StackRadar

CVE-2022-29526

Medium

Advisory

Published 24 Jun 2022In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.3
base score, highest
EPSS
0.030
86th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,083
of 17,787 indexed, latest versions
Container images
1,187
deployed by those charts
Fix available
2 of 2
affected packages

golang.org/x/sys/unix has Incorrect privilege reporting in syscall

Carried by container images the latest versions of 1,083 of 17,787 indexed charts deploy, on 1,187 images.

Affected packageAffected versionsFixed inImages
golang.org/x/sysgolangv0.0.0-20180302081741-dd2ff4accc09, v0.0.0-20180810173357-98c5dad5d1a0, v0.0.0-20190209173611-3b5209105503, v0.0.0-20190215142949-d0b11bdaac8a+192 more0.0.0-20220412211240-33da011f77ad1,047
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+69 more1.17.101,023
OSV records
GHSA-p782-xgp4-8hr8GO-2022-0493
Also known as
BIT-golang-2022-29526

Charts affected

1,083 by stars
ChartLatestAffected imagesRadar Score
egressistio1.10.31 of 1See more

egress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
golang.org/x/sys@v0.0.0-20210320140829-1e4c9ba3b0c4
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

10,435
ingressistio1.10.31 of 1See more

ingress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
golang.org/x/sys@v0.0.0-20210320140829-1e4c9ba3b0c4
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

10,435
operatoristio1.10.31 of 1See more

operator istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
istio/operator:1.10.3655eefa11c84
golang.org/x/sys@v0.0.0-20210320140829-1e4c9ba3b0c4
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

10,716
istio-ratelimitistio-ratelimitVerified publisher0.0.51 of 2See more

istio-ratelimit istio-ratelimit 0.0.5

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
envoyproxy/ratelimit:4d2efd61ede09a75a84c
golang.org/x/sys@v0.0.0-20191120155948-bd437916bb0e
stdlib@go1.14.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,812
keydbkeydb-helmVerified publisher1.0.61 of 1See more

keydb keydb-helm 1.0.6

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,302
giteakeyporttech0.2.102 of 4See more

gitea keyporttech 0.2.10

2 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
gitea/gitea:1.12.485416d6f65fe
golang.org/x/sys@v0.0.0-20200615200032-f1bc736245b1
stdlib@go1.14.8
0.0.0-20220412211240-33da011f77ad
1.17.10
library/postgres:115d2aa4a7b5f9
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,408
kubefedkubefed0.10.01 of 2See more

kubefed kubefed 0.10.0

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/kubernetes-multicluster/kubefed:v0.10.0c4635c95730e
golang.org/x/sys@v0.0.0-20210817190340-bfb29a6856f2
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,419
mesherykubesphere-stable0.5.02 of 13See more

meshery kubesphere-stable 0.5.0

2 of the 13 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
layer5/meshery-cpx:stable-latest8c20a8a1d6a4
golang.org/x/sys@v0.0.0-20190422165155-953cdadca894
stdlib@go1.13.1
0.0.0-20220412211240-33da011f77ad
1.17.10
layer5/meshery-nsm:stable-latestebd6a8faf21f
golang.org/x/sys@v0.0.0-20201009025420-dfb3f7c4e634
stdlib@go1.15.12
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

24,690
aws-efs-csi-driverkubesphere-testVerified publisher0.1.01 of 3See more

aws-efs-csi-driver kubesphere-test 0.1.0

1 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
amazon/aws-efs-csi-driver:v0.3.0b55277652ea8
golang.org/x/sys@v0.0.0-20190616124812-15dcb6c0061f
stdlib@go1.13.4
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,605
kubemodkubmod0.5.22 of 2See more

kubemod kubmod 0.5.2

2 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
kubemod/kubemod:v0.19.11f8154f7e80c
stdlib@go1.18
1.17.10
kubemod/kubemod-crt:v1.3.0028347c9fa77
stdlib@go1.18.1
1.17.10

Open the chart page →

4,542
linstorkvaps1.14.04 of 11See more

linstor kvaps 1.14.0

4 of the 11 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/kvaps/linstor-controller:v1.14.000ce11c31087
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
stdlib@go1.15.14
0.0.0-20220412211240-33da011f77ad
1.17.10
ghcr.io/kvaps/linstor-csi:v1.14.0087618d16b83
golang.org/x/sys@v0.0.0-20191113165036-4c7a9d0fe056
stdlib@go1.15.14
0.0.0-20220412211240-33da011f77ad
1.17.10
ghcr.io/kvaps/linstor-ha-controller:v1.14.08e7b44bbd123
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
stdlib@go1.15.14
0.0.0-20220412211240-33da011f77ad
1.17.10
ghcr.io/kvaps/linstor-stork:v1.14.05e409a6332b4
golang.org/x/sys@v0.0.0-20210301091718-77cc2087c03b
stdlib@go1.15.14
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

15,551
landelijketabellencataloguslandelijketabellencatalogus1.0.01 of 3See more

landelijketabellencatalogus landelijketabellencatalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/landelijketabellencatalogus-php:latest26d91dcbba56
golang.org/x/sys@v0.0.0-20191022100944-742c48ecaeb7
stdlib@go1.13.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

7,510
kube-iptables-tailerlifen-chartsVerified publisher0.2.31 of 1See more

kube-iptables-tailer lifen-charts 0.2.3

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
honestica/kube-iptables-tailer:master-91a393242fb939
golang.org/x/sys@v0.0.0-20200930185726-fdedc70b468f
stdlib@go1.13.8
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

4,456
linkerd-jaegerlinkerd2-edgeVerified publisher30.14.11-edge1 of 4See more

linkerd-jaeger linkerd2-edge 30.14.11-edge

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
jaegertracing/all-in-one:1.3104d224a9999b
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

4,389
jspolicyloftVerified publisher0.2.21 of 1See more

jspolicy loft 0.2.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
loftsh/jspolicy:0.2.225deb9bd2683
golang.org/x/sys@v0.0.0-20211029165221-6e7872819dc8
0.0.0-20220412211240-33da011f77ad

Open the chart page →

2,309
vcluster-eksloftVerified publisher0.0.0-ci.31 of 4See more

vcluster-eks loft 0.0.0-ci.3

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
public.ecr.aws/eks-distro/etcd-io/etcd:v3.5.6-eks-1-24-7efa6dee17ed2
golang.org/x/sys@v0.0.0-20210615035016-665e8c7367d1
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,304
log2rbac-operatorlog2rbac-operator0.0.51 of 1See more

log2rbac-operator log2rbac-operator 0.0.5

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
jkremser/log2rbac:v0.0.5e35cf56ef183
stdlib@go1.17.6
1.17.10

Open the chart page →

1,938
logclilogcliVerified publisher0.1.01 of 1See more

logcli logcli 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
grafana/logcli:main-c90366d-amd643d85bb66e39b
golang.org/x/sys@v0.0.0-20210503173754-0981d6026fa6
stdlib@go1.16.2
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,947
voice-biometricslumenvox2.0.18 of 26See more

voice-biometrics lumenvox 2.0.1

8 of the 26 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.5.0904d08e9f701
golang.org/x/sys@v0.0.0-20200620081246-981b61492c35
stdlib@go1.15.7
0.0.0-20220412211240-33da011f77ad
1.17.10
library/traefik:v2.57d5a6ae66572
golang.org/x/sys@v0.0.0-20210817190340-bfb29a6856f2
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
lumenvox/cloud-init-tools:2.0.07ff037a71c50
stdlib@go1.17.3
1.17.10
lumenvox/cloud-license:2.0.09a69862e1248
golang.org/x/sys@v0.0.0-20210925032602-92d5a993a665
stdlib@go1.17.3
0.0.0-20220412211240-33da011f77ad
1.17.10
prom/pushgateway:v1.3.18305a33fb80a
golang.org/x/sys@v0.0.0-20201214210602-f9fddec55a1e
stdlib@go1.15.6
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
golang.org/x/sys@v0.0.0-20200420163511-1957bb5e6d1f
stdlib@go1.14.4
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/prometheus/node-exporter:v1.1.222fbde17ab64
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.15.8
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/prometheus/prometheus:v2.26.038d40a760569
golang.org/x/sys@v0.0.0-20210324051608-47abb6519492
stdlib@go1.16.2
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

71,216
goblackholemainVerified publisher0.0.41 of 1See more

goblackhole main 0.0.4

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
bedag/goblackhole:0.2.0447a88598f4c
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,972
mattermost-enterprise-editionmattermostVerified publisher2.6.1031 of 3See more

mattermost-enterprise-edition mattermost 2.6.103

1 of the 3 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2020-04-25T00-43-23Z1806872732e1
golang.org/x/sys@v0.0.0-20200323222414-85ca7c5b95cd
stdlib@go1.13.10
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,606
traefik-forward-authmesosphere0.3.102 of 2See more

traefik-forward-auth mesosphere 0.3.10

2 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
mesosphere/kubeaddons-addon-initializer:v0.5.15efa21defcbc
golang.org/x/sys@v0.0.0-20210112080510-489259a85091
stdlib@go1.15.11
0.0.0-20220412211240-33da011f77ad
1.17.10
mesosphere/traefik-forward-auth:3.1.05456581d7b76
golang.org/x/sys@v0.0.0-20190826190057-c7b8b68b1456
stdlib@go1.14.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,308
subspacemglants0.1.01 of 1See more

subspace mglants 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
subspacecommunity/subspace:1.5.0e2042b63fb35
golang.org/x/sys@v0.0.0-20200323222414-85ca7c5b95cd
stdlib@go1.14.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,254
librenmsmidokura-communityVerified publisher0.3.21 of 6See more

librenms midokura-community 0.3.2

1 of the 6 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
librenms/librenms:22.4.14f1f3d667cc7
golang.org/x/sys@v0.0.0-20210426230700-d19ff857e887
stdlib@go1.16.12
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

8,967
chartmuseummike75151.2.01 of 1See more

chartmuseum mike7515 1.2.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/helm/chartmuseum:v0.15.0c298183a5208
stdlib@go1.17.8
1.17.10

Open the chart page →

3,168
miniomilvus8.0.171 of 1See more

minio milvus 8.0.17

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
golang.org/x/sys@v0.0.0-20210119212857-b64e53b001e4
stdlib@go1.15.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

6,915
podsyncmy0nVerified publisher1.5.41 of 2See more

podsync my0n 1.5.4

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
tdeutsch/podsync:v2.4.2b67186f4c9a5
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
0.0.0-20220412211240-33da011f77ad

Open the chart page →

2,059
satisfactorynaj981.1.11 of 1See more

satisfactory naj98 1.1.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:v1.9.1199be1064b18
stdlib@go1.18.1
1.17.10

Open the chart page →

3,729
nats-account-servernatsVerified publisher0.8.11 of 1See more

nats-account-server nats 0.8.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
natsio/nats-account-server:1.0.0a3381560aab6
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,634
clowder2ncsaVerified publisher1.9.72 of 12See more

clowder2 ncsa 1.9.7

2 of the 12 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:5.0.103bb1deeaf9d0
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
bitnamilegacy/rabbitmq:3.10.88f7161d8ce19
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

37,441
ngrok-operatorngrok-operator1.1.01 of 2See more

ngrok-operator ngrok-operator 1.1.0

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
zufardhiyaulhaq/ngrok-operator:v1.3.07cf2ae3fb1fb
golang.org/x/sys@v0.0.0-20220330033206-e17cdc41300f
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,896
helm-composenousefreakVerified publisher0.1.31 of 2See more

helm-compose nousefreak 0.1.3

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
library/mariadb:10.8.2-focal490f01279be1
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

14,324
open5gs-webuiopen5gs-webuiVerified publisher2.3.11 of 2See more

open5gs-webui open5gs-webui 2.3.1

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:4.4.14fe2bd7b4036
golang.org/x/sys@v0.0.0-20200905004654-be1d3432aa8f
stdlib@go1.15.1
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,300
opikopikOfficialVerified publisher2.2.611 of 13See more

opik opik 2.2.61

1 of the 13 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
library/zookeeper:3.9.4dfa9ba46d14b
stdlib@go1.18.1
1.17.10

Open the chart page →

14,422
kubernetes-dashboard-proxyosc0.7.21 of 4See more

kubernetes-dashboard-proxy osc 0.7.2

1 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/oauth2-proxy/oauth2-proxy:v7.1.3ecd26b74a01f
golang.org/x/sys@v0.0.0-20201214210602-f9fddec55a1e
stdlib@go1.16
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

6,005
hlf-caowkin2.1.01 of 2See more

hlf-ca owkin 2.1.0

1 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
hyperledger/fabric-ca:1.5.1c7f3422ec1d5
golang.org/x/sys@v0.0.0-20201015000850-e3ed0017c211
stdlib@go1.15.7
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,424
hlf-ordowkin3.1.01 of 1See more

hlf-ord owkin 3.1.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
hyperledger/fabric-orderer:2.2.137294e05209b
golang.org/x/sys@v0.0.0-20190920190810-ef0ce1748380
stdlib@go1.14.4
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,350
hlf-peerowkin5.1.01 of 1See more

hlf-peer owkin 5.1.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
hyperledger/fabric-peer:2.2.1bf4995c86af6
golang.org/x/sys@v0.0.0-20190920190810-ef0ce1748380
stdlib@go1.14.4
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

3,688
prometheus-cachethqoxyno-zetaVerified publisher1.1.11 of 1See more

prometheus-cachethq oxyno-zeta 1.1.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
oxynozeta/prometheus-cachethq:1.1.131f11669d597
golang.org/x/sys@v0.0.0-20191029155521-f43be2a4598c
stdlib@go1.15.1
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,713
ngrok-operatorpaganuzzi0.0.21 of 1See more

ngrok-operator paganuzzi 0.0.2

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
ghcr.io/paganuzzi/ngrokoperator:latest5a10cd095699
golang.org/x/sys@v0.0.0-20200202164722-d101bd2416d5
stdlib@go1.15.12
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,811
patch-operatorpatch-operator0.1.112 of 2See more

patch-operator patch-operator 0.1.11

2 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
golang.org/x/sys@v0.0.0-20210124154548-22da62e12c0c
stdlib@go1.15.15
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/redhat-cop/patch-operator:v0.1.11030ade9b9428
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
0.0.0-20220412211240-33da011f77ad

Open the chart page →

7,833
pipelinewise-operatorpipelinewise-operatorVerified publisher0.5.11 of 1See more

pipelinewise-operator pipelinewise-operator 0.5.1

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
dirathea/pipelinewise-operator:v0.5.08d4c9f773ae1
golang.org/x/sys@v0.0.0-20210227040730-b0d1d43c014d
stdlib@go1.15.8
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,121
secrets-store-csi-driver-provider-awsportefaix-hub0.4.01 of 1See more

secrets-store-csi-driver-provider-aws portefaix-hub 0.4.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
public.ecr.aws/aws-secrets-manager/secrets-store-csi-driver-provider-aws:1.0.r2-2021.08.13.20.34-linux-amd6402aed3370fce
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.15.12
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,206
portraitportraitVerified publisher0.2.131 of 8See more

portrait portrait 0.2.13

1 of the 8 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
codercom/code-server:4.11.0-debian1e2cc688008e
stdlib@go1.14.4
1.17.10

Open the chart page →

31,949
postgres-backuppostgres-backup0.3.02 of 2See more

postgres-backup postgres-backup 0.3.0

2 of the 2 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
library/postgres:14.13162a6ead070
golang.org/x/sys@v0.0.0-20210817142637-7d9622a276b7
stdlib@go1.16.7
0.0.0-20220412211240-33da011f77ad
1.17.10
nerzhul/mc-arm64:2020.10.034215df511f31
golang.org/x/sys@v0.0.0-20200915084602-288bc346aa39
stdlib@go1.15.2
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

5,462
rethinkdbpozetron1.1.91 of 1See more

rethinkdb pozetron 1.1.9

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
pozetroninc/rethinkdb-cluster:v2.4.16b06a098f994
golang.org/x/sys@v0.0.0-20191120155948-bd437916bb0e
stdlib@go1.16.9
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

2,912
prometheus-druid-exporterprometheus-communityVerified publisher1.2.01 of 1See more

prometheus-druid-exporter prometheus-community 1.2.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
quay.io/opstree/druid-exporter:v0.119f01c9c5c2e3
golang.org/x/sys@v0.0.0-20200122134326-e047566fdf82
stdlib@go1.15.15
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

1,178
prometheusprometheus-worawutchan13.0.05 of 6See more

prometheus prometheus-worawutchan 13.0.0

5 of the 6 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
jimmidyson/configmap-reload:v0.4.017d34fd73f9e
golang.org/x/sys@v0.0.0-20200620081246-981b61492c35
stdlib@go1.14.4
0.0.0-20220412211240-33da011f77ad
1.17.10
prom/pushgateway:v1.3.0c0d39b8d4cfe
golang.org/x/sys@v0.0.0-20200625212154-ddb9806d33ae
stdlib@go1.15.2
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/prometheus/alertmanager:v0.21.024a5204b418e
golang.org/x/sys@v0.0.0-20200420163511-1957bb5e6d1f
stdlib@go1.14.4
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/prometheus/node-exporter:v1.0.1cf66a6bbd573
golang.org/x/sys@v0.0.0-20200602225109-6fdc65e7d980
stdlib@go1.14.4
0.0.0-20220412211240-33da011f77ad
1.17.10
quay.io/prometheus/prometheus:v2.22.1b899dbd1b901
golang.org/x/sys@v0.0.0-20201008064518-c1f3e3309c71
stdlib@go1.15.3
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

9,939
phpqonstruktVerified publisher0.2.01 of 1See more

php qonstrukt 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
qonstrukt/php:8.4-v8-apache089af7925aa1
golang.org/x/sys@v0.0.0-20200724161237-0e2f3a69832c
stdlib@go1.14.2
0.0.0-20220412211240-33da011f77ad
1.17.10

Open the chart page →

24,038
velero-s3-deploymentradar-baseVerified publisher0.4.22 of 4See more

velero-s3-deployment radar-base 0.4.2

2 of the 4 container images this version deploys carry CVE-2022-29526.

Container imageDigestPackageFixed in
velero/velero:v1.9.0277fbfaf8dcf
golang.org/x/sys@v0.0.0-20211019181941-9d821ace8654
stdlib@go1.18
0.0.0-20220412211240-33da011f77ad
1.17.10
velero/velero-plugin-for-aws:v1.5.03d2ea7aab32d
golang.org/x/sys@v0.0.0-20211019181941-9d821ace8654
0.0.0-20220412211240-33da011f77ad

Open the chart page →

4,798

Container images carrying it

1,187 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/salaboy/fmtok8s-email-service:v0.1.0-nativecf28472bc460
golang.org/x/sys@v0.0.0-20220412071739-889880a91fd5
0.0.0-20220412211240-33da011f77ad
1
ghcr.io/salesforce/sloop:sha-2ce8bbe119e24f24b1d
golang.org/x/sys@v0.0.0-20210603081109-ebe580a85c40
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
ghcr.io/sergelogvinov/keydb:6.3.376a19ddc3626
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.0.0-20220412211240-33da011f77ad
1
ghcr.io/sergelogvinov/postgresql:16.15fafb72e98f22
golang.org/x/sys@v0.0.0-20200223170610-d5e6a3e2c0ae
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
ghcr.io/shift/domain_exporter:v0.1.1347e27690a816
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
stdlib@go1.17.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
ghcr.io/snapp-incubator/health-exporter:0.3.252a0d8f6278c
golang.org/x/sys@v0.0.0-20210910150752-751e447fb3d0
stdlib@go1.17.2
0.0.0-20220412211240-33da011f77ad
1.17.10
1
ghcr.io/spidernet-io/spiderpool/spiderpool-agent:v1.2.08bb9411e47e0
golang.org/x/sys@v0.0.0-20210902050250-f475640dd07b
0.0.0-20220412211240-33da011f77ad
1
ghcr.io/spidernet-io/spiderpool/spiderpool-controller:v1.2.042304e3ed36e
golang.org/x/sys@v0.0.0-20210902050250-f475640dd07b
0.0.0-20220412211240-33da011f77ad
1
ghcr.io/stashed/stash-enterprise:v0.32.0e9bde36e34b7
golang.org/x/sys@v0.0.0-20210630005230-0f9fa26af87c
stdlib@go1.18
0.0.0-20220412211240-33da011f77ad
1.17.10
1
ghcr.io/stefanprodan/podinfo:6.1.3f25ebb9c6788
golang.org/x/sys@v0.0.0-20210603081109-ebe580a85c40
stdlib@go1.17.9
0.0.0-20220412211240-33da011f77ad
1.17.10
1
ghcr.io/storax/kubedoom:0.6.0851ba8c80b93
stdlib@go1.17.6
1.17.10
1
ghcr.io/substra/fabric-peer:0.2.4f681e0343a31
golang.org/x/sys@v0.0.0-20210420205809-ac73e9fd8988
0.0.0-20220412211240-33da011f77ad
1
ghcr.io/substra/fabric-tools:0.2.43491a0f31c4a
golang.org/x/sys@v0.0.0-20210420205809-ac73e9fd8988
stdlib@go1.15.7
0.0.0-20220412211240-33da011f77ad
1.17.10
1
ghcr.io/tarampampam/error-pages:2.6.013e73da04ee4
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
stdlib@go1.17.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
ghcr.io/tikalk/resource-manager:latest7f21d50e69cb
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
0.0.0-20220412211240-33da011f77ad
1
ghcr.io/wittdennis/calibre-web:1.1.1aa7d5d5dd6be
stdlib@go1.17.8
1.17.10
1
ghcr.io/wolveix/satisfactory-server:v1.9.10e0f2f8c97598
stdlib@go1.18.1
1.17.10
1
ghcr.io/wyrihaximusnet/kubernetes-redis-db-assignment-operator:v1.0.831060be60bec
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
stdlib@go1.16.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
ghcr.io/yasn77/pgbouncer:v0.0.6cc8c13550e44
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
0.0.0-20220412211240-33da011f77ad
1
mcr.microsoft.com/azure-application-gateway/kubernetes-ingress:1.6.0bccaa701e2df
stdlib@go1.17.3
1.17.10
1
mcr.microsoft.com/k8s/csi/azuredisk-csi:v1.1.1ec1803037ed9
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.15.4
0.0.0-20220412211240-33da011f77ad
1.17.10
1
mcr.microsoft.com/oss/kubernetes-csi/csi-attacher:v2.2.0f55f30876129
golang.org/x/sys@v0.0.0-20191220220014-0732a990476f
stdlib@go1.14
0.0.0-20220412211240-33da011f77ad
1.17.10
1
mcr.microsoft.com/oss/kubernetes-csi/csi-node-driver-registrar:v2.0.1fc5d14e9f26f
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
stdlib@go1.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
mcr.microsoft.com/oss/kubernetes-csi/csi-provisioner:v1.6.1667b1b1ea1e4
golang.org/x/sys@v0.0.0-20200122134326-e047566fdf82
stdlib@go1.15.2
0.0.0-20220412211240-33da011f77ad
1.17.10
1
mcr.microsoft.com/oss/kubernetes-csi/csi-resizer:v1.1.07997e0f236bc
golang.org/x/sys@v0.0.0-20201214210602-f9fddec55a1e
stdlib@go1.15.2
0.0.0-20220412211240-33da011f77ad
1.17.10
1
mcr.microsoft.com/oss/kubernetes-csi/livenessprobe:v2.2.0b7d82802cca8
golang.org/x/sys@v0.0.0-20201214210602-f9fddec55a1e
stdlib@go1.15.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
public.ecr.aws/aws-ec2/amazon-ec2-metadata-mock:v1.11.2dd02d3569da0
golang.org/x/sys@v0.0.0-20210823070655-63515b42dcdf
0.0.0-20220412211240-33da011f77ad
1
public.ecr.aws/aws-ec2/aws-node-termination-handler-2/controller:v2.0.0-beta9637c80dd23f
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.0.0-20220412211240-33da011f77ad
1
public.ecr.aws/aws-ec2/aws-node-termination-handler-2/webhook:v2.0.0-beta86b0f7243250
golang.org/x/sys@v0.0.0-20220227234510-4e6760a101f9
0.0.0-20220412211240-33da011f77ad
1
public.ecr.aws/aws-observability/aws-sigv4-proxy-admission-controller:1.067b89ae52240
golang.org/x/sys@v0.0.0-20200622214017-ed371f2e16b4
stdlib@go1.15.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
public.ecr.aws/aws-secrets-manager/secrets-store-csi-driver-provider-aws:1.0.r2-2021.08.13.20.34-linux-amd6402aed3370fce
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.15.12
0.0.0-20220412211240-33da011f77ad
1.17.10
1
public.ecr.aws/aws-secrets-manager/secrets-store-csi-driver-provider-aws:1.0.r1-10-g1942553-2021.06.04.00.07-linux-amd64b32c99e7bc45
golang.org/x/sys@v0.0.0-20201107080550-4d91cf3a1aaf
stdlib@go1.15.8
0.0.0-20220412211240-33da011f77ad
1.17.10
1
public.ecr.aws/groundcovercom/loki-proxy:0.1.1783d550ad813
golang.org/x/sys@v0.0.0-20220222172238-00053529121e
0.0.0-20220412211240-33da011f77ad
1
public.ecr.aws/j1r0q0g6/notebooks/notebook-controller:v1.4cac3ed9a9826
golang.org/x/sys@v0.0.0-20200323222414-85ca7c5b95cd
stdlib@go1.15.15
0.0.0-20220412211240-33da011f77ad
1.17.10
1
public.ecr.aws/j1r0q0g6/training/training-operator:760ac1171dd30039a7363ffa03c77454bd714da5ae59d222fd87
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
stdlib@go1.14.9
0.0.0-20220412211240-33da011f77ad
1.17.10
1
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
golang.org/x/sys@v0.0.0-20220114195835-da31bd327af9
stdlib@go1.16.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
golang.org/x/sys@v0.0.0-20220209214540-3681064d5158
stdlib@go1.18.1
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
golang.org/x/sys@v0.0.0-20211216021012-1d35b9e2eb4e
stdlib@go1.16.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
stdlib@go1.18.1
1.17.10
1
quay.io/backube/scribe:0.2.0cdefc81c6b2e
golang.org/x/sys@v0.0.0-20201112073958-5cba982894dd
stdlib@go1.15.12
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/backube/volsync:0.16.00d03a6aad575
golang.org/x/sys@v0.0.0-20220310020820-b874c991c1a5
0.0.0-20220412211240-33da011f77ad
1
quay.io/cephcsi/cephcsi:v3.5.128a674af1df2
golang.org/x/sys@v0.0.0-20211029165221-6e7872819dc8
stdlib@go1.17.5
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/chriscowley/openldap_exporter:v2.1.16c308e9732e1
stdlib@go1.15.7
1.17.10
1
quay.io/cilium/tetragon-ci:b6f3056a3f6cf05e366a3e07348f7c0b6265a60f5efd991d218b
golang.org/x/sys@v0.0.0-20210902050250-f475640dd07b
0.0.0-20220412211240-33da011f77ad
1
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
golang.org/x/sys@v0.0.0-20210831042530-f4d43177bf5e
stdlib@go1.18.1
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
golang.org/x/sys@v0.0.0-20210225134936-a50acf3fe073
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/cortexproject/cortex:v1.9.05d1c2cf4c538
golang.org/x/sys@v0.0.0-20210324051608-47abb6519492
stdlib@go1.16.3
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/ddn/exascaler-csi-file-driver:v2.2.6fe2e2e5a2751
golang.org/x/sys@v0.0.0-20191220220014-0732a990476f
0.0.0-20220412211240-33da011f77ad
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
golang.org/x/sys@v0.0.0-20210510120138-977fb7262007
stdlib@go1.16.6
0.0.0-20220412211240-33da011f77ad
1.17.10
1
quay.io/evl.ms/pgbouncer-exporter:0.4.074f919b78494
golang.org/x/sys@v0.0.0-20200615200032-f1bc736245b1
stdlib@go1.14.4
0.0.0-20220412211240-33da011f77ad
1.17.10
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.