StackRadar

CVE-2022-25147

Medium

Advisory

Published 31 Jan 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.014
71st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
155
of 17,781 indexed, latest versions
Container images
150
deployed by those charts
Fix available
4 of 4
affected packages

Red Hat Security Advisory: apr-util security update

Carried by container images the latest versions of 155 of 17,781 indexed charts deploy, on 150 images.

Affected packageAffected versionsFixed inImages
apr-utildeb1.6.1-4, 1.6.1-4ubuntu2, 1.6.1-51.6.1-4+deb10u1, 1.6.1-4ubuntu2.1, 1.6.1-5+deb11u1145
aprapk1.7.0-r0, 1.7.0-r1, 1.7.0-r21.7.1-r04
apr-utilapk1.6.1-r11, 1.6.1-r12, 1.6.1-r141.6.3-r04
apr-utilrpm1.6.1-6.el80:1.6.1-6.el8_8.11
OSV records
ALPINE-CVE-2022-25147RHSA-2023:3109UBUNTU-CVE-2022-25147DLA-3332-1DSA-5364-1
Also known as
USN-5870-1

Charts affected

155 by stars
ChartLatestAffected imagesRadar Score
tool-quickstatementswbstack0.4.01 of 1See more

tool-quickstatements wbstack 0.4.0

1 of the 1 container images this version deploys carry CVE-2022-25147.

Container imageDigestPackageFixed in
ghcr.io/wbstack/quickstatements:1.3.588423e422ea8
apr-util@1.6.1-4
1.6.1-4+deb10u1

Open the chart page →

1,698
tool-widarwbstack0.4.01 of 1See more

tool-widar wbstack 0.4.0

1 of the 1 container images this version deploys carry CVE-2022-25147.

Container imageDigestPackageFixed in
ghcr.io/wbstack/widar:1.31702fc9df79f
apr-util@1.6.1-4
1.6.1-4+deb10u1

Open the chart page →

1,480
drillwearefrank1.3.61 of 3See more

drill wearefrank 1.3.6

1 of the 3 container images this version deploys carry CVE-2022-25147.

Container imageDigestPackageFixed in
apache/drill:1.21.11f96558fd292
apr-util@1.6.1-5
1.6.1-5+deb11u1

Open the chart page →

9,397
weather-chartweather-web-app0.1.01 of 1See more

weather-chart weather-web-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-25147.

Container imageDigestPackageFixed in
zohardocker12/weather_app_flask:latestb86d60dbb68d
apr-util@1.6.1-4
1.6.1-4+deb10u1

Open the chart page →

2,670
wp-gats-helmwordpress-gatsby0.0.11 of 3See more

wp-gats-helm wordpress-gatsby 0.0.1

1 of the 3 container images this version deploys carry CVE-2022-25147.

Container imageDigestPackageFixed in
library/wordpress:6.0.0-php8.0-apache277c6c25980f
apr-util@1.6.1-5
1.6.1-5+deb11u1

Open the chart page →

2,021

Container images carrying it

150 by charts deploying them

A fixed version is listed for 4 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
fossology/fossology:4.2.18bd1f22ba7bb
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
gollumorg/gollum:latest7cd5305a3cf7
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
guacamole/guacamole:1.3.0739cb6820ae8
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
ha33ona/python:test6affdfc644d0
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
halkeye/self-service-password:latest3c734dde4052
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
haveagitgat/tdarr_node:2.00.101e3f9328327d
apr-util@1.6.1-4ubuntu2
1.6.1-4ubuntu2.1
1
j0113/haven-compliancy-dashboard:1.3696cb8ca9f4e
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
kfirfer/phppgadmin:7.13.0-22efb4a5d74a3
apr-util@1.6.1-4ubuntu2
1.6.1-4ubuntu2.1
1
kporwit/vinyl_lib_app:v0.1.1217de0302218
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
ladeit/ladeit:latest962b665ffe82
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
ldapaccountmanager/lam:7.295533a96a4c1
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
library/drupal:8-apache8a1a3ee83899
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
library/httpd:2.4.54ee2117e77c35
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
library/monica:3.7.0-apacheceb1ba4196ab
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
library/nextcloud:17.0.0-apache96104cb965fc
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
library/php:7.3-apacheb9872cd287ef
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
library/wordpress:6.0.0-php8.0-apache277c6c25980f
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
lsstdm/alert-stream-simulator:v1.2.1973df082d006
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
lsstdm/lsst_alert_packet:tickets-DM-3274374c97a490940
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
lsstsqre/kafkaaggregator:masterbe1b21060854
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
lsstsqre/squash-api:0.5.34879415ec6ac
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
macropower/twitch_predictions_recorder:v0.21e9c4fb89787
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
mediagis/nominatim:3.7c15e941485ef
apr-util@1.6.1-4ubuntu2
1.6.1-4ubuntu2.1
1
michaelepitech/sample-app:latestaf51d61c19f5
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
mnaggar3396/python-app:latest371d8ed84b15
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
moreillon/face-recognition-fastapi:x86bacb2ddd8394
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
moreillon/mqtt-logger:9ffbf7180a8a7daf56f6
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
mozilla/sentencecollector:2.0.91da6ff5c4895
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
n22107670/sample-app:0.4.08f3072db7aeb
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
nathanielvarona/pritunl-slack-app:0.1.10b746a34e5597
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
nmalhotr/webserver:v1.0.03419361fb0dd
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
norskel/site-usb:id45fd6798558d
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
novumrgi/glowroot-central:0.14.0-beta.38c54790675b1
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
ntakashi/gitana:1.4.04171ec641120
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
openemr/openemr:6.1.089eaa6d9a4e3
apr@1.7.0-r0
apr-util@1.6.1-r11
1.7.1-r0
1.6.3-r0
1
openproject/community:12.0.2734743d11094
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
openwhisk/kafkaprovider:2.1.063dc3d2a0904
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
pecan/docs:1.7.2eaa878d57ef2
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
pecan/monitor:1.7.273b2074f3fec
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
pecan/web:1.7.2814d678c5550
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
phntom/binaryvision-tlo-static:0.0.4e8b9ac93a3dd
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
phntom/email-manager:0.1.22d8e2a9f2f085
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
phntom/external-dns-host-network:0.0.123adadbac8443
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
phntom/fireflyiii:version-5.7.5f881ea5fbbf1
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
phpmyadmin/phpmyadmin:5.138437e021deb
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
plumdog/db-operator:latest0c2fa2db0357
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
rlex/jsonvisio:1.9.5cd50ff65118e
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
roadiehq/community-backstage-image:latestef355bf5b639
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
robmarkcole/deepstack-ui:latest410275726459
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
robotshop/rs-dispatch:latestde81f1d07b02
apr-util@1.6.1-5
1.6.1-5+deb11u1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.