StackRadar

CVE-2022-29824

High

Advisory

Published 3 May 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.4
base score, highest
EPSS
0.038
89th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
659
of 17,787 indexed, latest versions
Container images
577
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: libxml2 security update

Carried by container images the latest versions of 659 of 17,787 indexed charts deploy, on 577 images.

Affected packageAffected versionsFixed inImages
libxml2rpm2.9.7-5.el8, 2.9.7-7.el8, 2.9.7-8.el8, 2.9.7-9.el8+4 more0:2.9.7-13.el8_6.1, 2.9.14-1.171
libxml2deb2.9.1+dfsg1-3ubuntu4.3, 2.9.1+dfsg1-3ubuntu4.4, 2.9.1+dfsg1-3ubuntu4.12, 2.9.3+dfsg1-1ubuntu0.2+23 more2.9.1+dfsg1-3ubuntu4.13+esm3, 2.9.3+dfsg1-1ubuntu0.7+esm2, 2.9.4+dfsg1-2.2+deb9u7, 2.9.4+dfsg1-6.1ubuntu1.6+4 more361
libxml2apk2.9.10-r4, 2.9.10-r5, 2.9.10-r6, 2.9.10-r7+4 more2.9.14-r0145
OSV records
RHSA-2022:5317ALPINE-CVE-2022-29824UBUNTU-CVE-2022-29824DLA-3012-1DSA-5142-1openSUSE-SU-2024:12043-1
Also known as
USN-5422-1

Charts affected

659 by stars
ChartLatestAffected imagesRadar Score
powerdnsadminwitcom-gmbh0.3.41 of 1See more

powerdnsadmin witcom-gmbh 0.3.4

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
libxml2@2.9.12-r0
2.9.14-r0

Open the chart page →

2,643
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
libxml2@2.9.7-12.el8_5
0:2.9.7-13.el8_6.1

Open the chart page →

11,592
myfirstchartww-helm-charts-repo0.1.01 of 1See more

myfirstchart ww-helm-charts-repo 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginx:0.1.0205961b09a80
libxml2@2.9.4+dfsg1-7+b3
2.9.4+dfsg1-7+deb10u4

Open the chart page →

1,138
default-backendwyrihaximusnetVerified publisher1.1.01 of 1See more

default-backend wyrihaximusnet 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
ghcr.io/wyrihaximusnet/default-backend:randomb24e63efd841
libxml2@2.9.12-r1
2.9.14-r0

Open the chart page →

2,535
upsourcexykongVerified publisher0.1.11 of 1See more

upsource xykong 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7

Open the chart page →

702
helmexampleycztest0.1.01 of 1See more

helmexample ycztest 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7

Open the chart page →

702
mychartyi-test-chart0.1.01 of 1See more

mychart yi-test-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7

Open the chart page →

702
helmexampleyunpeng-helmexample0.1.01 of 1See more

helmexample yunpeng-helmexample 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7

Open the chart page →

702
myfirstchartzikilabVerified publisher0.2.01 of 1See more

myfirstchart zikilab 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
libxml2@2.9.4+dfsg1-7+b3
2.9.4+dfsg1-7+deb10u4

Open the chart page →

1,138

Container images carrying it

577 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/fiware/apollo:0.0.1055330b1b60c1
libxml2@2.9.7-13.el8
0:2.9.7-13.el8_6.1
1
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
libxml2@2.9.7-9.el8_4.2
0:2.9.7-13.el8_6.1
1
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
libxml2@2.9.7-13.el8
0:2.9.7-13.el8_6.1
1
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
libxml2@2.9.7-9.el8_4.2
0:2.9.7-13.el8_6.1
1
quay.io/fiware/trusted-issuers-registry:0.11.1a8a9ec461034
libxml2@2.9.7-13.el8
0:2.9.7-13.el8_6.1
1
quay.io/ibmgaragecloud/cli-tools:v0.159663f06adcb1
libxml2@2.9.13-r0
2.9.14-r0
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
libxml2@2.9.7-7.el8
0:2.9.7-13.el8_6.1
1
quay.io/ibmgaragecloud/nodejs:latest01c3b7acb301
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7
1
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
libxml2@2.9.7-9.el8_4.2
0:2.9.7-13.el8_6.1
1
quay.io/keycloak/keycloak-operator:18.0.0-legacy36ce77526145
libxml2@2.9.7-12.el8_5
0:2.9.7-13.el8_6.1
1
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
libxml2@2.9.7-12.el8_5
0:2.9.7-13.el8_6.1
1
quay.io/mcouliba/quarkus-serverless:1.0c2851757eca4
libxml2@2.9.7-5.el8
0:2.9.7-13.el8_6.1
1
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
libxml2@2.9.4+dfsg1-7+deb10u2
2.9.4+dfsg1-7+deb10u4
1
quay.io/mongodb/mongodb-kubernetes-operator:0.3.0107a7c73af59
libxml2@2.9.7-8.el8
0:2.9.7-13.el8_6.1
1
quay.io/openshift/origin-cli:4.66722d5041b47
libxml2@2.9.7-7.el8
0:2.9.7-13.el8_6.1
1
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
libxml2@2.9.7-7.el8
0:2.9.7-13.el8_6.1
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
libxml2@2.9.3+dfsg1-1ubuntu0.6
2.9.3+dfsg1-1ubuntu0.7+esm2
1
quay.io/opsmxpublic/ubi8-oes-db:v3.0.089ee6493af89
libxml2@2.9.7-9.el8_4.2
0:2.9.7-13.el8_6.1
1
quay.io/renokico/laravel-helm-demo:0.6.03207f957e80c
libxml2@2.9.12-r1
2.9.14-r0
1
quay.io/renokico/laravel-helm-demo:worker-0.6.04b188259267e
libxml2@2.9.12-r1
2.9.14-r0
1
quay.io/renokico/laravel-helm-demo:octane-0.6.0cad83090c58f
libxml2@2.9.12-r0
2.9.14-r0
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
libxml2@2.9.7-9.el8_4.2
0:2.9.7-13.el8_6.1
1
registry.gitlab.com/enbuild-staging/vivsoft-platform-ui/mongodb:4.4.5cf72810d33f5
libxml2@2.9.7-9.el8
0:2.9.7-13.el8_6.1
1
registry.gitlab.com/gitlab-org/cloud-native/gitlab-operator:0.5.136b19b72120e
libxml2@2.9.7-9.el8_4.2
0:2.9.7-13.el8_6.1
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
libxml2@2.9.10+dfsg-5
2.9.10+dfsg-5ubuntu0.20.04.3
1
registry.gitlab.com/open-forms/design-catalogue:latestf21f19346b29
libxml2@2.9.4+dfsg1-7+deb10u1
2.9.4+dfsg1-7+deb10u4
1
registry.gitlab.com/purelb/purelb/allocator:v0.0.0-106-ipv6-lbip-052cedab9d1fcb78f529
libxml2@2.9.7-12.el8_5
0:2.9.7-13.el8_6.1
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.