StackRadar

CVE-2022-29458

High

Advisory

Published 18 Apr 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.1
base score, highest
EPSS
0.013
70th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,070
of 17,790 indexed, latest versions
Container images
1,013
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: ncurses security update

Carried by container images the latest versions of 1,070 of 17,790 indexed charts deploy, on 1,013 images.

Affected packageAffected versionsFixed inImages
ncursesdeb5.9+20140118-1ubuntu1, 6.0+20160213-1ubuntu1, 6.1-1ubuntu1, 6.1-1ubuntu1.18.04+5 more5.9+20140118-1ubuntu1+esm2, 6.0+20160213-1ubuntu1+esm2, 6.1-1ubuntu1.18.04.1, 6.1+20181013-2+deb10u3+2 more751
ncursesapk6.2_p20210109-r0, 6.2_p20210612-r0, 6.3_p20211120-r06.2_p20210109-r1, 6.2_p20210612-r1, 6.3_p20211120-r1182
ncursesrpm6.2-8.20210508.el9, 6.2-10.20210508.el90:6.2-10.20210508.el9_6.280
OSV records
ALPINE-CVE-2022-29458UBUNTU-CVE-2022-29458RHSA-2025:12876RLSA-2025:12876DLA-3167-1
Also known as
RHSA-2025:16414, RHSA-2025:16418, USN-5477-1, USN-6099-1

Charts affected

1,070 by stars
ChartLatestAffected imagesRadar Score
sonarqubewebencryptor6.7.31 of 3See more

sonarqube webencryptor 6.7.3

1 of the 3 container images this version deploys carry CVE-2022-29458.

Container imageDigestPackageFixed in
library/sonarqube:8.2-communitya246bc64207e
ncurses@6.1+20181013-2+deb10u2
6.1+20181013-2+deb10u3

Open the chart page →

5,465
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-29458.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1

Open the chart page →

14,414
webhookie-allwebhookie0.1.21 of 3See more

webhookie-all webhookie 0.1.2

1 of the 3 container images this version deploys carry CVE-2022-29458.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1

Open the chart page →

28,697
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2022-29458.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-php:latest8f1bbd5cda85
ncurses@6.3_p20211120-r0
6.3_p20211120-r1

Open the chart page →

7,562
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2022-29458.

Container imageDigestPackageFixed in
istio/kubectl:1.5.10dbb7726d1bf0
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1

Open the chart page →

10,859
frpcwenerme1.0.11 of 1See more

frpc wenerme 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-29458.

Container imageDigestPackageFixed in
wener/frpc:v0.37.0cc9fd4da44c0
ncurses@6.2_p20210612-r0
6.2_p20210612-r1

Open the chart page →

3,359
longhornwenerme1.2.32 of 2See more

longhorn wenerme 1.2.3

2 of the 2 container images this version deploys carry CVE-2022-29458.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1
longhornio/longhorn-ui:v1.2.3148598de4b7d
ncurses@6.2_p20210109-r0
6.2_p20210109-r1

Open the chart page →

15,288
openebswenerme3.10.02 of 3See more

openebs wenerme 3.10.0

2 of the 3 container images this version deploys carry CVE-2022-29458.

Container imageDigestPackageFixed in
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
ncurses@6.3-2
6.3-2ubuntu0.1
openebs/node-disk-operator:2.1.06afe2123c457
ncurses@6.3-2
6.3-2ubuntu0.1

Open the chart page →

10,587
sambawenerme1.0.01 of 1See more

samba wenerme 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-29458.

Container imageDigestPackageFixed in
wener/samba:4.13.39a42bae466d4
ncurses@6.2_p20210109-r0
6.2_p20210109-r1

Open the chart page →

2,555
temporalwenerme0.15.12 of 13See more

temporal wenerme 0.15.1

2 of the 13 container images this version deploys carry CVE-2022-29458.

Container imageDigestPackageFixed in
temporalio/admin-tools:1.15.135034611d981
ncurses@6.2_p20210109-r0
6.2_p20210109-r1
temporalio/server:1.15.1e26758f5a1bf
ncurses@6.2_p20210109-r0
6.2_p20210109-r1

Open the chart page →

22,693
wexa-studiowexa-studio1.2.01 of 15See more

wexa-studio wexa-studio 1.2.0

1 of the 15 container images this version deploys carry CVE-2022-29458.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2024-01-16T16-07-38Z4c4a4876193f
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2

Open the chart page →

15,044
powerdnsadminwitcom-gmbh0.3.41 of 1See more

powerdnsadmin witcom-gmbh 0.3.4

1 of the 1 container images this version deploys carry CVE-2022-29458.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
ncurses@6.2_p20210109-r0
6.2_p20210109-r1

Open the chart page →

2,643
workadventureworkadventure1.1.02 of 9See more

workadventure workadventure 1.1.0

2 of the 9 container images this version deploys carry CVE-2022-29458.

Container imageDigestPackageFixed in
thecodingmachine/workadventure-chat:v1.17.7da12f37e6795
ncurses@6.3_p20211120-r0
6.3_p20211120-r1
thecodingmachine/workadventure-ejabberd:v1.17.701df99622ad3
ncurses@6.3_p20211120-r0
6.3_p20211120-r1

Open the chart page →

16,084
myfirstchartww-helm-charts-repo0.1.01 of 1See more

myfirstchart ww-helm-charts-repo 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29458.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginx:0.1.0205961b09a80
ncurses@6.1+20181013-2+deb10u2
6.1+20181013-2+deb10u3

Open the chart page →

1,138
default-backendwyrihaximusnetVerified publisher1.1.01 of 1See more

default-backend wyrihaximusnet 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-29458.

Container imageDigestPackageFixed in
ghcr.io/wyrihaximusnet/default-backend:randomb24e63efd841
ncurses@6.2_p20210612-r0
6.2_p20210612-r1

Open the chart page →

2,535
posthogzeet0.23.21 of 9See more

posthog zeet 0.23.2

1 of the 9 container images this version deploys carry CVE-2022-29458.

Container imageDigestPackageFixed in
edoburu/pgbouncer:1.12.0abc0a4123a81
ncurses@6.2_p20210109-r0
6.2_p20210109-r1

Open the chart page →

3,697
myfirstchartzikilabVerified publisher0.2.01 of 1See more

myfirstchart zikilab 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-29458.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
ncurses@6.1+20181013-2+deb10u2
6.1+20181013-2+deb10u3

Open the chart page →

1,138
alertmanager-matrix-forwarderzloi-space1.0.11 of 2See more

alertmanager-matrix-forwarder zloi-space 1.0.1

1 of the 2 container images this version deploys carry CVE-2022-29458.

Container imageDigestPackageFixed in
matrixdotorg/pantalaimon:v0.10.4ba6a587fa508
ncurses@6.1+20181013-2+deb10u2
6.1+20181013-2+deb10u3

Open the chart page →

3,118
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2022-29458.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1
yandex/clickhouse-server:21.3.204eccfffb01d7
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1

Open the chart page →

9,256
grafana-matrix-forwarderzloi-space1.0.01 of 2See more

grafana-matrix-forwarder zloi-space 1.0.0

1 of the 2 container images this version deploys carry CVE-2022-29458.

Container imageDigestPackageFixed in
matrixdotorg/pantalaimon:v0.10.4ba6a587fa508
ncurses@6.1+20181013-2+deb10u2
6.1+20181013-2+deb10u3

Open the chart page →

1,636

Container images carrying it

1,013 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1
1
mcr.microsoft.com/oss/bitnami/redis:6.0.8.9e1e9cf5297a6
ncurses@6.1+20181013-2+deb10u2
6.1+20181013-2+deb10u3
1
public.ecr.aws/dynatrace/dynatrace-operator:v1.3.0f68901a54664
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
public.ecr.aws/perfectscale-io/psc-exporter:v1.0.45-redhat9083e60c38bc
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
public.ecr.aws/perfectscale-io/ubi9/ubi:9.5d7c3def9252b
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1
1
public.ecr.aws/v0r6c2e2/hive-metastore:latest794b3bff9510
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
public.ecr.aws/v0r6c2e2/minio:latest08c90bd040bf
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
public.ecr.aws/v0r6c2e2/trino:latestc265156b00d1
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/ai-lab/llamacpp_python:latest70d138997acd
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
ncurses@6.3-2
6.3-2ubuntu0.1
1
quay.io/eclipse/che-plugin-registry:nightlya88add0f8c93
ncurses@6.2_p20210109-r0
6.2_p20210109-r1
1
quay.io/everythingascode/apishift-backend:v0.3.014ff275b2e61
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/evl.ms/argocd-exporter:0.0.136ea8f34aa6b
ncurses@6.2_p20210612-r0
6.2_p20210612-r1
1
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1
1
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
ncurses@6.3-2
6.3-2ubuntu0.1
1
quay.io/fairwinds/yelb-appserver:v0.6.0fae21f06131f
ncurses@6.1+20181013-2+deb10u2
6.1+20181013-2+deb10u3
1
quay.io/fairwinds/yelb-ui:v0.1.05ac114e567ed
ncurses@6.1+20181013-2+deb10u2
6.1+20181013-2+deb10u3
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
ncurses@6.3-2
6.3-2ubuntu0.1
1
quay.io/galexrt/dellhw_exporter:v2.0.0-rc.18a1361fa38c1
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/hpestorage/cosi-driver:v2.0.0a4d2667f2b6e
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/hpestorage/filex-csi-init:2.6.42d867eefb233
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/ibmgaragecloud/cli-tools:v0.159663f06adcb1
ncurses@6.2_p20210109-r0
6.2_p20210109-r1
1
quay.io/keycloak/keycloak:26.009a381c715ab
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/keycloak/keycloak:26.0.74388e2379b7e
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/keycloak/keycloak:24.0.34d6f22991266
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/keycloak/keycloak:23.0.34f72a5b0c076
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/keycloak/keycloak:26.0.6a93d22e13b86
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/kiwigrid/k8s-sidecar:1.10.718feb3906286
ncurses@6.2_p20210109-r0
6.2_p20210109-r1
1
quay.io/kiwigrid/k8s-sidecar:1.15.61f025ae37b7b
ncurses@6.3_p20211120-r0
6.3_p20211120-r1
1
quay.io/kiwigrid/k8s-sidecar:1.15.1a25886092fa4
ncurses@6.3_p20211120-r0
6.3_p20211120-r1
1
quay.io/kube-ops/promtail:2.2.134de6387233b
ncurses@6.1+20181013-2+deb10u2
6.1+20181013-2+deb10u3
1
quay.io/kubevirt/kubemacpool:v0.45.0eebb65b8a12c
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/kubevirt/vm-console-proxy:v0.8.08d6b4b6e99bd
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/manusa/kubernetes_mcp_server:v0.0.47150f76e844d9
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/maximilianopizarro/openshift-integration-operator:v0.8.2d6fc43ac802e
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/maximilianopizarro/showroom-docs-mcp:latest1a6eff92827a
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/minio/mc:RELEASE.2024-01-11T05-49-32Z026ae522febc
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/minio/mc:RELEASE.2024-04-29T09-56-05Zc574fac67f60
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/minio/minio:RELEASE.2023-12-20T01-00-02Z5702ea361420
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/minio/minio:RELEASE.2024-01-11T07-46-16Z796f75ea413b
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/minio/minio:RELEASE.2024-06-04T19-20-08Zc6b68f158628
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/minio/operator:v7.1.1cd587f60c43d
ncurses@6.2-10.20210508.el9
0:6.2-10.20210508.el9_6.2
1
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
ncurses@6.1+20181013-2+deb10u2
6.1+20181013-2+deb10u3
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
ncurses@6.0+20160213-1ubuntu1
6.0+20160213-1ubuntu1+esm2
1
quay.io/netwarps/blockscoutbecd3e39360a
ncurses@6.3_p20211120-r0
6.3_p20211120-r1
1
quay.io/opsmxpublic/awsgit:v2-openssh0d21ba756f44
ncurses@6.3_p20211120-r0
6.3_p20211120-r1
1
quay.io/opsmxpublic/awsgit:v3-js15a6faada3d4
ncurses@6.2_p20210612-r0
6.2_p20210612-r1
1
quay.io/opsmxpublic/bitnami-kubectl:1.18.5a8b21cec412c
ncurses@6.1+20181013-2+deb10u2
6.1+20181013-2+deb10u3
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.