StackRadar

CVE-2022-29155

Critical

Advisory

Published 4 May 2022In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.645
99th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
721
of 17,787 indexed, latest versions
Container images
614
deployed by those charts
Fix available
3 of 3
affected packages

openldap - security update

Carried by container images the latest versions of 721 of 17,787 indexed charts deploy, on 614 images.

Affected packageAffected versionsFixed inImages
openldapdeb2.4.31-1+nmu2ubuntu8, 2.4.31-1+nmu2ubuntu8.4, 2.4.31-1+nmu2ubuntu8.5, 2.4.42+dfsg-2ubuntu3.2+40 more2.4.31-1+nmu2ubuntu8.5+esm5, 2.4.42+dfsg-2ubuntu3.13+esm1, 2.4.44+dfsg-5+deb9u9, 2.4.45+dfsg-1ubuntu1.11+4 more599
openldapapk2.6.0-r02.6.2-r07
openldap2rpm2.4.46-9.28.2, 2.4.46-9.31.1, 2.4.46-9.37.1, 2.4.46-9.40.12.4.46-150000.9.71.1, 2.4.46-150200.14.8.18
OSV records
ALPINE-CVE-2022-29155UBUNTU-CVE-2022-29155DLA-3017-1DSA-5140-1SUSE-SU-2022:1670-1SUSE-SU-2022:1832-1
Also known as
USN-5424-1, USN-5424-2

Charts affected

721 by stars
ChartLatestAffected imagesRadar Score
voteappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 5See more

voteapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 5 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_worker:v1741e3aaaa812
openldap@2.4.44+dfsg-5+deb9u1
2.4.44+dfsg-5+deb9u9

Open the chart page →

8,287
workerappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 1See more

workerapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_worker:v1741e3aaaa812
openldap@2.4.44+dfsg-5+deb9u1
2.4.44+dfsg-5+deb9u9

Open the chart page →

3,329
pageswalter1.0.02 of 3See more

pages walter 1.0.0

2 of the 3 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
openldap@2.4.49+dfsg-2ubuntu1.5
2.4.49+dfsg-2ubuntu1.9
flyway/flyway:6.4.422d97ceb0c47
openldap@2.4.45+dfsg-1ubuntu1.4
2.4.45+dfsg-1ubuntu1.11

Open the chart page →

20,233
wazuh-manager-filebeatwazuh-manager-filebeat0.1.0-gamma1 of 1See more

wazuh-manager-filebeat wazuh-manager-filebeat 0.1.0-gamma

1 of the 1 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
iosifache/wazuh-manager-filebeat:latest85df3f04b5da
openldap@2.4.49+dfsg-2ubuntu1.8
2.4.49+dfsg-2ubuntu1.9

Open the chart page →

11,167
queryservice-gatewaywbstack0.2.01 of 1See more

queryservice-gateway wbstack 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
ghcr.io/wbstack/queryservice-gateway:2.2ab8e2f583e56
openldap@2.4.44+dfsg-5+deb9u8
2.4.44+dfsg-5+deb9u9

Open the chart page →

2,559
tool-cradlewbstack0.2.01 of 1See more

tool-cradle wbstack 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
ghcr.io/wbstack/cradle:2.0.11c7a78c54f77
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7

Open the chart page →

1,316
tool-quickstatementswbstack0.4.01 of 1See more

tool-quickstatements wbstack 0.4.0

1 of the 1 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
ghcr.io/wbstack/quickstatements:1.3.588423e422ea8
openldap@2.4.47+dfsg-3+deb10u4
2.4.47+dfsg-3+deb10u7

Open the chart page →

1,698
tool-widarwbstack0.4.01 of 1See more

tool-widar wbstack 0.4.0

1 of the 1 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
ghcr.io/wbstack/widar:1.31702fc9df79f
openldap@2.4.47+dfsg-3+deb10u4
2.4.47+dfsg-3+deb10u7

Open the chart page →

1,480
weather-chartweather-web-app0.1.01 of 1See more

weather-chart weather-web-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
zohardocker12/weather_app_flask:latestb86d60dbb68d
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7

Open the chart page →

2,671
webapp-db-javawebapp-db-java-repo0.1.01 of 2See more

webapp-db-java webapp-db-java-repo 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
library/mysql:5.620575ecebe62
openldap@2.4.44+dfsg-5+deb9u8
2.4.44+dfsg-5+deb9u9

Open the chart page →

2,566
sonarqubewebencryptor6.7.31 of 3See more

sonarqube webencryptor 6.7.3

1 of the 3 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
library/sonarqube:8.2-communitya246bc64207e
openldap@2.4.47+dfsg-3+deb10u1
2.4.47+dfsg-3+deb10u7

Open the chart page →

5,462
webencryptorwebencryptor1.1.01 of 1See more

webencryptor webencryptor 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
beubi/webencryptor:latesta02c2e200920
openldap@2.4.44+dfsg-5+deb9u2
2.4.44+dfsg-5+deb9u9

Open the chart page →

1,968
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
openldap@2.4.49+dfsg-2ubuntu1.8
2.4.49+dfsg-2ubuntu1.9

Open the chart page →

14,420
webhookie-allwebhookie0.1.21 of 3See more

webhookie-all webhookie 0.1.2

1 of the 3 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
openldap@2.4.49+dfsg-2ubuntu1.8
2.4.49+dfsg-2ubuntu1.9

Open the chart page →

28,699
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-nginx:latest6de60c83128d
openldap@2.4.57+dfsg-3
2.4.57+dfsg-3+deb11u1

Open the chart page →

7,552
cadencewenerme0.23.01 of 5See more

cadence wenerme 0.23.0

1 of the 5 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
library/cassandra:3.11.3ce85468c5bad
openldap@2.4.44+dfsg-5+deb9u2
2.4.44+dfsg-5+deb9u9

Open the chart page →

10,127
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
istio/kubectl:1.5.10dbb7726d1bf0
openldap@2.4.45+dfsg-1ubuntu1.6
2.4.45+dfsg-1ubuntu1.11

Open the chart page →

10,857
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
openldap@2.4.49+dfsg-2ubuntu1.8
2.4.49+dfsg-2ubuntu1.9

Open the chart page →

15,287
temporalwenerme0.15.11 of 13See more

temporal wenerme 0.15.1

1 of the 13 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
library/cassandra:3.11.3ce85468c5bad
openldap@2.4.44+dfsg-5+deb9u2
2.4.44+dfsg-5+deb9u9

Open the chart page →

22,665
Wordresswordpress0.2.01 of 2See more

Wordress wordpress 0.2.0

1 of the 2 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
library/mysql:5.620575ecebe62
openldap@2.4.44+dfsg-5+deb9u8
2.4.44+dfsg-5+deb9u9

Open the chart page →

1,339
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2022-29155.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
openldap@2.4.45+dfsg-1ubuntu1.10
2.4.45+dfsg-1ubuntu1.11
yandex/clickhouse-server:21.3.204eccfffb01d7
openldap@2.4.49+dfsg-2ubuntu1.8
2.4.49+dfsg-2ubuntu1.9

Open the chart page →

9,250

Container images carrying it

614 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
yandex/clickhouse-server:19.14ccf9c2b5e3f2
openldap@2.4.45+dfsg-1ubuntu1.6
2.4.45+dfsg-1ubuntu1.11
1
yandex/clickhouse-server:19.16d210dc69321e
openldap@2.4.45+dfsg-1ubuntu1.4
2.4.45+dfsg-1ubuntu1.11
1
zabbix/zabbix-agent:ubuntu-5.4.62127168cab03
openldap@2.4.49+dfsg-2ubuntu1.8
2.4.49+dfsg-2ubuntu1.9
1
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
openldap@2.4.49+dfsg-2ubuntu1.8
2.4.49+dfsg-2ubuntu1.9
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
openldap@2.4.49+dfsg-2ubuntu1.8
2.4.49+dfsg-2ubuntu1.9
1
zammad/zammad-docker-compose:zammad-4.1.0-312808e2dfa810
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
zohardocker12/weather_app_flask:latestb86d60dbb68d
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
openldap@2.4.45+dfsg-1ubuntu1.4
2.4.45+dfsg-1ubuntu1.11
1
gcr.io/google-containers/echoserver:1.910f4dbc8eeeb
openldap@2.4.42+dfsg-2ubuntu3.2
2.4.42+dfsg-2ubuntu3.13+esm1
1
gcr.io/google_containers/echoserver:1.10cb5c1bddd1b5
openldap@2.4.42+dfsg-2ubuntu3.2
2.4.42+dfsg-2ubuntu3.13+esm1
1
gcr.io/google-samples/microservices-demo/loadgenerator:v0.2.3360130ab5850
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
gcr.io/istio-release/pilot:release-1.0-latest-daily5ea7b7f3632a
openldap@2.4.42+dfsg-2ubuntu3.5
2.4.42+dfsg-2ubuntu3.13+esm1
1
gcr.io/istio-release/pilot:1.11.1c552478f8f11
openldap@2.4.49+dfsg-2ubuntu1.8
2.4.49+dfsg-2ubuntu1.9
1
gcr.io/istio-release/proxyv2:release-1.0-latest-daily8f9ff98fdbef
openldap@2.4.42+dfsg-2ubuntu3.5
2.4.42+dfsg-2ubuntu3.13+esm1
1
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
openldap@2.4.49+dfsg-2ubuntu1.8
2.4.49+dfsg-2ubuntu1.9
1
ghcr.io/appuio/cloud-portal:v0.2.18c7e08d32d70
openldap@2.4.57+dfsg-3
2.4.57+dfsg-3+deb11u1
1
ghcr.io/cfcontainerizationbot/kubecf-kubectl:v1.19.261daa1bba5cb
openldap2@2.4.46-9.37.1
2.4.46-150200.14.8.1
1
ghcr.io/cloudfoundry-incubator/quarks-job:v1.0.213760eee87f839
openldap2@2.4.46-9.40.1
2.4.46-150000.9.71.1
1
ghcr.io/cloudfoundry-incubator/quarks-operator:v7.0.1-0.g5396b116a1432b0d503
openldap2@2.4.46-9.40.1
2.4.46-150000.9.71.1
1
ghcr.io/cloudfoundry-incubator/quarks-secret:v1.0.754f059af4de8ed
openldap2@2.4.46-9.40.1
2.4.46-150000.9.71.1
1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1304-g4b4f2ac5c7c70b527255
openldap2@2.4.46-9.37.1
2.4.46-150000.9.71.1
1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1308-g6a8b2220e24a9e0a21b6
openldap2@2.4.46-9.40.1
2.4.46-150000.9.71.1
1
ghcr.io/conductionnl/adresservice-nginx:latest849af80ab017
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/authorization-component-nginx:latest02d0644aa99b
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/berichtservice-nginx:latest833d26df3840
openldap@2.4.57+dfsg-3
2.4.57+dfsg-3+deb11u1
1
ghcr.io/conductionnl/bisc-frontend:latestd8a0334cddfc
openldap@2.4.47+dfsg-3+deb10u2
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/brpservice-nginx:latest4db9b77c4425
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/contactcatalogus-nginx:latest480c84fa9e63
openldap@2.4.57+dfsg-3
2.4.57+dfsg-3+deb11u1
1
ghcr.io/conductionnl/digispoof-interface-nginx:latest8fa4597217a4
openldap@2.4.57+dfsg-3
2.4.57+dfsg-3+deb11u1
1
ghcr.io/conductionnl/education-component-nginx:latest38900bc76ee0
openldap@2.4.57+dfsg-3
2.4.57+dfsg-3+deb11u1
1
ghcr.io/conductionnl/eherkenning-ui-nginx:latestfcd2100d863f
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/grafregistratiecomponent-nginx:latestd0daf48dec68
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/instemmingservice-nginx:latesteeeb4e9f0485
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/landelijketabellencatalogus-nginx:lateste7076242888a
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/loggingcomponent-nginx:latestcee37e9cef09
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/logicservice-nginx:latest7c8ee08c591c
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/medewerkercatalogus-nginx:latest06c3b27462e6
openldap@2.4.57+dfsg-3
2.4.57+dfsg-3+deb11u1
1
ghcr.io/conductionnl/memo-component-nginx:latestfd28182f7ecf
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/notification-component-nginx:latestd53bda41ee3b
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/ocatiecatalogus-nginx:latestc46374fc8f32
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/orderregistratiecomponent-nginx:latest42acee4ab31c
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/procestypecatalogus-nginx:latestca6fc575a3ba
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/productenendienstencatalogus-nginx:latest4095e7207822
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/proto-component-commonground-nginx:latest5b1384e29b7d
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/review-component-nginx:latest5df5f92870a5
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/taalhuizen-service-nginx:latest0bbaa7487c63
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/trouw-service-nginx:latest86fe293b99a2
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/user-component-nginx:latestb721579df8c3
openldap@2.4.57+dfsg-3
2.4.57+dfsg-3+deb11u1
1
ghcr.io/conductionnl/verhuis-service-nginx:latest4473ce50435e
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1
ghcr.io/conductionnl/verzoekconversieservice-nginx:latestf449b82ce9d6
openldap@2.4.47+dfsg-3+deb10u6
2.4.47+dfsg-3+deb10u7
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.