StackRadar

CVE-2022-2509

High

Advisory

Published 1 Aug 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.019
78th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
609
of 17,781 indexed, latest versions
Container images
577
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: gnutls security update

Carried by container images the latest versions of 609 of 17,781 indexed charts deploy, on 577 images.

Affected packageAffected versionsFixed inImages
gnutls28deb3.5.17-1ubuntu1, 3.5.18-1ubuntu1, 3.5.18-1ubuntu1.1, 3.5.18-1ubuntu1.2+9 more3.5.18-1ubuntu1.6, 3.6.13-2ubuntu1.7, 3.7.1-5+deb11u2, 3.7.3-4ubuntu1.1467
gnutlsrpm3.6.5-2.el8, 3.6.7-14.4.1, 3.6.7-lp151.2.3.1, 3.6.8-8.el8+7 more0:3.6.16-5.el8_6, 3.6.7-150200.14.19.2, 3.7.7-1.186
gnutlsapk3.7.1-r0, 3.7.6-r03.7.1-r1, 3.7.7-r024
OSV records
ALPINE-CVE-2022-2509RHSA-2022:7105UBUNTU-CVE-2022-2509DSA-5203-1openSUSE-SU-2024:12233-1SUSE-SU-2022:2882-1
Also known as
USN-5550-1

Charts affected

609 by stars
ChartLatestAffected imagesRadar Score
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
istio/kubectl:1.5.10dbb7726d1bf0
gnutls28@3.5.18-1ubuntu1.4
3.5.18-1ubuntu1.6

Open the chart page →

10,843
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7

Open the chart page →

15,230
miniowenerme8.0.101 of 1See more

minio wenerme 8.0.10

1 of the 1 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
gnutls@3.6.14-7.el8_3
0:3.6.16-5.el8_6

Open the chart page →

6,915
minio-standalonewenerme1.0.21 of 1See more

minio-standalone wenerme 1.0.2

1 of the 1 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2022-01-04T07-41-07Z1484c87239ea
gnutls@3.6.16-4.el8
0:3.6.16-5.el8_6

Open the chart page →

6,138
sambawenerme1.0.01 of 1See more

samba wenerme 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
wener/samba:4.13.39a42bae466d4
gnutls@3.7.1-r0
3.7.1-r1

Open the chart page →

2,555
vaultwardenwitcom-gmbh0.2.01 of 2See more

vaultwarden witcom-gmbh 0.2.0

1 of the 2 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
vaultwarden/server:1.25.239f34c5159a2
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2

Open the chart page →

1,585
wp-gats-helmwordpress-gatsby0.0.11 of 3See more

wp-gats-helm wordpress-gatsby 0.0.1

1 of the 3 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
library/wordpress:6.0.0-php8.0-apache277c6c25980f
gnutls28@3.7.1-5
3.7.1-5+deb11u2

Open the chart page →

2,021
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
gnutls@3.6.16-4.el8
0:3.6.16-5.el8_6

Open the chart page →

11,577
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2022-2509.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
gnutls28@3.5.18-1ubuntu1.5
3.5.18-1ubuntu1.6
yandex/clickhouse-server:21.3.204eccfffb01d7
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7

Open the chart page →

9,207

Container images carrying it

577 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
gnutls@3.6.14-8.el8_3
0:3.6.16-5.el8_6
1
archish27/python-fastapi-postgres:latest6610071a2101
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
aroralalit/student-producer:1.0.02a094f597b36
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
arturisimo/planner:v1.0fff9de644941
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
assistiot/fl_orchestrator:dbmongo4-latestd157fbe150e3
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
assistiot/identity-manager_kc:latest0df4b4fa899a
gnutls@3.6.16-4.el8
0:3.6.16-5.el8_6
1
assistiot/sdn_controller:2.4.0ea254b6d8a31
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
assistiot/tacticle_dashboard:api-lateste4414cb72dc4
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
atomix/atomix:3.1.127738ff4f5c63
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
azhar008/flaskapplication:latesta1e827b0adea
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
bbernhard/signal-cli-rest-api:0.57549ad08d7e14
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
beastob/url-shortener:1.0.299a49885ab33
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
bicarus/mx-notifier:1.1.8bed688d16762
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
biospheere/promcord:latest16d4fd269e66
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
bitnamilegacy/kafka:2.8.1-debian-11-r7b6e381ffd6ae
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
bitnamilegacy/redis:6.2.7-debian-11-r37788b908dd0d
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
blakeblackshear/frigate:0.10.0-amd64ae269270ad9e
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.7
1
bsgrigorov/helm-operator:latest45ab095f09c8
gnutls@3.6.14-8.el8_3
0:3.6.16-5.el8_6
1
cfcontainerization/cf-operator:v2.3.0-0.g27a91cdf82fa261c18a8
gnutls@3.6.7-lp151.2.3.1
3.7.7-1.1
1
cfcontainerization/quarks-job:v0.0.0-0.g70ae34b58fb1c173a46
gnutls@3.6.7-lp151.2.3.1
3.7.7-1.1
1
chandanteekinavar/findery-market-order-service:1.00cf52bf5ee9a
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
chetangautamm/repo:sipp.v3e7f7049e1544
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.7
1
chubaofs/cfs-client:3.2.015ff74209ce7
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
chubaofs/cfs-server:3.2.0205030e045f2
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
cloudve/janis-terminal:latestaf56e77ca587
gnutls28@3.5.18-1ubuntu1.3
3.5.18-1ubuntu1.6
1
cloudve/ttyd:latestd79c1c5881c0
gnutls28@3.5.18-1ubuntu1.3
3.5.18-1ubuntu1.6
1
cmosborn/metabase-arm64:0.50.286ec0a8878ad2
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
cockroachdb/cockroach-operator:v2.1.0983312754620
gnutls@3.6.14-8.el8_3
0:3.6.16-5.el8_6
1
confluentinc/cp-enterprise-control-center:6.1.0f2975d507a2a
gnutls@3.6.14-7.el8_3
0:3.6.16-5.el8_6
1
confluentinc/cp-enterprise-kafka:6.1.08f1544df1f48
gnutls@3.6.14-7.el8_3
0:3.6.16-5.el8_6
1
confluentinc/cp-kafka:7.1.2.amd643bf359d5e340
gnutls@3.6.16-4.el8
0:3.6.16-5.el8_6
1
confluentinc/cp-kafka-connect:6.1.04bc70a83ca6f
gnutls@3.6.14-7.el8_3
0:3.6.16-5.el8_6
1
confluentinc/cp-kafka-rest:6.1.0b0b7aa26254a
gnutls@3.6.14-7.el8_3
0:3.6.16-5.el8_6
1
confluentinc/cp-ksqldb-server:6.1.0ee403d5b9090
gnutls@3.6.14-7.el8_3
0:3.6.16-5.el8_6
1
confluentinc/cp-schema-registry:6.1.0b651d4b6185a
gnutls@3.6.14-7.el8_3
0:3.6.16-5.el8_6
1
confluentinc/cp-zookeeper:6.1.078c190f4472c
gnutls@3.6.14-7.el8_3
0:3.6.16-5.el8_6
1
countly/countly-server:25.05.4e3c238248f99
gnutls28@3.6.13-2ubuntu1.6
3.6.13-2ubuntu1.7
1
cradlepoint/pgbouncer:1.0.18f5720b0cd03
gnutls28@3.5.18-1ubuntu1
3.5.18-1ubuntu1.6
1
craftypath/sops-operator:v0.8.0402a0024c732
gnutls@3.6.14-8.el8_3
0:3.6.16-5.el8_6
1
cribl/cribl:3.0.2762747cb6796
gnutls28@3.5.18-1ubuntu1.4
3.5.18-1ubuntu1.6
1
ctron/hawkbit-operator:0.1.48fdea8f76499
gnutls@3.6.8-11.el8_2
0:3.6.16-5.el8_6
1
daedalusproject/base_kubectl:latest6f72b5119eda
gnutls28@3.6.13-2ubuntu1.3
3.6.13-2ubuntu1.7
1
dannielkil/book-backend:lateste3b479a55a69
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1
daskdev/dask-notebook:1.1.0052630f5ca04
gnutls28@3.5.18-1ubuntu1
3.5.18-1ubuntu1.6
1
datadog/extendeddaemonset:v0.8.0513a4377aed5
gnutls@3.6.16-4.el8
0:3.6.16-5.el8_6
1
datappeal/hive-metastore:lateste38c085a3567
gnutls28@3.7.1-5
3.7.1-5+deb11u2
1
datawire/ambassador-operator:v1.3.0f95ae710d75c
gnutls@3.6.14-8.el8_3
0:3.6.16-5.el8_6
1
davidvmar/urjc-davidvmar-worker:1.0.10d221e834a21
gnutls28@3.7.1-5+deb11u1
3.7.1-5+deb11u2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.