ubuntu1.6
2
xelalex/dregsy:0.4.3574054e1c417
openssl@1.1.1o-r0
1.1.1q-r0
2
ghcr.io/dexidp/dex:v2.28.15e88f2205de1
openssl@1.1.1j-r0
1.1.1q-r0
2
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.16
2
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.16
2
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.16
2
ghcr.io/kvaps/kubernetes-tools:v0.13.4920867eb0bf8
openssl@1.1.1l-r0
1.1.1q-r0
2
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.20
2
ghcr.io/lissy93/dashy:2.1.1acb40032ad4b
openssl@1.1.1l-r7
1.1.1q-r0
2
ghcr.io/salaboy/fmtok8s-agenda-service:v0.0.1-native6c5efe150958
openssl@1.1.1-1ubuntu2.1~18.04.21
1.1.1-1ubuntu2.fips.2.1~18.04.20
2
ghcr.io/salaboy/fmtok8s-c4p-service:v0.0.1-native3f7cc45fd20b
openssl@1.1.1-1ubuntu2.1~18.04.21
1.1.1-1ubuntu2.fips.2.1~18.04.20
2
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
openssl@3.0.2-0ubuntu1.2
3.0.2-0ubuntu1.6
2
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
openssl@1.1.1f-1ubuntu2.19
1.1.1f-1ubuntu2.fips.16
2
quay.io/iver-wharf/wharf-api:v5.2.0b736b345437d
openssl@1.1.1n-r0
1.1.1q-r0
2
quay.io/iver-wharf/wharf-cmd:v0.8.2e98d13459cdc
openssl@1.1.1n-r0
1.1.1q-r0
2

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.