StackRadar

CVE-2022-2509

High

Advisory

Published 1 Aug 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.019
78th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
609
of 17,781 indexed, latest versions
Container images
577
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: gnutls security update

Carried by container images the latest versions of 609 of 17,781 indexed charts deploy, on 577 images.

Affected packageAffected versionsFixed inImages
gnutls28deb3.5.17-1ubuntu1, 3.5.18-1ubuntu1, 3.5.18-1ubuntu1.1, 3.5.18-1ubuntu1.2+9 more3.5.18-1ubuntu1.6, 3.6.13-2ubuntu1.7, 3.7.1-5+deb11u2, 3.7.3-4ubuntu1.1467
gnutlsrpm3.6.5-2.el8, 3.6.7-14.4.1, 3.6.7-lp151.2.3.1, 3.6.8-8.el8+7 more0:3.6.16-5.el8_6, 3.6.7-150200.14.19.2, 3.7.7-1.186
gnutlsapk3.7.1-r0, 3.7.6-r03.7.1-r1, 3.7.7-r024
OSV records
ALPINE-CVE-2022-2509RHSA-2022:7105UBUNTU-CVE-2022-2509DSA-5203-1openSUSE-SU-2024:12233-1SUSE-SU-2022:2882-1
Also known as
USN-5550-1

Charts affected

609 by stars
ChartLatestAffected imagesRadar Score
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
istio/kubectl:1.5.10dbb7726d1bf0
gnutls28@3.5.18-1ubuntu1.4
3.5.18-1ubuntu1.6

Open the chart page →

10,843
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7

Open the chart page →

15,230
miniowenerme8.0.101 of 1See more

minio wenerme 8.0.10

1 of the 1 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
gnutls@3.6.14-7.el8_3
0:3.6.16-5.el8_6

Open the chart page →

6,915
minio-standalonewenerme1.0.21 of 1See more

minio-standalone wenerme 1.0.2

1 of the 1 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2022-01-04T07-41-07Z1484c87239ea
gnutls@3.6.16-4.el8
0:3.6.16-5.el8_6

Open the chart page →

6,138
sambawenerme1.0.01 of 1See more

samba wenerme 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
wener/samba:4.13.39a42bae466d4
gnutls@3.7.1-r0
3.7.1-r1

Open the chart page →

2,555
vaultwardenwitcom-gmbh0.2.01 of 2See more

vaultwarden witcom-gmbh 0.2.0

1 of the 2 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
vaultwarden/server:1.25.239f34c5159a2
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2

Open the chart page →

1,585
wp-gats-helmwordpress-gatsby0.0.11 of 3See more

wp-gats-helm wordpress-gatsby 0.0.1

1 of the 3 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
library/wordpress:6.0.0-php8.0-apache277c6c25980f
gnutls28@3.7.1-5
3.7.1-5+deb11u2

Open the chart page →

2,021
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
gnutls@3.6.16-4.el8
0:3.6.16-5.el8_6

Open the chart page →

11,577
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
gnutls28@3.5.18-1ubuntu1.5
3.5.18-1ubuntu1.6
yandex/clickhouse-server:21.3.204eccfffb01d7
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7

Open the chart page →

9,207

Container images carrying it

577 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
scorpiobroker/scorpio:eureka-server_2.1.03f05a113a4be
gnutls28@3.7.1-5
3.7.1-5+deb11u2
2
scorpiobroker/scorpio:AtContextServer_2.1.05073ceef2fa0
gnutls28@3.7.1-5
3.7.1-5+deb11u2
2
scorpiobroker/scorpio:gateway_2.1.062dae3dd0eeb
gnutls28@3.7.1-5
3.7.1-5+deb11u2
2
scorpiobroker/scorpio:RegistryManager_2.1.0a2cfcf0947fd
gnutls28@3.7.1-5
3.7.1-5+deb11u2
2
scorpiobroker/scorpio:QueryManager_2.1.0b742a53b2803
gnutls28@3.7.1-5
3.7.1-5+deb11u2
2
scorpiobroker/scorpio:HistoryManager_2.1.0b7fe27a06ff5
gnutls28@3.7.1-5
3.7.1-5+deb11u2
2
scorpiobroker/scorpio:config-server_1.1.0c46c1517e523
gnutls28@3.7.1-5
3.7.1-5+deb11u2
2
scorpiobroker/scorpio:SubscriptionManager_2.1.0e08036670d66
gnutls28@3.7.1-5
3.7.1-5+deb11u2
2
scorpiobroker/scorpio:EntityManager_2.1.0f02e8a429a08
gnutls28@3.7.1-5
3.7.1-5+deb11u2
2
stakater/stakater-nordmart-review:1.0.35954d2be66e95
gnutls@3.6.16-4.el8
0:3.6.16-5.el8_6
2
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
gnutls28@3.7.3-4ubuntu1
3.7.3-4ubuntu1.1
2
vaultwarden/server:1.25.239f34c5159a2
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
2
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
gnutls28@3.7.3-4ubuntu1
3.7.3-4ubuntu1.1
2
ghcr.io/games-on-whales/pulseaudio:1.0.0f34f98405c10
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.7
2
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.7
2
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.7
2
ghcr.io/linuxserver/openvpn-as:version-2.8.6-916f8e7d-ubuntu184ee0764310e7
gnutls28@3.5.18-1ubuntu1.4
3.5.18-1ubuntu1.6
2
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
gnutls28@3.7.3-4ubuntu1
3.7.3-4ubuntu1.1
2
quay.io/coreos/etcd:v3.5.628cb0630cb85
gnutls28@3.7.1-5
3.7.1-5+deb11u2
2
quay.io/keycloak/keycloak:17.0.1-legacy68f9f38c8f30
gnutls@3.6.16-4.el8
0:3.6.16-5.el8_6
2
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
gnutls@3.6.14-8.el8_3
0:3.6.16-5.el8_6
2
quay.io/openshift/origin-cli:4.7464a3af4dfe0
gnutls@3.6.14-8.el8_3
0:3.6.16-5.el8_6
2
quay.io/openshift/origin-cli:4.8bb5e052770e5
gnutls@3.6.14-8.el8_3
0:3.6.16-5.el8_6
2
a10networks/acos-prometheus-exporter:latest8dc58d434d71
gnutls28@3.5.18-1ubuntu1
3.5.18-1ubuntu1.6
1
adagber/planner:v1.0e5c1ed097752
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
adityaprasadpathak/myapp:3.07e3b9777362c
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
adolfintel/speedtest:latest1f828fe83374
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.7
1
aidasi/swpapi:v1-1-net6-k8s-test-beta838b5e2080bc
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
aidasi/swpbom:v1-1-net6-k8s-test-betafee6857b9bc9
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
aidasi/swpgateway:v1-1-net6-k8s-test-beta5ce8dbff7fdc
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
aidasi/swpidentity:v1-1-net6-k8s-test-betad433285c7d5a
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.7
1
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
gnutls28@3.5.18-1ubuntu1.5
3.5.18-1ubuntu1.6
1
anchore/anchore-engine:v0.10.0bde9eedf639d
gnutls@3.6.14-8.el8_3
0:3.6.16-5.el8_6
1
anchore/anchore-engine:v0.7.1ed9b3badd17c
gnutls@3.6.8-8.el8
0:3.6.16-5.el8_6
1
andrianrf/bpjstk-service:latest46abe878d9d8
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
andrianrf/bpjstk-simulator:latestb63fdb51d39d
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
andrianrf/iso-client:latestba560086ce15
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
anonaddy/anonaddy:0.12.3957a95565166
gnutls@3.7.6-r0
3.7.7-r0
1
apache/drill:1.21.11f96558fd292
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
apachepinot/pinot:latest-jdk110018bb04ced7
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
apachepulsar/pulsar:2.9.0d056c89b7131
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
apachepulsar/pulsar:2.8.2d538416d5afe
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
apache/skywalking-oap-server:9.2.0133d35d2c263
gnutls28@3.7.3-4ubuntu1
3.7.3-4ubuntu1.1
1
apache/skywalking-oap-server:8.9.1b4ec8c18d079
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
apache/skywalking-ui:9.2.0295f1dc87d98
gnutls28@3.7.3-4ubuntu1
3.7.3-4ubuntu1.1
1
apache/skywalking-ui:8.9.180530f0308a5
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
apache/superset:9cdaa280429ec297db16d56c94fd77b5d2aff107975ab033580d
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.