CVE-2022-22576
HighAdvisory
Published 27 Apr 2022In the index since 5 Sept 2026
- Severity
- High
- worst across findings
- CVSS
- 8.1
- base score, highest
- EPSS
- 0.022
- 81st percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 469
- of 17,787 indexed, latest versions
- Container images
- 380
- deployed by those charts
- Fix available
- 2 of 2
- affected packages
The matching OSV records carry no description.
Carried by container images the latest versions of 469 of 17,787 indexed charts deploy, on 380 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| curldeb | 7.35.0-1ubuntu2.1, 7.35.0-1ubuntu2.3, 7.35.0-1ubuntu2.16, 7.35.0-1ubuntu2.19+30 more | 7.58.0-2ubuntu3.17, 7.68.0-1ubuntu2.10 | 197 |
| curlapk | 7.69.1-r0, 7.69.1-r1, 7.69.1-r3, 7.74.0-r0+7 more | 7.79.1-r1, 7.80.0-r1 | 183 |
- OSV records
- ALPINE-CVE-2022-22576UBUNTU-CVE-2022-22576
- Also known as
- USN-5397-1
Charts affected
469 by stars
Container images carrying it
380 by charts deploying them
A fixed version is listed for 2 of the 2 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| istio/ | e7e110a421c2 | curl | 7.58.0-2ubuntu3.17 | 1 |
| istio/ | 0c78be035e98 | curl | no fix listed | 1 |
| istio/ | 87a9db561d2e | curl | 7.58.0-2ubuntu3.17 | 1 |
| istio/ | 88c6c693e67a | curl | 7.58.0-2ubuntu3.17 | 1 |
| jacobalberty/ | c409924e2463 | curl | no fix listed | 1 |
| jakowenko/ | b858bac9e32a | curl | 7.68.0-1ubuntu2.10 | 1 |
| jesec/ | 3d1d0bec117a | curl | 7.79.1-r1 | 1 |
| jesec/ | 60bd59cfb4eb | curl | 7.79.1-r1 | 1 |
| jesec/ | f0c894ec459e | curl | 7.79.1-r1 | 1 |
| jfwenisch/ | 9e6c229f953c | curl | 7.79.1-r1 | 1 |
| jmferrer/ | 030f68ec6998 | curl | no fix listed | 1 |
| johnblack77/ | bb53ceb8442e | curl | 7.79.1-r1 | 1 |
| jupyterhub/ | 723028bf9b3c | curl | 7.80.0-r1 | 1 |
| jupyterhub/ | 81bd96729c14 | curl | 7.79.1-r1 | 1 |
| jupyterhub/ | b6b4a1a34bf0 | curl | 7.68.0-1ubuntu2.10 | 1 |
| jupyterhub/ | e4770285aaf7 | curl | 7.68.0-1ubuntu2.10 | 1 |
| jupyterhub/ | e3e6f3051df8 | curl | 7.68.0-1ubuntu2.10 | 1 |
| kanboard/ | 0b6d33dbbc16 | curl | 7.79.1-r1 | 1 |
| keitaro/ | 5bf1a45f45c1 | curl | 7.79.1-r1 | 1 |
| keyporttech/ | 5bd7955ea2f1 | curl | 7.79.1-r1 | 1 |
| kubeoperator/ | be8f0d624640 | curl | 7.58.0-2ubuntu3.17 | 1 |
| lavandadelpatio/ | ccfc0cd77803 | curl | 7.79.1-r1 | 1 |
| layer5/ | 8c20a8a1d6a4 | curl | 7.79.1-r1 | 1 |
| library/ | 143ec8cc2f3a | curl | 7.79.1-r1 | 1 |
| library/ | b095ff3248c6 | curl | 7.68.0-1ubuntu2.10 | 1 |
| library/ | 332c6d416808 | curl | 7.68.0-1ubuntu2.10 | 1 |
| library/ | e2e2031c15be | curl | 7.68.0-1ubuntu2.10 | 1 |
| library/ | 3d0e6df9fd5b | curl | 7.58.0-2ubuntu3.17 | 1 |
| library/ | 6ca49afbcb2b | curl | 7.58.0-2ubuntu3.17 | 1 |
| library/ | 5aa44b407756 | curl | 7.79.1-r1 | 1 |
| librenms/ | 4f1f3d667cc7 | curl | 7.80.0-r1 | 1 |
| lightbend/ | b0c9894ac8dd | curl | no fix listed | 1 |
| linuxserver/ | a847b5b2d860 | curl | 7.58.0-2ubuntu3.17 | 1 |
| linuxserver/ | 938810eca3d3 | curl | 7.68.0-1ubuntu2.10 | 1 |
| linuxserver/ | b801bbcf6386 | curl | 7.58.0-2ubuntu3.17 | 1 |
| linuxserver/ | 0ac871624394 | curl | 7.58.0-2ubuntu3.17 | 1 |
| linuxserver/ | 2ce561a95e7b | curl | 7.58.0-2ubuntu3.17 | 1 |
| linuxserver/ | f93d2560e233 | curl | 7.58.0-2ubuntu3.17 | 1 |
| linuxserver/ | 2fbb21fb4903 | curl | 7.58.0-2ubuntu3.17 | 1 |
| linuxserver/ | 4a13ced2326c | curl | 7.68.0-1ubuntu2.10 | 1 |
| litmuschaos/ | 99961210d467 | curl | 7.58.0-2ubuntu3.17 | 1 |
| longhornio/ | dca34321452c | curl | 7.68.0-1ubuntu2.10 | 1 |
| longhornio/ | ede61fe2a472 | curl | 7.58.0-2ubuntu3.17 | 1 |
| longhornio/ | 148598de4b7d | curl | 7.79.1-r1 | 1 |
| longhornio/ | 65560eabe3ee | curl | 7.79.1-r1 | 1 |
| lsstsqre/ | b75bf8aaafa4 | curl | 7.68.0-1ubuntu2.10 | 1 |
| lumenvox/ | 53decadc102d | curl | 7.68.0-1ubuntu2.10 | 1 |
| mathnao/ | d38581b447ad | curl | 7.79.1-r1 | 1 |
| milesmcc/ | e821e31140f7 | curl | 7.79.1-r1 | 1 |
| minio/ | 053f103f4894 | curl | 7.79.1-r1 | 1 |