StackRadar

CVE-2022-2879

Unscored

Advisory

Published 6 Oct 2022In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.017
75th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,273
of 17,781 indexed, latest versions
Container images
1,377
deployed by those charts
Fix available
1 of 1
affected package

Unbounded memory consumption when reading headers in archive/tar

Carried by container images the latest versions of 1,273 of 17,781 indexed charts deploy, on 1,377 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+81 more1.18.71,377
OSV records
GO-2022-1037
Also known as
BIT-golang-2022-2879

Charts affected

1,273 by stars
ChartLatestAffected imagesRadar Score
cadvisorkrakazyabraVerified publisher1.0.11 of 1See more

cadvisor krakazyabra 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
gcr.io/cadvisor/cadvisor:v0.40.0135327c978de
stdlib@go1.13.15
1.18.7

Open the chart page →

3,176
krakenkraken0.2.01 of 7See more

kraken kraken 0.2.0

1 of the 7 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
library/redis:5.0fc5ecd863862
stdlib@go1.16.7
1.18.7

Open the chart page →

1,731
kubeflowkromanow94-kubeflow0.5.14 of 30See more

kubeflow kromanow94-kubeflow 0.5.1

4 of the 30 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
kubeflownotebookswg/kfam:v1.9.22060a2ede788
stdlib@go1.17.13
1.18.7
kubeflownotebookswg/notebook-controller:v1.9.20f14bd28fdd5
stdlib@go1.17.13
1.18.7
kubeflownotebookswg/profile-controller:v1.9.2f05a5538ae7e
stdlib@go1.17.13
1.18.7
kubeflownotebookswg/tensorboard-controller:v1.9.26536a9f61193
stdlib@go1.17.13
1.18.7

Open the chart page →

70,530
kron-aapm-sidecarkron-aapm-sidecar1.1.01 of 1See more

kron-aapm-sidecar kron-aapm-sidecar 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
krontechnology/aapm-sidecar-injector:1.1.0e078d54c1711
stdlib@go1.17.10
1.18.7

Open the chart page →

2,111
lndkronkltdVerified publisher0.3.93 of 4See more

lnd kronkltd 0.3.9

3 of the 4 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
thesisrobot/lnd:v0.14.1-betad94c8dbf6dac
stdlib@go1.17.1
1.18.7
thesisrobot/loop:v0.11.1-beta89ae07e787ca
stdlib@go1.13.12
1.18.7
thesisrobot/pool:v0.3.3-alpha2d1c388a4bda
stdlib@go1.14.12
1.18.7

Open the chart page →

8,451
casdoorkrzwiatrzyk1.0.01 of 1See more

casdoor krzwiatrzyk 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
casbin/casdoor:v1.224.066f836ef778b
stdlib@go1.17.5
1.18.7

Open the chart page →

3,649
nocodbkrzwiatrzyk0.0.11 of 1See more

nocodb krzwiatrzyk 0.0.1

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
nocodb/nocodb:0.100.2b0b91ec2a2dd
stdlib@go1.18.2
1.18.7

Open the chart page →

2,313
pipecdkrzwiatrzyk0.39.01 of 3See more

pipecd krzwiatrzyk 0.39.0

1 of the 3 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
ghcr.io/pipe-cd/pipecd:v0.39.00fae829caf29
stdlib@go1.14.6
1.18.7

Open the chart page →

3,812
postgresql-backup-to-miniokrzwiatrzyk0.0.11 of 2See more

postgresql-backup-to-minio krzwiatrzyk 0.0.1

1 of the 2 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
library/postgres:14.13162a6ead070
stdlib@go1.16.7
1.18.7

Open the chart page →

2,199
traggokrzwiatrzyk1.0.01 of 1See more

traggo krzwiatrzyk 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
traggo/server:0.2.3f1ced637510e
stdlib@go1.13.1
1.18.7

Open the chart page →

1,885
cluster-componentkubebb0.2.24 of 4See more

cluster-component kubebb 0.2.2

4 of the 4 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
kubebb/cert-manager-cainjector:v1.8.0f83cd256229b
stdlib@go1.17.8
1.18.7
kubebb/cert-manager-controller:v1.8.020509de4b399
stdlib@go1.17.8
1.18.7
kubebb/cert-manager-webhook:v1.8.060d3cba0c267
stdlib@go1.17.8
1.18.7
kubebb/ingress-nginx-controller:v1.3.0067673df26a6
stdlib@go1.18.2
1.18.7

Open the chart page →

8,160
fabric-operatorkubebb0.1.01 of 1See more

fabric-operator kubebb 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
hyperledgerk8s/fabric-operator:7776e7129a8af8be270
stdlib@go1.18.4
1.18.7

Open the chart page →

3,988
tdsfkubebb5.7.01 of 3See more

tdsf kubebb 5.7.0

1 of the 3 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
kubebb/mesh-operator:v5.7.0163ebbfc7a82
stdlib@go1.18.4
1.18.7

Open the chart page →

6,490
u4a-componentkubebb0.2.103 of 8See more

u4a-component kubebb 0.2.10

3 of the 8 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
kubebb/iam-provider:v0.2.0-202401280ba03fcee3a7
stdlib@go1.17.13
1.18.7
kubebb/kube-oidc-proxy-ce:v0.3.0-2022100858d5efec568b
stdlib@go1.18
1.18.7
kubebb/oidc-server:v0.2.02b5894ef1e2f
stdlib@go1.17.8
1.18.7

Open the chart page →

13,819
chaos-meshkubeblocksVerified publisher2.7.21 of 4See more

chaos-mesh kubeblocks 2.7.2

1 of the 4 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
stdlib@go1.16.2
1.18.7

Open the chart page →

13,497
geminikubeblocksVerified publisher0.13.41 of 8See more

gemini kubeblocks 0.13.4

1 of the 8 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.18.7

Open the chart page →

3,103
jupyterhubkubeblocksVerified publisher0.1.01 of 7See more

jupyterhub kubeblocks 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
registry.k8s.io/kube-scheduler:v1.23.143e149d206076
stdlib@go1.17.13
1.18.7

Open the chart page →

7,356
nvidia-gpu-exporterkubeblocksVerified publisher0.3.11 of 1See more

nvidia-gpu-exporter kubeblocks 0.3.1

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
utkuozdemir/nvidia_gpu_exporter:0.3.0149f9e7e7aa3
stdlib@go1.17
1.18.7

Open the chart page →

4,462
prometheuskubeblocksVerified publisher15.16.15 of 6See more

prometheus kubeblocks 15.16.1

5 of the 6 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.18.7
prom/pushgateway:v1.4.33496e0f85943
stdlib@go1.18.2
1.18.7
quay.io/prometheus/alertmanager:v0.24.0088464f949de
stdlib@go1.17.8
1.18.7
quay.io/prometheus/node-exporter:v1.3.1f2269e73124d
stdlib@go1.17.3
1.18.7
registry.k8s.io/kube-state-metrics/kube-state-metrics:v2.5.009a36e2be1db
stdlib@go1.18.3
1.18.7

Open the chart page →

10,302
snapshot-controllerkubeblocksVerified publisher1.7.21 of 1See more

snapshot-controller kubeblocks 1.7.2

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/snapshot-controller:v6.2.198bab4eaf23c
stdlib@go1.19
1.18.7

Open the chart page →

1,128
victoria-metrics-alertkubeblocksVerified publisher0.8.3-reload1 of 3See more

victoria-metrics-alert kubeblocks 0.8.3-reload

1 of the 3 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.18.7

Open the chart page →

3,715
log-socketkube-loggingVerified publisher0.1.21 of 1See more

log-socket kube-logging 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
ghcr.io/banzaicloud/log-socket:latesta514736d2d4d
stdlib@go1.18.6
1.18.7

Open the chart page →

1,220
apm-serverkube-opsVerified publisher0.1.21 of 1See more

apm-server kube-ops 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
elastic/apm-server:7.17.6c7a1c63257d0
stdlib@go1.18.2
1.18.7

Open the chart page →

7,157
lokikube-opsVerified publisher1.7.31 of 1See more

loki kube-ops 1.7.3

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
quay.io/kube-ops/loki:2.2.14fbd63194674
stdlib@go1.15.3
1.18.7

Open the chart page →

2,646
promtailkube-opsVerified publisher1.5.11 of 2See more

promtail kube-ops 1.5.1

1 of the 2 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
quay.io/kube-ops/promtail:2.2.134de6387233b
stdlib@go1.15.3
1.18.7

Open the chart page →

4,149
kubernetesweeklykubernetesweekly2.1.01 of 1See more

kubernetesweekly kubernetesweekly 2.1.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
zufardhiyaulhaq/kubernetesweekly:v2.1.0a287ada277c6
stdlib@go1.16.15
1.18.7

Open the chart page →

1,489
api-serverkubeshop0.11.161 of 2See more

api-server kubeshop 0.11.16

1 of the 2 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
kubeshop/testkube-api-server:0.11.160ad97f07a78b
stdlib@go1.17.8
1.18.7

Open the chart page →

3,417
apisix-dashboardkubesphereVerified publisher0.3.01 of 1See more

apisix-dashboard kubesphere 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
apache/apisix-dashboard:2.9.0c010ea7d1694
stdlib@go1.14.15
1.18.7

Open the chart page →

2,518
apisix-ingress-controllerkubesphereVerified publisher0.8.01 of 2See more

apisix-ingress-controller kubesphere 0.8.0

1 of the 2 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
apache/apisix-ingress-controller:1.3.0412f92cde0b3
stdlib@go1.13.8
1.18.7

Open the chart page →

2,409
fluentbit-operatorkubesphereVerified publisher0.1.01 of 2See more

fluentbit-operator kubesphere 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
kubesphere/fluentbit-operator:v0.9.0b87db3c57cb3
stdlib@go1.13.15
1.18.7

Open the chart page →

2,902
gitlabkubesphereVerified publisher4.2.36 of 17See more

gitlab kubesphere 4.2.3

6 of the 17 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
gitlab/gitlab-runner:alpine-v13.2.1fd7e5dfb9f30
stdlib@go1.13.8
1.18.7
mirrorgitlabcontainers/gitaly:v13.2.283599461ef8b
stdlib@go1.13.9
1.18.7
mirrorgitlabcontainers/gitlab-container-registry:v2.9.1-gitlab06b19a4bc805
stdlib@go1.13.9
1.18.7
mirrorgitlabcontainers/gitlab-shell:v13.3.09f3654f1eafc
stdlib@go1.13.9
1.18.7
mirrorgitlabcontainers/gitlab-workhorse-ce:v13.2.2a6d7bf42805a
stdlib@go1.13.9
1.18.7
mirrorgitlabcontainers/kubectl:1.13.1299931bd06b41
stdlib@go1.13.3
1.18.7

Open the chart page →

38,133
harborkubesphereVerified publisher1.9.37 of 11See more

harbor kubesphere 1.9.3

7 of the 11 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
goharbor/chartmuseum-photon:v2.5.36ab3ca28e9e5
stdlib@go1.17.7
1.18.7
goharbor/harbor-core:v2.5.386bf3031f4a7
stdlib@go1.17.7
1.18.7
goharbor/harbor-jobservice:v2.5.38d5339ff2d74
stdlib@go1.17.7
1.18.7
goharbor/harbor-registryctl:v2.5.37f82ed1e2635
stdlib@go1.17.7
1.18.7
goharbor/notary-server-photon:v2.5.3fd91a4a1273f
stdlib@go1.14.15
1.18.7
goharbor/notary-signer-photon:v2.5.3a92b51aa7d6e
stdlib@go1.14.15
1.18.7
goharbor/trivy-adapter-photon:v2.5.3b9522c3f5056
stdlib@go1.18.3
1.18.7

Open the chart page →

17,798
pvc-autoresizerkubesphereVerified publisher0.1.01 of 1See more

pvc-autoresizer kubesphere 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
kubesphere/pvc-autoresizer:v0.19a18a16c7b87
stdlib@go1.16.10
1.18.7

Open the chart page →

1,562
storageclass-accessorkubesphereVerified publisher0.1.01 of 1See more

storageclass-accessor kubesphere 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
kubesphere/storageclass-accessor:v0.1.1eac8f273a9b6
stdlib@go1.16.10
1.18.7

Open the chart page →

1,509
ccm-qingcloudkubesphere-stable0.1.01 of 1See more

ccm-qingcloud kubesphere-stable 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
qingcloud/cloud-controller-manager:v1.4.1210f66b5df886
stdlib@go1.18.2
1.18.7

Open the chart page →

1,540
chaos-meshkubesphere-stable2.5.13 of 3See more

chaos-mesh kubesphere-stable 2.5.1

3 of the 3 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.5.1cf78fdf7403a
stdlib@go1.18
1.18.7
ghcr.io/chaos-mesh/chaos-dashboard:v2.5.1448cb346b12c
stdlib@go1.18
1.18.7
ghcr.io/chaos-mesh/chaos-mesh:v2.5.1700bb42ac21d
stdlib@go1.18
1.18.7

Open the chart page →

8,555
cni-hostnickubesphere-stable0.1.01 of 1See more

cni-hostnic kubesphere-stable 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
qingcloud/hostnic-plus:v1.0.34cd5366a9f51
stdlib@go1.16.3
1.18.7

Open the chart page →

2,437
cranekubesphere-stable0.5.23 of 3See more

crane kubesphere-stable 0.5.2

3 of the 3 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
gocrane/crane-scheduler:0.0.239ba6d11b2079
stdlib@go1.17.2
1.18.7
gocrane/crane-scheduler-controller:0.1.23a2d7e60576f9
stdlib@go1.17.2
1.18.7
gocrane/craned:v0.5.1a1400909118c
stdlib@go1.17.2
1.18.7

Open the chart page →

8,883
csi-qingcloudkubesphere-stable1.4.05 of 6See more

csi-qingcloud kubesphere-stable 1.4.0

5 of the 6 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
csiplugin/csi-attacher:v3.2.160ab9b3e6a03
stdlib@go1.16
1.18.7
csiplugin/csi-node-driver-registrar:v2.2.02dee3fe5fe86
stdlib@go1.16
1.18.7
csiplugin/csi-resizer:v1.2.036c31f7e1f43
stdlib@go1.16
1.18.7
csiplugin/csi-snapshotter:v4.0.051f2dfde5bcc
stdlib@go1.15
1.18.7
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
stdlib@go1.16.2
1.18.7

Open the chart page →

12,402
curvefs-csikubesphere-stable0.1.01 of 3See more

curvefs-csi kubesphere-stable 0.1.0

1 of the 3 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
quay.io/k8scsi/csi-node-driver-registrar:v1.3.0e6df72478956
stdlib@go1.13.3
1.18.7

Open the chart page →

2,822
deepflowkubesphere-stable6.2.6063 of 8See more

deepflow kubesphere-stable 6.2.606

3 of the 8 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
deepflowce/clickhouse-server:22.8.6.71bc1882f75c18
stdlib@go1.18.3
1.18.7
deepflowce/deepflowio-init-grafana:v6.2.6.56b51a0206b04
stdlib@go1.19.1
1.18.7
deepflowce/mysql:8.0.313d7ae561cf60
stdlib@go1.16.7
1.18.7

Open the chart page →

18,316
edgemeshkubesphere-stable0.1.01 of 2See more

edgemesh kubesphere-stable 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
kubeedge/edgemesh-server:latesta437cf5ec0ae
stdlib@go1.17.11
1.18.7

Open the chart page →

4,096
iomeshkubesphere-stable1.1.010 of 25See more

iomesh kubesphere-stable 1.1.0

10 of the 25 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
iomesh/csi-driver:v2.7.25d3f9bf9240b
stdlib@go1.16.7
1.18.7
iomesh/csi-node-driver-registrar:v2.5.086f58b0a2106
stdlib@go1.17.3
1.18.7
iomesh/csi-provisioner:v3.0.0f9508460b273
stdlib@go1.16.2
1.18.7
iomesh/csi-snapshotter:v6.2.2becc53e25b96
stdlib@go1.19
1.18.7
iomesh/hostpath-provisioner:v0.5.1f4878c8ae53a
stdlib@go1.13.1
1.18.7
iomesh/livenessprobe:v2.8.0560f01510f99
stdlib@go1.18
1.18.7
iomesh/node-disk-exporter:1.8.0f03148764f38
stdlib@go1.14.7
1.18.7
iomesh/node-disk-manager:1.8.0002c4b92fd34
stdlib@go1.14.7
1.18.7
iomesh/node-disk-operator:1.8.0f6c76380db34
stdlib@go1.14.7
1.18.7
iomesh/snapshot-controller:v6.2.2fb95b65bb88f
stdlib@go1.19
1.18.7

Open the chart page →

48,665
IOMeshkubesphere-stable1.2.09 of 25See more

IOMesh kubesphere-stable 1.2.0

9 of the 25 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
iomesh/csi-node-driver-registrar:v2.5.086f58b0a2106
stdlib@go1.17.3
1.18.7
iomesh/csi-provisioner:v3.0.0f9508460b273
stdlib@go1.16.2
1.18.7
iomesh/csi-snapshotter:v6.2.2becc53e25b96
stdlib@go1.19
1.18.7
iomesh/hostpath-provisioner:v0.5.1f4878c8ae53a
stdlib@go1.13.1
1.18.7
iomesh/livenessprobe:v2.8.0560f01510f99
stdlib@go1.18
1.18.7
iomesh/node-disk-exporter:1.8.0f03148764f38
stdlib@go1.14.7
1.18.7
iomesh/node-disk-manager:1.8.0-2292ad270082e
stdlib@go1.14.7
1.18.7
iomesh/node-disk-operator:1.8.0-1de4aa40684ad
stdlib@go1.14.7
1.18.7
iomesh/snapshot-controller:v6.2.2fb95b65bb88f
stdlib@go1.19
1.18.7

Open the chart page →

46,341
pulsarkubesphere-stable2.7.132 of 3See more

pulsar kubesphere-stable 2.7.13

2 of the 3 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
prom/prometheus:v2.17.242d2395cd719
stdlib@go1.13.10
1.18.7
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.1611bceacec8fb
stdlib@go1.15.6
1.18.7

Open the chart page →

14,320
aws-fsx-csi-driverkubesphere-testVerified publisher0.1.01 of 4See more

aws-fsx-csi-driver kubesphere-test 0.1.0

1 of the 4 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
amazon/aws-fsx-csi-driver:latestc9b14856fd22
stdlib@go1.16.8
1.18.7

Open the chart page →

1,588
ccm-qingcloudkubesphere-testVerified publisher0.1.01 of 1See more

ccm-qingcloud kubesphere-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
qingcloud/cloud-controller-manager:v1.4.1210f66b5df886
stdlib@go1.18.2
1.18.7

Open the chart page →

1,540
cni-hostnickubesphere-testVerified publisher0.1.01 of 1See more

cni-hostnic kubesphere-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
qingcloud/hostnic-plus:v1.0.34cd5366a9f51
stdlib@go1.16.3
1.18.7

Open the chart page →

2,437
csi-neonsankubesphere-testVerified publisher1.3.06 of 6See more

csi-neonsan kubesphere-test 1.3.0

6 of the 6 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
csiplugin/csi-attacher:v3.2.160ab9b3e6a03
stdlib@go1.16
1.18.7
csiplugin/csi-neonsan:v1.2.21fa83d45417f
stdlib@go1.14.4
1.18.7
csiplugin/csi-node-driver-registrar:v2.2.02dee3fe5fe86
stdlib@go1.16
1.18.7
csiplugin/csi-resizer:v1.2.036c31f7e1f43
stdlib@go1.16
1.18.7
csiplugin/csi-snapshotter:v4.0.051f2dfde5bcc
stdlib@go1.15
1.18.7
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
stdlib@go1.16.2
1.18.7

Open the chart page →

18,475
csi-qingcloudkubesphere-testVerified publisher1.4.05 of 6See more

csi-qingcloud kubesphere-test 1.4.0

5 of the 6 container images this version deploys carry CVE-2022-2879.

Container imageDigestPackageFixed in
csiplugin/csi-attacher:v3.2.160ab9b3e6a03
stdlib@go1.16
1.18.7
csiplugin/csi-node-driver-registrar:v2.2.02dee3fe5fe86
stdlib@go1.16
1.18.7
csiplugin/csi-resizer:v1.2.036c31f7e1f43
stdlib@go1.16
1.18.7
csiplugin/csi-snapshotter:v4.0.051f2dfde5bcc
stdlib@go1.15
1.18.7
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
stdlib@go1.16.2
1.18.7

Open the chart page →

12,402

Container images carrying it

1,377 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
library/mysql:5.74bc6bc963e6d
stdlib@go1.18.2
1.18.7
22
jimmidyson/configmap-reload:v0.5.0904d08e9f701
stdlib@go1.15.7
1.18.7
14
library/mysql:8.0.28fc77d54cacef
stdlib@go1.16.7
1.18.7
11
library/mongo:5.0.6-focal8e70544b6c76
stdlib@go1.16.7
1.18.7
10
prom/pushgateway:v1.4.2a684e7c830a4
stdlib@go1.16.9
1.18.7
8
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
stdlib@go1.14.4
1.18.7
8
osixia/openldap:1.5.018742e9c449c
stdlib@go1.15.5
1.18.7
7
wurstmeister/kafka:latest2d4bbf9cc83d
stdlib@go1.17.10
1.18.7
7
grafana/grafana:7.0.3d72946c8e5d5
stdlib@go1.14.3
1.18.7
6
quay.io/devtron/authenticator:e414faff-393-13273c8958d9533c7
stdlib@go1.18.2
1.18.7
6
quay.io/devtron/dex:v2.30.22e4c14d1b444
stdlib@go1.16.6
1.18.7
6
quay.io/devtron/kubectl:latest2ad610626658
stdlib@go1.18.5
1.18.7
6
quay.io/devtron/postgres:14.91b594392f7cb
stdlib@go1.18.2
1.18.7
6
quay.io/devtron/postgres_exporter:v0.10.13ea136843b2e
stdlib@go1.17.6
1.18.7
6
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
stdlib@go1.14.4
1.18.7
6
containous/whoami:latest:v1.5.07d6a3c8f9147
stdlib@go1.14
1.18.7
5
library/postgres:122f2a8c2a7d10
stdlib@go1.18.2
1.18.7
5
library/redis:7.4.2-alpine:7.4.2-alpine3.2102419de7eddf
stdlib@go1.18.2
1.18.7
5
library/redis:5:5.0fc5ecd863862
stdlib@go1.16.7
1.18.7
5
postgis/postgis:latest01a6a70e41e6
stdlib@go1.18.2
1.18.7
5
prom/alertmanager:v0.20.07e4e9f7a0954
stdlib@go1.13.5
1.18.7
5
prom/prometheus:v2.13.10a8caa2e9f19
stdlib@go1.13.1
1.18.7
5
quay.io/k8scsi/csi-node-driver-registrar:v1.3.0e6df72478956
stdlib@go1.13.3
1.18.7
5
quay.io/prometheus/alertmanager:v0.23.09ab73a421b65
stdlib@go1.16.7
1.18.7
5
registry.k8s.io/sig-storage/csi-provisioner:v2.2.204c55b93a032
stdlib@go1.16.2
1.18.7
5
csiplugin/csi-attacher:v3.2.160ab9b3e6a03
stdlib@go1.16
1.18.7
4
csiplugin/csi-node-driver-registrar:v2.2.02dee3fe5fe86
stdlib@go1.16
1.18.7
4
grafana/grafana:6.7.11ff3999e0fc0
stdlib@go1.13.4
1.18.7
4
grafana/loki:2.6.11ee60f980950
stdlib@go1.17.9
1.18.7
4
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
stdlib@go1.18.2
1.18.7
4
jimmidyson/configmap-reload:v0.4.017d34fd73f9e
stdlib@go1.14.4
1.18.7
4
library/mongo:4.4.66efa05203990
stdlib@go1.16.3
1.18.7
4
oscarsotosanchez/weatherservice:v1.0911ec961d10b
stdlib@go1.15.6
1.18.7
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v20220916-gd32f8c34339c5b2e3310d
stdlib@go1.19.1
1.18.7
4
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.1.164d8c73dca98
stdlib@go1.16.9
1.18.7
4
argoproj/argocd:v1.8.1830e86cacefd
stdlib@go1.14.12
1.18.7
3
bitnamilegacy/mongodb:6.0.4-debian-11-r10016dce036593
stdlib@go1.17.10
1.18.7
3
csiplugin/csi-resizer:v1.2.036c31f7e1f43
stdlib@go1.16
1.18.7
3
csiplugin/csi-snapshotter:v4.0.051f2dfde5bcc
stdlib@go1.15
1.18.7
3
dgraph/dgraph:v21.12.03b55ea83fffe
stdlib@go1.17.3
1.18.7
3
grafana/grafana:8.2.500568d89c4f8
stdlib@go1.17
1.18.7
3
grafana/promtail:2.4.2626900031c4e
stdlib@go1.17.2
1.18.7
3
library/postgres:14.13162a6ead070
stdlib@go1.16.7
1.18.7
3
library/postgres:15.7-alpine:15.7-alpine3.20468d34fefd63
stdlib@go1.18.2
1.18.7
3
library/postgres:115d2aa4a7b5f9
stdlib@go1.16.7
1.18.7
3
library/redis:7.2.4-alpinec8bb255c3559
stdlib@go1.18.2
1.18.7
3
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
stdlib@go1.15.7
1.18.7
3
mintel/dex-k8s-authenticator:1.4.0caf71cee7b9a
stdlib@go1.13.11
1.18.7
3
prom/prometheus:v2.19.0bfad037f95e5
stdlib@go1.14.4
1.18.7
3
prom/pushgateway:v1.2.00a9031142481
stdlib@go1.13.8
1.18.7
3

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.