StackRadar

CVE-2022-2509

High

Advisory

Published 1 Aug 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.019
78th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
613
of 17,787 indexed, latest versions
Container images
581
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: gnutls security update

Carried by container images the latest versions of 613 of 17,787 indexed charts deploy, on 581 images.

Affected packageAffected versionsFixed inImages
gnutls28deb3.5.17-1ubuntu1, 3.5.18-1ubuntu1, 3.5.18-1ubuntu1.1, 3.5.18-1ubuntu1.2+9 more3.5.18-1ubuntu1.6, 3.6.13-2ubuntu1.7, 3.7.1-5+deb11u2, 3.7.3-4ubuntu1.1469
gnutlsrpm3.6.5-2.el8, 3.6.7-14.4.1, 3.6.7-lp151.2.3.1, 3.6.8-8.el8+7 more0:3.6.16-5.el8_6, 3.6.7-150200.14.19.2, 3.7.7-1.186
gnutlsapk3.7.1-r0, 3.7.6-r03.7.1-r1, 3.7.7-r026
OSV records
ALPINE-CVE-2022-2509RHSA-2022:7105UBUNTU-CVE-2022-2509DSA-5203-1openSUSE-SU-2024:12233-1SUSE-SU-2022:2882-1
Also known as
USN-5550-1

Charts affected

613 by stars
ChartLatestAffected imagesRadar Score
drillwearefrank1.3.61 of 3See more

drill wearefrank 1.3.6

1 of the 3 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
apache/drill:1.21.11f96558fd292
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2

Open the chart page →

9,399
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7

Open the chart page →

14,420
webhookie-allwebhookie0.1.22 of 3See more

webhookie-all webhookie 0.1.2

2 of the 3 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
gnutls@3.6.14-8.el8_3
0:3.6.16-5.el8_6

Open the chart page →

28,699
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-nginx:latest6de60c83128d
gnutls28@3.7.1-5
3.7.1-5+deb11u2

Open the chart page →

7,552
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
istio/kubectl:1.5.10dbb7726d1bf0
gnutls28@3.5.18-1ubuntu1.4
3.5.18-1ubuntu1.6

Open the chart page →

10,857
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7

Open the chart page →

15,287
miniowenerme8.0.101 of 1See more

minio wenerme 8.0.10

1 of the 1 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
gnutls@3.6.14-7.el8_3
0:3.6.16-5.el8_6

Open the chart page →

6,915
minio-standalonewenerme1.0.21 of 1See more

minio-standalone wenerme 1.0.2

1 of the 1 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2022-01-04T07-41-07Z1484c87239ea
gnutls@3.6.16-4.el8
0:3.6.16-5.el8_6

Open the chart page →

6,138
sambawenerme1.0.01 of 1See more

samba wenerme 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
wener/samba:4.13.39a42bae466d4
gnutls@3.7.1-r0
3.7.1-r1

Open the chart page →

2,555
vaultwardenwitcom-gmbh0.2.01 of 2See more

vaultwarden witcom-gmbh 0.2.0

1 of the 2 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
vaultwarden/server:1.25.239f34c5159a2
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2

Open the chart page →

1,585
wp-gats-helmwordpress-gatsby0.0.11 of 3See more

wp-gats-helm wordpress-gatsby 0.0.1

1 of the 3 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
library/wordpress:6.0.0-php8.0-apache277c6c25980f
gnutls28@3.7.1-5
3.7.1-5+deb11u2

Open the chart page →

2,021
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
gnutls@3.6.16-4.el8
0:3.6.16-5.el8_6

Open the chart page →

11,592
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
gnutls28@3.5.18-1ubuntu1.5
3.5.18-1ubuntu1.6
yandex/clickhouse-server:21.3.204eccfffb01d7
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7

Open the chart page →

9,250

Container images carrying it

581 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/k8s-at-home/plex:v1.28.0.5999-97678ded3ef756c7d784b
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
ghcr.io/k8s-at-home/prowlarr:v0.3.0.1710c863aa9875fa
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
ghcr.io/k8s-at-home/qbittorrent:v4.4.261deadd1ec78
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
gnutls28@3.7.3-4ubuntu1
3.7.3-4ubuntu1.1
1
ghcr.io/k8s-at-home/readarr:v0.1.0.715ad943e9309e4
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.7
1
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.7
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
gnutls28@3.7.3-4ubuntu1
3.7.3-4ubuntu1.1
1
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
ghcr.io/k8s-at-home/theme-park:v1.7.3f8a5ec8f4669
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
ghcr.io/k8s-at-home/wireguard:v1.0.20210424448045c4270b
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.7
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
ghcr.io/komputing/fauceth:release4ab8fa4143b4
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.7
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.7
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.7
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.7
1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.7
1
ghcr.io/leoquote/tinyproxy_exporter:master6b4103d88dbb
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
gnutls28@3.5.18-1ubuntu1.5
3.5.18-1ubuntu1.6
1
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
gnutls28@3.7.3-4ubuntu1
3.7.3-4ubuntu1.1
1
ghcr.io/linuxserver/resilio-sync:version-2.7.2.1375605b6d544028
gnutls28@3.5.18-1ubuntu1.4
3.5.18-1ubuntu1.6
1
ghcr.io/lsst-sqre/strimzi-registry-operator:0.6.07e25f7048aff
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
ghcr.io/melodyyangaws/hive-metastore:3.0.0e949b0f733f0
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
ghcr.io/nathanvaughn/webtrees:2.0.1969423a100fab
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
ghcr.io/paperless-ngx/paperless-ngx:1.8.09bbc9a90641e
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
ghcr.io/privacyengineering/hawk-monitor:master13309f068a56
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
ghcr.io/savonet/liquidsoap:v2.0.19e08148e1055
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
ghcr.io/simoncaron/velero-notifications:1.0.0d058963d4de7
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
ghcr.io/volosoft/eshoponabp/app-authserver:1.0.022ce496c67d7
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
ghcr.io/volosoft/eshoponabp/app-publicweb:1.0.07e53010dda55
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
ghcr.io/volosoft/eshoponabp/gateway-web:1.0.026465a2bf671
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
ghcr.io/volosoft/eshoponabp/gateway-web-public:1.0.050cab15c80d9
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
ghcr.io/volosoft/eshoponabp/service-administration:1.0.0206a9bee17a8
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
ghcr.io/volosoft/eshoponabp/service-basket:1.0.0dd5ce454072e
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
ghcr.io/volosoft/eshoponabp/service-catalog:1.0.07ecb00f53d99
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
ghcr.io/volosoft/eshoponabp/service-identity:1.0.0e53bf47b62d0
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
ghcr.io/volosoft/eshoponabp/service-payment:1.0.02ca91145099c
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
ghcr.io/wmde/wbaas-backup:v0.1.78e6a9516eac0
gnutls28@3.5.18-1ubuntu1.5
3.5.18-1ubuntu1.6
1
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
gnutls28@3.5.18-1ubuntu1.5
3.5.18-1ubuntu1.6
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.7
1
quay.io/backube/scribe:0.2.0cdefc81c6b2e
gnutls@3.6.14-8.el8_3
0:3.6.16-5.el8_6
1
quay.io/bentoml/yatai:0.4.614b482c1f1b8
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
gnutls@3.6.14-8.el8_3
0:3.6.16-5.el8_6
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
gnutls@3.6.14-8.el8_3
0:3.6.16-5.el8_6
1
quay.io/fiware/apollo:0.0.1055330b1b60c1
gnutls@3.6.16-4.el8
0:3.6.16-5.el8_6
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.