StackRadar

CVE-2022-25147

Medium

Advisory

Published 31 Jan 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.014
71st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
155
of 17,781 indexed, latest versions
Container images
150
deployed by those charts
Fix available
4 of 4
affected packages

Red Hat Security Advisory: apr-util security update

Carried by container images the latest versions of 155 of 17,781 indexed charts deploy, on 150 images.

Affected packageAffected versionsFixed inImages
apr-utildeb1.6.1-4, 1.6.1-4ubuntu2, 1.6.1-51.6.1-4+deb10u1, 1.6.1-4ubuntu2.1, 1.6.1-5+deb11u1145
aprapk1.7.0-r0, 1.7.0-r1, 1.7.0-r21.7.1-r04
apr-utilapk1.6.1-r11, 1.6.1-r12, 1.6.1-r141.6.3-r04
apr-utilrpm1.6.1-6.el80:1.6.1-6.el8_8.11
OSV records
ALPINE-CVE-2022-25147RHSA-2023:3109UBUNTU-CVE-2022-25147DLA-3332-1DSA-5364-1
Also known as
USN-5870-1

Charts affected

155 by stars
ChartLatestAffected imagesRadar Score
tool-quickstatementswbstack0.4.01 of 1See more

tool-quickstatements wbstack 0.4.0

1 of the 1 container images this version deploys carry CVE-2022-25147.

Container imageDigestPackageFixed in
ghcr.io/wbstack/quickstatements:1.3.588423e422ea8
apr-util@1.6.1-4
1.6.1-4+deb10u1

Open the chart page →

1,698
tool-widarwbstack0.4.01 of 1See more

tool-widar wbstack 0.4.0

1 of the 1 container images this version deploys carry CVE-2022-25147.

Container imageDigestPackageFixed in
ghcr.io/wbstack/widar:1.31702fc9df79f
apr-util@1.6.1-4
1.6.1-4+deb10u1

Open the chart page →

1,480
drillwearefrank1.3.61 of 3See more

drill wearefrank 1.3.6

1 of the 3 container images this version deploys carry CVE-2022-25147.

Container imageDigestPackageFixed in
apache/drill:1.21.11f96558fd292
apr-util@1.6.1-5
1.6.1-5+deb11u1

Open the chart page →

9,397
weather-chartweather-web-app0.1.01 of 1See more

weather-chart weather-web-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-25147.

Container imageDigestPackageFixed in
zohardocker12/weather_app_flask:latestb86d60dbb68d
apr-util@1.6.1-4
1.6.1-4+deb10u1

Open the chart page →

2,670
wp-gats-helmwordpress-gatsby0.0.11 of 3See more

wp-gats-helm wordpress-gatsby 0.0.1

1 of the 3 container images this version deploys carry CVE-2022-25147.

Container imageDigestPackageFixed in
library/wordpress:6.0.0-php8.0-apache277c6c25980f
apr-util@1.6.1-5
1.6.1-5+deb11u1

Open the chart page →

2,021

Container images carrying it

150 by charts deploying them

A fixed version is listed for 4 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
osixia/phpldapadmin:0.9.0d112b82be133
apr-util@1.6.1-4
1.6.1-4+deb10u1
5
conduction/openwebconcept:4.8ee2121b569ac
apr-util@1.6.1-4
1.6.1-4+deb10u1
3
phpmyadmin/phpmyadmin:5.2.0ae6dadd9cf3c
apr-util@1.6.1-5
1.6.1-5+deb11u1
3
siddharth67/block-buster-dev:7.6.04e1151ea5774
apr-util@1.6.1-5
1.6.1-5+deb11u1
3
quay.io/devtron/svn-git-sync:v78e54bc2d261f
apr@1.7.0-r2
apr-util@1.6.1-r12
1.7.1-r0
1.6.3-r0
3
amancevice/superset:0.35.212a0a9e66550
apr-util@1.6.1-4
1.6.1-4+deb10u1
2
ldapaccountmanager/lam:8.0.1d46cf25d1dda
apr-util@1.6.1-5
1.6.1-5+deb11u1
2
martinaif/backstage-k8s-demo-backend:test143bc40a3da0e
apr-util@1.6.1-4
1.6.1-4+deb10u1
2
pecan/bety:5.4.1f825d480cd62
apr-util@1.6.1-5
1.6.1-5+deb11u1
2
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
apr-util@1.6.1-4
1.6.1-4+deb10u1
2
ujamii/prometheus-sentry-exporter:0.5.06243197349e1
apr-util@1.6.1-4
1.6.1-4+deb10u1
2
weblate/weblate:4.2.2-169c160d37a3c
apr-util@1.6.1-4
1.6.1-4+deb10u1
2
adolfintel/speedtest:latest1f828fe83374
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
afrank/mozalert-controller:latestd463c37b08d7
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
apache/drill:1.21.11f96558fd292
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
apache/superset:9cdaa280429ec297db16d56c94fd77b5d2aff107975ab033580d
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
archish27/python-fastapi-postgres:latest6610071a2101
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
aroralalit/student-producer:1.0.02a094f597b36
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
arturisimo/server-urjc:v1.0d8dc4430531e
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
asdkant/fastapi-hello-world:latesta23d8bf7c885
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
assistiot/authorization_svr:latestdb9361dad79b
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
assistiot/cybersecurity-monitoring_ir-thv:latestc8b6c7eaa0cd
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
atomix/atomix:3.1.127738ff4f5c63
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
azhar008/flaskapplication:latesta1e827b0adea
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
bastilimbach/docker-magicmirror:v2.15.041b0835ab31e
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
bicarus/mx-api-service:1.0.2-hf1dab88659ae3b
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
buntha/mlflow:2.1.1154542cc3083
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
camptocamp/bucket-cloner:latestacfafc308d88
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
camptocamp/ekorre:0.1.035c91d5fda04
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
cdignam/kodiak:v0.54.05a6a55b39cee
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
ceticasbl/tsimulus-saas:0.1.18bc34ce180d0c
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
chubaofs/cfs-client:3.2.015ff74209ce7
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
chubaofs/cfs-server:3.2.0205030e045f2
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
ckulka/baikal:0.8.0aedb1f4f3fa0
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
coderaiser/cloudcmd:16.6.1b34a9775c7ce
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
crazymax/rtorrent-rutorrent:3.10-0.9.8-0.13.8fb307f5b87bf
apr@1.7.0-r2
apr-util@1.6.1-r14
1.7.1-r0
1.6.3-r0
1
danuk/telegram-sender:0.0.1026560388070
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
darkobas/ethexporter:latest62e6464491ba
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
darkobas/tokenexporter:latesta0349a0eedf0
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
deltaio/delta-sharing-server:0.2.08b75118187c5
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
dgraziotin/nginx-webdav-nononsense:1.23.138f2de42bed0
apr-util@1.6.1-4ubuntu2
1.6.1-4ubuntu2.1
1
dnationcloud/kubernetes-linter:0.2.1dee6376560f5
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
douz/helpdesk:latest4384103d0219
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
duck1123/me.untethr.nostr-relay:0.2.1119fc5d4cbfb
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
eaudeweb/mailtrap:2.3b8ad9b7e19bb
apr-util@1.6.1-4
1.6.1-4+deb10u1
1
eclipseaerios/self-service-password:5.2.32f93bfa4cf0d
apr@1.7.0-r1
apr-util@1.6.1-r11
1.7.1-r0
1.6.3-r0
1
erlangsolutions/wombatoam:4.1.284680c990147a
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
factly/hunting:0.2.0-stagv1.2ca5bc71d1d5c
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
fanzynoodle/smeejas:0.0.15f9916c1a287
apr-util@1.6.1-5
1.6.1-5+deb11u1
1
fireflyiii/core:version-5.6.142f4283bd0cf7
apr-util@1.6.1-4
1.6.1-4+deb10u1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.