StackRadar

CVE-2022-29526

Medium

Advisory

Published 24 Jun 2022In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.030
86th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,076
of 17,781 indexed, latest versions
Container images
1,173
deployed by those charts
Fix available
2 of 2
affected packages

golang.org/x/sys/unix has Incorrect privilege reporting in syscall

Carried by container images the latest versions of 1,076 of 17,781 indexed charts deploy, on 1,173 images.

Affected packageAffected versionsFixed inImages
golang.org/x/sysgolangv0.0.0-20180302081741-dd2ff4accc09, v0.0.0-20180810173357-98c5dad5d1a0, v0.0.0-20190209173611-3b5209105503, v0.0.0-20190215142949-d0b11bdaac8a+192 more0.0.0-20220412211240-33da011f77ad1,033
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+69 more1.17.101,019
OSV records
GHSA-p782-xgp4-8hr8GO-2022-0493
Also known as
BIT-golang-2022-29526

Charts affected

1,076 by stars
ChartLatestAffected imagesRadar Score
intel-gpu-plugingeek-cookbookVerified publisher4.4.21 of 1See more

intel-gpu-plugin geek-cookbook 4.4.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
intel/intel-gpu-plugin:0.20.0143f0a45e174
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.15.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,738
kamu-api-serverkamuVerified publisher0.89.01 of 1See more

kamu-api-server kamu 0.89.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
golang.org/x/sys@v0.0.0-20210809222454-d867a43fc93e
stdlib@go1.15.2
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

6,307
permission-managerkfirfer1.0.71 of 1See more

permission-manager kfirfer 1.0.7

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/sighup/permission-manager:v1.7.1-rc1f5e6a5dcee33
golang.org/x/sys@v0.0.0-20201223074533-0d417f636930
stdlib@go1.16.8
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,266
kubeflowkubeflow1.6.224 of 45See more

kubeflow kubeflow 1.6.2

24 of the 45 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
istio/proxyv2:1.9.687a9db561d2e
golang.org/x/sys@v0.0.0-20201214210602-f9fddec55a1e
stdlib@go1.15.13
0.0.0-20220412211240-33da011f77ad
1.17.10
kserve/kserve-controller:v0.8.0f0692a9ea09f
golang.org/x/sys@v0.0.0-20211124211545-fe61309f8881
stdlib@go1.17.7
0.0.0-20220412211240-33da011f77ad
1.17.10
kubeflownotebookswg/kfam:v1.6.1f226fb44db57
golang.org/x/sys@v0.0.0-20200323222414-85ca7c5b95cd
0.0.0-20220412211240-33da011f77ad
kubeflownotebookswg/notebook-controller:v1.6.185e2e685abd6
golang.org/x/sys@v0.0.0-20211029165221-6e7872819dc8
0.0.0-20220412211240-33da011f77ad
kubeflownotebookswg/poddefaults-webhook:v1.6.17d42600e1524
golang.org/x/sys@v0.0.0-20211029165221-6e7872819dc8
0.0.0-20220412211240-33da011f77ad
kubeflownotebookswg/profile-controller:v1.6.19f01767a460f
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
0.0.0-20220412211240-33da011f77ad
kubeflownotebookswg/tensorboard-controller:v1.6.182ffdd2da285
golang.org/x/sys@v0.0.0-20211029165221-6e7872819dc8
0.0.0-20220412211240-33da011f77ad
metacontrollerio/metacontroller:v2.0.4897c9601d2cc
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
gcr.io/knative-releases/knative.dev/net-istio/cmd/controller:v1.2.0f253b82941c2
golang.org/x/sys@v0.0.0-20211124211545-fe61309f8881
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
gcr.io/knative-releases/knative.dev/net-istio/cmd/webhook:v1.2.0a705c1ea8e9e
golang.org/x/sys@v0.0.0-20211124211545-fe61309f8881
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
gcr.io/knative-releases/knative.dev/serving/cmd/activator:v1.2.593ff6e693577
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
gcr.io/knative-releases/knative.dev/serving/cmd/autoscaler:v1.2.5007820fdb75b
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
gcr.io/knative-releases/knative.dev/serving/cmd/controller:v1.2.575cfdcfa050a
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mapping:v1.2.523baa1932232
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
gcr.io/knative-releases/knative.dev/serving/cmd/domain-mapping-webhook:v1.2.5847bb97e3844
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
gcr.io/knative-releases/knative.dev/serving/cmd/webhook:v1.2.59084ea8498ea
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
gcr.io/ml-pipeline/api-server:2.0.0-alpha.5dc6ca05bb94f
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
gcr.io/ml-pipeline/cache-server:2.0.0-alpha.583e79c709df3
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
gcr.io/ml-pipeline/mysql:5.7-debiandf28187b5455
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
gcr.io/ml-pipeline/persistenceagent:2.0.0-alpha.500db9796a37b
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
gcr.io/ml-pipeline/scheduledworkflow:2.0.0-alpha.5795a0c8a0e13
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
gcr.io/ml-pipeline/viewer-crd-controller:2.0.0-alpha.534403f9f94be
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
gcr.io/ml-pipeline/workflow-controller:v3.3.8-license-compliance6c8e4e2a6443
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
0.0.0-20220412211240-33da011f77ad
quay.io/dexidp/dex:v2.24.0c9b7f6d0d953
golang.org/x/sys@v0.0.0-20200122134326-e047566fdf82
stdlib@go1.13.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

96,941
openelbkubesphere-stable0.5.02 of 2See more

openelb kubesphere-stable 0.5.0

2 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
kubesphere/openelb:v0.5.0b5b665c4672c
golang.org/x/sys@v0.0.0-20210119212857-b64e53b001e4
stdlib@go1.15.15
0.0.0-20220412211240-33da011f77ad
1.17.10
kubespheredev/kube-webhook-certgen:v1.1.123a03c9c381f
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
stdlib@go1.16.9
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

4,329
open5gsopen5gsVerified publisher2.3.41 of 5See more

open5gs open5gs 2.3.4

1 of the 5 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:4.4.14fe2bd7b4036
golang.org/x/sys@v0.0.0-20200905004654-be1d3432aa8f
stdlib@go1.15.1
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

9,261
rke2-multusrke2-charts3.7.1-build20210416012 of 2See more

rke2-multus rke2-charts 3.7.1-build2021041601

2 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
rancher/hardened-cni-plugins:v0.9.1-build20210414be3c1d469bf7
golang.org/x/sys@v0.0.0-20201117170446-d9b008d0a637
0.0.0-20220412211240-33da011f77ad
rancher/hardened-multus-cni:v3.7.1-build202104168eb8092f0728
golang.org/x/sys@v0.0.0-20200930185726-fdedc70b468f
0.0.0-20220412211240-33da011f77ad

Open the chart page →

4,519
dexwiremindVerified publisher2.15.71 of 2See more

dex wiremind 2.15.7

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/dexidp/dex:v2.24.0c9b7f6d0d953
golang.org/x/sys@v0.0.0-20200122134326-e047566fdf82
stdlib@go1.13.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

13,562
eshoponabpabp-charts1.0.01 of 15See more

eshoponabp abp-charts 1.0.0

1 of the 15 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
library/postgres:14.13162a6ead070
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

19,799
ansible-semaphoreansible-semaphore0.1.01 of 1See more

ansible-semaphore ansible-semaphore 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ansiblesemaphore/semaphore:v2.8.5303d1f8684027
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

4,019
aperture-controlleraperture2.34.02 of 5See more

aperture-controller aperture 2.34.0

2 of the 5 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
golang.org/x/sys@v0.0.0-20200620081246-981b61492c35
stdlib@go1.15.7
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/prometheus/prometheus:v2.33.591100b06e86d
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

4,663
k8upappuio2.0.51 of 1See more

k8up appuio 2.0.5

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/k8up-io/k8up:v2.3.257419b6d3830
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
stdlib@go1.18
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,300
openshift-consoleav1o-chartsVerified publisher0.3.61 of 1See more

openshift-console av1o-charts 0.3.6

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.16.9
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

9,052
aws-calicoaws0.3.111 of 1See more

aws-calico aws 0.3.11

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/tigera/operator:v1.20.1379efe0c2541
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.15.2
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,250
cert-managerchoerodon1.8.24 of 4See more

cert-manager choerodon 1.8.2

4 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/jetstack/cert-manager-cainjector:v1.8.2c010246124c2
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
0.0.0-20220412211240-33da011f77ad
quay.io/jetstack/cert-manager-controller:v1.8.2a20c44021a5d
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
0.0.0-20220412211240-33da011f77ad
quay.io/jetstack/cert-manager-ctl:v1.8.281b2d775edad
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
0.0.0-20220412211240-33da011f77ad
quay.io/jetstack/cert-manager-webhook:v1.8.2ada7edd90bec
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
0.0.0-20220412211240-33da011f77ad

Open the chart page →

7,775
hellocloudechoVerified publisher0.1.21 of 1See more

hello cloudecho 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
cloudecho/hello:0.1.0f76ede067ab9
stdlib@go1.16.6
1.17.10

Open the chart page →

1,817
cluster-registrycluster-registry-controller0.2.121 of 1See more

cluster-registry cluster-registry-controller 0.2.12

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/cisco-open/cluster-registry-controller:v0.2.12937eff91df1e
stdlib@go1.18
1.17.10

Open the chart page →

1,707
core-dump-handlercore-dump-handler9.0.01 of 1See more

core-dump-handler core-dump-handler 9.0.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/icdh/core-dump-handler:v9.0.0cc79b9e2a1c8
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,080
listmonkdeliveryheroVerified publisher0.1.121 of 1See more

listmonk deliveryhero 0.1.12

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
listmonk/listmonk:v2.1.0d2eac77ddfad
golang.org/x/sys@v0.0.0-20211205182925-97ca703d548d
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,537
prometheus-locust-exporterdeliveryheroVerified publisher1.2.31 of 1See more

prometheus-locust-exporter deliveryhero 1.2.3

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
containersol/locust_exporter:v0.4.1a914972d19ad
golang.org/x/sys@v0.0.0-20201214210602-f9fddec55a1e
stdlib@go1.15.8
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,276
imagepullsecret-patcherempathyco1.0.01 of 1See more

imagepullsecret-patcher empathyco 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/titansoft/imagepullsecret-patcher:v0.1421e6d6a155dc
golang.org/x/sys@v0.0.0-20190826190057-c7b8b68b1456
stdlib@go1.13.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,271
keydbfinkinfridomVerified publisher0.48.31 of 1See more

keydb finkinfridom 0.48.3

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,264
blockygeek-cookbookVerified publisher10.5.21 of 1See more

blocky geek-cookbook 10.5.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/0xerr0r/blocky:v0.18b15824464acb
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
stdlib@go1.17.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,030
error-pagesgeek-cookbookVerified publisher1.2.21 of 1See more

error-pages geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/tarampampam/error-pages:2.6.013e73da04ee4
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,110
mealiegeek-cookbookVerified publisher5.1.21 of 2See more

mealie geek-cookbook 5.1.2

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
hkotel/mealie:frontend-v1.0.0beta-23c04c0e85039
golang.org/x/sys@v0.0.0-20210915083310-ed5796bab164
0.0.0-20220412211240-33da011f77ad

Open the chart page →

7,579
multusgeek-cookbookVerified publisher3.5.22 of 3See more

multus geek-cookbook 3.5.2

2 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/cni-plugins:v0.9.1241592d93640
golang.org/x/sys@v0.0.0-20201117170446-d9b008d0a637
stdlib@go1.15.8
0.0.0-20220412211240-33da011f77ad
1.17.10
ghcr.io/k8snetworkplumbingwg/multus-cni:v3.7.1e72aa733faf2
golang.org/x/sys@v0.0.0-20200930185726-fdedc70b468f
stdlib@go1.13.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

4,906
network-ups-toolsgeek-cookbookVerified publisher6.4.21 of 1See more

network-ups-tools geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/network-ups-tools:v2.7.4-2479-g86a32237cbd5d4cc1245
golang.org/x/sys@v0.0.0-20191026070338-33540a1f6037
stdlib@go1.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

13,950
signal-cli-rest-apigeek-cookbookVerified publisher1.2.21 of 1See more

signal-cli-rest-api geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
bbernhard/signal-cli-rest-api:0.57549ad08d7e14
golang.org/x/sys@v0.0.0-20200323222414-85ca7c5b95cd
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

10,154
smarter-device-managergeek-cookbookVerified publisher6.5.21 of 1See more

smarter-device-manager geek-cookbook 6.5.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
registry.gitlab.com/arm-research/smarter/smarter-device-manager:v1.20.7864fc338571e
golang.org/x/sys@v0.0.0-20210423082822-04245dca01da
stdlib@go1.16.4
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,330
statpinggeek-cookbookVerified publisher6.2.01 of 2See more

statping geek-cookbook 6.2.0

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
statping/statping:v0.90.74e874da513a5c
golang.org/x/sys@v0.0.0-20200724161237-0e2f3a69832c
stdlib@go1.14.13
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,371
syncthinggeek-cookbookVerified publisher3.5.21 of 1See more

syncthing geek-cookbook 3.5.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
syncthing/syncthing:1.18.2966433161272
golang.org/x/sys@v0.0.0-20210819135213-f52c844e1c1c
stdlib@go1.17
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,610
tautulligeek-cookbookVerified publisher11.4.21 of 1See more

tautulli geek-cookbook 11.4.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
golang.org/x/sys@v0.0.0-20191026070338-33540a1f6037
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

10,628
traefik-forward-authgeek-cookbookVerified publisher2.2.21 of 1See more

traefik-forward-auth geek-cookbook 2.2.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
thomseddon/traefik-forward-auth:2.2.0e875194d67e2
golang.org/x/sys@v0.0.0-20190813064441-fde4db37ae7a
stdlib@go1.13.12
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,234
nzbhydra2halkeye2.30.11 of 2See more

nzbhydra2 halkeye 2.30.1

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
binhex/arch-nzbhydra2:3.1.0-1-01fb8952921ab6
stdlib@go1.14
1.17.10

Open the chart page →

6,711
unifi-pollerhalkeye0.1.21 of 1See more

unifi-poller halkeye 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
golift/unifi-poller:2.0.0cafac968b540
stdlib@go1.13.7
1.17.10

Open the chart page →

1,654
health-exporterhealth-exporterVerified publisher0.3.41 of 1See more

health-exporter health-exporter 0.3.4

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/snapp-incubator/health-exporter:0.3.252a0d8f6278c
golang.org/x/sys@v0.0.0-20210910150752-751e447fb3d0
stdlib@go1.17.2
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,558
frpc-ingressinfinity-server0.4.11 of 1See more

frpc-ingress infinity-server 0.4.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
springhack/frpc_ingress:latest4aceb821da88
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
stdlib@go1.17.2
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,622
coreinstill-aiOfficialVerified publisher0.1.751 of 15See more

core instill-ai 0.1.75

1 of the 15 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
library/influxdb:2.3.0-alpined7f5dd5f70e2
golang.org/x/sys@v0.0.0-20220319134239-a9b59b0215f8
stdlib@go1.17.2
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

30,816
jenkins-operatorjenkins0.8.11 of 1See more

jenkins-operator jenkins 0.8.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/jenkins-kubernetes-operator/operator:v0.8.171cb50263c3b
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.15.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,211
calibre-webk8s-home-lab-repo9.1.11 of 1See more

calibre-web k8s-home-lab-repo 9.1.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/calibre-web:0.6.267c0464228f2f
stdlib@go1.17.8
1.17.10

Open the chart page →

4,477
kraken-cikraken-ciVerified publisher1.7.361 of 10See more

kraken-ci kraken-ci 1.7.36

1 of the 10 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
library/postgres:115d2aa4a7b5f9
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

7,273
skywalkingkubesphere-testVerified publisher3.1.02 of 4See more

skywalking kubesphere-test 3.1.0

2 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
apache/skywalking-oap-server:8.1.0-es7641237e0299b
golang.org/x/sys@v0.0.0-20200116001909-b77594299b42
stdlib@go1.13.3
0.0.0-20220412211240-33da011f77ad
1.17.10
apache/skywalking-ui:8.1.067d50e4deff4
golang.org/x/sys@v0.0.0-20200116001909-b77594299b42
stdlib@go1.13.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

18,042
kubeviouskubevious1.2.22 of 7See more

kubevious kubevious 1.2.2

2 of the 7 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
library/mysql:8.0.303c1aab708f6e
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
redislabs/redisearch:2.4.1433561794c5c8
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

14,204
vcluster-k8sloftVerified publisher0.0.0-ci.31 of 4See more

vcluster-k8s loft 0.0.0-ci.3

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
registry.k8s.io/etcd:3.5.6-0dd75ec974b0a
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,570
rclonemglants2.3.41 of 1See more

rclone mglants 2.3.4

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
rclone/rclone:1.57.01e6eeabddc01
golang.org/x/sys@v0.0.0-20210820121016-41cdb8703e55
stdlib@go1.17.2
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,743
move2kubemove2kube0.3.151 of 1See more

move2kube move2kube 0.3.15

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/konveyor/move2kube-ui:latestec6ab507c5da
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
0.0.0-20220412211240-33da011f77ad

Open the chart page →

3,793
keycloak-operatornewsaktuell0.1.71 of 1See more

keycloak-operator newsaktuell 0.1.7

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:19.0.3-legacy09d52508fee9
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.13.8
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,067
kobotoolboxone-acre-fundVerified publisher0.7.41 of 9See more

kobotoolbox one-acre-fund 0.7.4

1 of the 9 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
enketo/enketo-express:3.0.4dcad9c2273f6
golang.org/x/sys@v0.0.0-20210908233432-aa78b53d3365
stdlib@go1.17.1
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

18,517
oesopsmxVerified publisher4.0.325 of 25See more

oes opsmx 4.0.32

5 of the 25 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2020-11-25T23-04-07Zbf85c57cdfcc
golang.org/x/sys@v0.0.0-20201013132646-2da7054afaeb
stdlib@go1.15.5
0.0.0-20220412211240-33da011f77ad
1.17.10
minio/minio:RELEASE.2020-12-03T05-49-24Z053f103f4894
golang.org/x/sys@v0.0.0-20200915084602-288bc346aa39
stdlib@go1.15.5
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/opsmxpublic/awsgit:v2-openssh0d21ba756f44
golang.org/x/sys@v0.0.0-20210809222454-d867a43fc93e
stdlib@go1.17.2
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/opsmxpublic/awsgit:v3-js15a6faada3d4
golang.org/x/sys@v0.0.0-20210317225723-c4fcb01b228e
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
golang.org/x/sys@v0.0.0-20190910064555-bbd175535a8b
stdlib@go1.13.1
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

107,811
ipmi-exporterpnnl-miscscripts0.1.151 of 1See more

ipmi-exporter pnnl-miscscripts 0.1.15

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
pnnlmiscscripts/ipmi-exporter:1.2.0-181e18992d8e3
golang.org/x/sys@v0.0.0-20200420163511-1957bb5e6d1f
stdlib@go1.13.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,995

Container images carrying it

1,173 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/devtron/calico-networking:kube-controllers-v3.19.12ff71ba65cd7
golang.org/x/sys@v0.0.0-20210225134936-a50acf3fe073
stdlib@go1.15.2
0.0.0-20220412211240-33da011f77ad
1.17.10
3
quay.io/devtron/calico-networking:cni-v3.19.151f294c56842
golang.org/x/sys@v0.0.0-20210225134936-a50acf3fe073
stdlib@go1.15.2
0.0.0-20220412211240-33da011f77ad
1.17.10
3
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
golang.org/x/sys@v0.0.0-20210225134936-a50acf3fe073
stdlib@go1.15.2
0.0.0-20220412211240-33da011f77ad
1.17.10
3
quay.io/devtron/calico-networking:pod2daemon-flexvol-v3.19.1c1f36b6e18e0
stdlib@go1.15.2
1.17.10
3
quay.io/devtron/clair:4.3.675fb847ac045
golang.org/x/sys@v0.0.0-20210809222454-d867a43fc93e
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
3
quay.io/devtron/discord-alertmanager:ceceb475-65-35203586419ca31
stdlib@go1.18.1
1.17.10
3
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
stdlib@go1.18
0.0.0-20220412211240-33da011f77ad
1.17.10
3
quay.io/devtron/image-scanner:b278f42b-334-1111988c64b1b6ec8
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
stdlib@go1.16.10
0.0.0-20220412211240-33da011f77ad
1.17.10
3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.14.15
0.0.0-20220412211240-33da011f77ad
1.17.10
3
quay.io/devtron/nats-server-config-reloader:0.6.2b5252e783fb2
golang.org/x/sys@v0.0.0-20200918174421-af09f7315aff
stdlib@go1.15.14
0.0.0-20220412211240-33da011f77ad
1.17.10
3
quay.io/devtron/prometheus-nats-exporter:0.9.094044746cbce
golang.org/x/sys@v0.0.0-20210218155724-8ebf48af031b
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10
3
quay.io/devtron/winter-soldier:abf5a822-196-14744093844c46c19
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
0.0.0-20220412211240-33da011f77ad
3
quay.io/dexidp/dex:v2.25.07bcf286807b8
golang.org/x/sys@v0.0.0-20200122134326-e047566fdf82
stdlib@go1.14.9
0.0.0-20220412211240-33da011f77ad
1.17.10
3
quay.io/kubernetes_incubator/nfs-provisioner:v2.3.0f402e6039b3c
golang.org/x/sys@v0.0.0-20190801041406-cbf593c0f2f3
stdlib@go1.13.4
0.0.0-20220412211240-33da011f77ad
1.17.10
3
quay.io/oliver006/redis_exporter:v1.35.1908dbee5c546
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
stdlib@go1.17.7
0.0.0-20220412211240-33da011f77ad
1.17.10
3
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.15.8
0.0.0-20220412211240-33da011f77ad
1.17.10
3
quay.io/prometheus/node-exporter:v1.2.2a990408ed288
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
3
quay.io/prometheus-operator/prometheus-operator:v0.50.0ab4f480f2cc6
golang.org/x/sys@v0.0.0-20210616094352-59db8d763f22
stdlib@go1.16
0.0.0-20220412211240-33da011f77ad
1.17.10
3
quay.io/prometheus/prometheus:v2.26.038d40a760569
golang.org/x/sys@v0.0.0-20210324051608-47abb6519492
stdlib@go1.16.2
0.0.0-20220412211240-33da011f77ad
1.17.10
3
quay.io/prometheus/prometheus:v2.31.1a8779cfe553e
golang.org/x/sys@v0.0.0-20211020174200-9d6173849985
stdlib@go1.17.3
0.0.0-20220412211240-33da011f77ad
1.17.10
3
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.15.15
0.0.0-20220412211240-33da011f77ad
1.17.10
3
quay.io/sighup/permission-manager:v1.7.1-rc1f5e6a5dcee33
golang.org/x/sys@v0.0.0-20201223074533-0d417f636930
stdlib@go1.16.8
0.0.0-20220412211240-33da011f77ad
1.17.10
3
registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8c825f3d5e28b
golang.org/x/sys@v0.0.0-20190924154521-2837fb4f24fe
stdlib@go1.16.2
0.0.0-20220412211240-33da011f77ad
1.17.10
3
1password/scim:v2.3.129d0c6cb67eb
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
stdlib@go1.16.8
0.0.0-20220412211240-33da011f77ad
1.17.10
2
abutaha/aws-es-proxy:v1.1190ed2d1dfc8
golang.org/x/sys@v0.0.0-20190531175056-4c3a928424d2
stdlib@go1.14.1
0.0.0-20220412211240-33da011f77ad
1.17.10
2
bitnamilegacy/mongodb:4.4.14fe2bd7b4036
golang.org/x/sys@v0.0.0-20200905004654-be1d3432aa8f
stdlib@go1.15.1
0.0.0-20220412211240-33da011f77ad
1.17.10
2
bitnamilegacy/postgresql:14.4.0-debian-11-r237e7ebb082031
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
2
cesanta/docker_auth:1.6.04d16885f3d4c
golang.org/x/sys@v0.0.0-20190624142023-c5567b49c5d0
stdlib@go1.13.7
0.0.0-20220412211240-33da011f77ad
1.17.10
2
chankh/k8s-cloudwatch-adapter:v0.9.0963c44c7f8b1
golang.org/x/sys@v0.0.0-20190826190057-c7b8b68b1456
stdlib@go1.14.5
0.0.0-20220412211240-33da011f77ad
1.17.10
2
containersol/locust_exporter:v0.4.1a914972d19ad
golang.org/x/sys@v0.0.0-20201214210602-f9fddec55a1e
stdlib@go1.15.8
0.0.0-20220412211240-33da011f77ad
1.17.10
2
crate/crate_adapter:latestb8d89fa5d19b
golang.org/x/sys@v0.0.0-20210423082822-04245dca01da
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10
2
cs3org/revad:v1.19.03b57a34a7dfd
stdlib@go1.17.3
1.17.10
2
csiplugin/csi-qingcloud:v1.4.00766163dc046
golang.org/x/sys@v0.0.0-20190801041406-cbf593c0f2f3
0.0.0-20220412211240-33da011f77ad
2
danielfm/aws-limits-exporter:0.6.07152b84e57cb
stdlib@go1.17.2
1.17.10
2
datawire/aes:1.14.48588eafe6862
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.15
0.0.0-20220412211240-33da011f77ad
1.17.10
2
dmilhdef/missing-container-metrics:v0.21.0fada1a6e7638
golang.org/x/sys@v0.0.0-20210305230114-8fe3ee5dd75b
stdlib@go1.16.2
0.0.0-20220412211240-33da011f77ad
1.17.10
2
drone/drone-runner-kube:1.0.0-rc.34359bf2bb3dc
golang.org/x/sys@v0.0.0-20210426230700-d19ff857e887
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10
2
eqalpha/keydb:latest6537505c4235
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
2
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
2
friendsofgo/killgrave:0.4.139cfbecca342
stdlib@go1.16.3
1.17.10
2
garugaru/aws-cloudwatch-exporter:latest541852cafda5
golang.org/x/sys@v0.0.0-20200615200032-f1bc736245b1
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10
2
goelankit/cortex-gateway:v1.1.00d9a82dcf026
golang.org/x/sys@v0.0.0-20220405210540-1e041c57c461
stdlib@go1.18
0.0.0-20220412211240-33da011f77ad
1.17.10
2
gotson/komga:1.26.36c2a967bbe9a
stdlib@go1.17.8
1.17.10
2
governify/dashboard:lateste83a17ba5038
golang.org/x/sys@v0.0.0-20210806184541-e5e7981a1069
stdlib@go1.17
0.0.0-20220412211240-33da011f77ad
1.17.10
2
grafana/agent-operator:v0.25.1a136c6208aa3
stdlib@go1.18
1.17.10
2
grafana/grafana:8.5.042d3e6bc1865
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
stdlib@go1.17.9
0.0.0-20220412211240-33da011f77ad
1.17.10
2
grafana/grafana:7.3.5511bc20bfcd1
golang.org/x/sys@v0.0.0-20201022201747-fb209a7c41cd
stdlib@go1.15.5
0.0.0-20220412211240-33da011f77ad
1.17.10
2
grafana/loki:1.5.0922b3f412fdd
golang.org/x/sys@v0.0.0-20200217220822-9197077df867
stdlib@go1.13.11
0.0.0-20220412211240-33da011f77ad
1.17.10
2
grafana/loki:2.5.0f9ef133793af
golang.org/x/sys@v0.0.0-20220222172238-00053529121e
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
2
grafana/promtail:1.5.046e88d390cd6
golang.org/x/sys@v0.0.0-20200217220822-9197077df867
stdlib@go1.13.11
0.0.0-20220412211240-33da011f77ad
1.17.10
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.