StackRadar

CVE-2022-29824

High

Advisory

Published 3 May 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.4
base score, highest
EPSS
0.038
89th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
656
of 17,787 indexed, latest versions
Container images
574
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: libxml2 security update

Carried by container images the latest versions of 656 of 17,787 indexed charts deploy, on 574 images.

Affected packageAffected versionsFixed inImages
libxml2rpm2.9.7-5.el8, 2.9.7-7.el8, 2.9.7-8.el8, 2.9.7-9.el8+4 more0:2.9.7-13.el8_6.1, 2.9.14-1.171
libxml2deb2.9.1+dfsg1-3ubuntu4.3, 2.9.1+dfsg1-3ubuntu4.4, 2.9.1+dfsg1-3ubuntu4.12, 2.9.3+dfsg1-1ubuntu0.2+23 more2.9.1+dfsg1-3ubuntu4.13+esm3, 2.9.3+dfsg1-1ubuntu0.7+esm2, 2.9.4+dfsg1-2.2+deb9u7, 2.9.4+dfsg1-6.1ubuntu1.6+4 more359
libxml2apk2.9.10-r4, 2.9.10-r5, 2.9.10-r6, 2.9.10-r7+4 more2.9.14-r0144
OSV records
RHSA-2022:5317ALPINE-CVE-2022-29824UBUNTU-CVE-2022-29824DLA-3012-1DSA-5142-1openSUSE-SU-2024:12043-1
Also known as
USN-5422-1

Charts affected

656 by stars
ChartLatestAffected imagesRadar Score
default-backendwyrihaximusnetVerified publisher1.1.01 of 1See more

default-backend wyrihaximusnet 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
ghcr.io/wyrihaximusnet/default-backend:randomb24e63efd841
libxml2@2.9.12-r1
2.9.14-r0

Open the chart page →

2,534
upsourcexykongVerified publisher0.1.11 of 1See more

upsource xykong 0.1.1

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7

Open the chart page →

702
helmexampleycztest0.1.01 of 1See more

helmexample ycztest 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7

Open the chart page →

702
mychartyi-test-chart0.1.01 of 1See more

mychart yi-test-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7

Open the chart page →

702
helmexampleyunpeng-helmexample0.1.01 of 1See more

helmexample yunpeng-helmexample 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
library/nginx:1.16.03e373fd5b8d4
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7

Open the chart page →

702
myfirstchartzikilabVerified publisher0.2.01 of 1See more

myfirstchart zikilab 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-29824.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
libxml2@2.9.4+dfsg1-7+b3
2.9.4+dfsg1-7+deb10u4

Open the chart page →

1,138

Container images carrying it

574 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
bsgrigorov/helm-operator:latest45ab095f09c8
libxml2@2.9.7-8.el8
0:2.9.7-13.el8_6.1
1
camptocamp/bucket-cloner:latestacfafc308d88
libxml2@2.9.4+dfsg1-7+deb10u2
2.9.4+dfsg1-7+deb10u4
1
camptocamp/ekorre:0.1.035c91d5fda04
libxml2@2.9.4+dfsg1-7+b3
2.9.4+dfsg1-7+deb10u4
1
camptocamp/pghoard:10bff736b15623
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7
1
cdignam/kodiak:v0.54.05a6a55b39cee
libxml2@2.9.4+dfsg1-7+b3
2.9.4+dfsg1-7+deb10u4
1
ceticasbl/pg-ldap-sync:latest6c0aa7567145
libxml2@2.9.4+dfsg1-7+b3
2.9.4+dfsg1-7+deb10u4
1
cfcontainerization/cf-operator:v2.3.0-0.g27a91cdf82fa261c18a8
libxml2@2.9.7-lp151.5.3.1
2.9.14-1.1
1
cfcontainerization/quarks-job:v0.0.0-0.g70ae34b58fb1c173a46
libxml2@2.9.7-lp151.5.3.1
2.9.14-1.1
1
chaosnative/cle-frontend:2.7.007b82a82a702
libxml2@2.9.13-r0
2.9.14-r0
1
chetangautamm/repo:sipp.v3e7f7049e1544
libxml2@2.9.10+dfsg-5
2.9.10+dfsg-5ubuntu0.20.04.3
1
cheyang/distributed-tf:1.6.046cc34755493
libxml2@2.9.3+dfsg1-1ubuntu0.5
2.9.3+dfsg1-1ubuntu0.7+esm2
1
ckulka/baikal:0.8.0aedb1f4f3fa0
libxml2@2.9.4+dfsg1-7+deb10u1
2.9.4+dfsg1-7+deb10u4
1
cloudve/janis-terminal:latestaf56e77ca587
libxml2@2.9.4+dfsg1-6.1ubuntu1.3
2.9.4+dfsg1-6.1ubuntu1.6
1
cockroachdb/cockroach-operator:v2.1.0983312754620
libxml2@2.9.7-9.el8_4.2
0:2.9.7-13.el8_6.1
1
codaprotocol/buildkite-exporter:0.2.137c68e67a401
libxml2@2.9.4+dfsg1-2.2+deb9u3
2.9.4+dfsg1-2.2+deb9u7
1
codaprotocol/coda-user-agent:0.1.54ba4dd3a041f
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7
1
conduction/agendaservice-nginx:lateste1c176458aaf
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7
1
conduction/agendaservice-php:latest9cfeeb6c7c20
libxml2@2.9.10-r4
2.9.14-r0
1
conduction/balance-registration-nginx:dev9e24264ea8f3
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7
1
conduction/balance-registration-php:devc36094a41369
libxml2@2.9.10-r4
2.9.14-r0
1
conduction/betaalservice-nginx:latestd3577ddd5c67
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7
1
conduction/betaalservice-php:latestece1ab544c57
libxml2@2.9.10-r4
2.9.14-r0
1
conduction/cgrc-nginx:devd8e23f10e882
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7
1
conduction/checkin-component-nginx:dev583d2cd8476c
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7
1
conduction/checkin-component-php:dev3423845692c1
libxml2@2.9.10-r4
2.9.14-r0
1
conduction/conduction-ui-nginx:devd9b38e234de9
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7
1
conduction/conduction-ui-php:dev2744565516e8
libxml2@2.9.10-r4
2.9.14-r0
1
conduction/contactmoment-component-nginx:dev353dc46303ac
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7
1
conduction/contactmoment-component-php:deve1d4ad1e22a8
libxml2@2.9.10-r4
2.9.14-r0
1
conduction/docparser-nginx:dev08524d8327b8
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7
1
conduction/docparser-php:devb6f95c8ead7d
libxml2@2.9.10-r4
2.9.14-r0
1
conduction/kvk-nginx:devcf163d2b95b5
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7
1
conduction/kvk-php:dev8f177f9f8a7b
libxml2@2.9.10-r4
2.9.14-r0
1
conduction/pan-nginx:devaf3e9f551ad1
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7
1
conduction/pan-php:dev24f03c57568f
libxml2@2.9.10-r4
2.9.14-r0
1
confluentinc/cp-enterprise-control-center:6.1.0f2975d507a2a
libxml2@2.9.7-8.el8
0:2.9.7-13.el8_6.1
1
confluentinc/cp-enterprise-kafka:6.1.08f1544df1f48
libxml2@2.9.7-8.el8
0:2.9.7-13.el8_6.1
1
confluentinc/cp-kafka:7.1.2.amd643bf359d5e340
libxml2@2.9.7-13.el8
0:2.9.7-13.el8_6.1
1
confluentinc/cp-kafkacat:4.1.25f990b0f43c9
libxml2@2.9.4+dfsg1-2.2+deb9u2
2.9.4+dfsg1-2.2+deb9u7
1
confluentinc/cp-kafka-connect:6.1.04bc70a83ca6f
libxml2@2.9.7-8.el8
0:2.9.7-13.el8_6.1
1
confluentinc/cp-kafka-rest:6.1.0b0b7aa26254a
libxml2@2.9.7-8.el8
0:2.9.7-13.el8_6.1
1
confluentinc/cp-ksqldb-server:6.1.0ee403d5b9090
libxml2@2.9.7-8.el8
0:2.9.7-13.el8_6.1
1
confluentinc/cp-schema-registry:6.1.0b651d4b6185a
libxml2@2.9.7-8.el8
0:2.9.7-13.el8_6.1
1
confluentinc/cp-zookeeper:6.1.078c190f4472c
libxml2@2.9.7-8.el8
0:2.9.7-13.el8_6.1
1
countly/countly-server:25.05.4e3c238248f99
libxml2@2.9.10+dfsg-5ubuntu0.20.04.2
2.9.10+dfsg-5ubuntu0.20.04.3
1
craftypath/sops-operator:v0.8.0402a0024c732
libxml2@2.9.7-9.el8
0:2.9.7-13.el8_6.1
1
crazymax/rrdcached:1.7.2-r4042536a06596
libxml2@2.9.12-r1
2.9.14-r0
1
ctron/hawkbit-operator:0.1.48fdea8f76499
libxml2@2.9.7-7.el8
0:2.9.7-13.el8_6.1
1
ctrox/csi-s3:v1.2.0-rc.23c72862bea3c
libxml2@2.9.4+dfsg1-7+deb10u2
2.9.4+dfsg1-7+deb10u4
1
datadog/extendeddaemonset:v0.8.0513a4377aed5
libxml2@2.9.7-9.el8_4.2
0:2.9.7-13.el8_6.1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.