StackRadar

CVE-2022-30634

Unscored

Advisory

Published 9 Jun 2022In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.022
81st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,126
of 17,787 indexed, latest versions
Container images
1,162
deployed by those charts
Fix available
1 of 1
affected package

Indefinite hang with large buffers on Windows in crypto/rand

Carried by container images the latest versions of 1,126 of 17,787 indexed charts deploy, on 1,162 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.13, go1.13.1, go1.13.3, go1.13.4+71 more1.17.111,162
OSV records
GO-2022-0477
Also known as
BIT-golang-2022-30634

Charts affected

1,126 by stars
ChartLatestAffected imagesRadar Score
cp4d-deployercloud-native-toolkit1.0.01 of 1See more

cp4d-deployer cloud-native-toolkit 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
stdlib@go1.16.3
1.17.11

Open the chart page →

25,152
ibm-toolkit-installcloud-native-toolkit0.3.01 of 1See more

ibm-toolkit-install cloud-native-toolkit 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
quay.io/ibmgaragecloud/cli-tools:v0.159663f06adcb1
stdlib@go1.17.5
1.17.11

Open the chart page →

6,696
iteration-zerocloud-native-toolkit0.2.01 of 1See more

iteration-zero cloud-native-toolkit 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
quay.io/cloudnativetoolkit/cli-tools:v1.1-v1.8.2d6fd2a9e3273
stdlib@go1.18.1
1.17.11

Open the chart page →

6,921
pact-brokercloud-native-toolkit0.3.01 of 1See more

pact-broker cloud-native-toolkit 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
pactfoundation/pact-broker:2.101.0.0a3021fc42834
stdlib@go1.14.4
1.17.11

Open the chart page →

2,814
robot-shopcloud-native-toolkit1.1.12 of 12See more

robot-shop cloud-native-toolkit 1.1.1

2 of the 12 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
robotshop/rs-dispatch:latestde81f1d07b02
stdlib@go1.17
1.17.11
robotshop/rs-mongodb:latest119b545823cd
stdlib@go1.16.3
1.17.11

Open the chart page →

29,594
ctrox-csi-s3cloudve0.1.01 of 4See more

ctrox-csi-s3 cloudve 0.1.0

1 of the 4 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
ctrox/csi-s3:v1.2.0-rc.23c72862bea3c
stdlib@go1.16.13
1.17.11

Open the chart page →

3,136
galaxy-depscloudve1.1.12 of 7See more

galaxy-deps cloudve 1.1.1

2 of the 7 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq-cluster-operator:1.14.0-scratch-r567ac64a9623a
stdlib@go1.17
1.17.11
bitnamilegacy/rmq-messaging-topology-operator:1.7.1-scratch-r33c26208691a1
stdlib@go1.17
1.17.11

Open the chart page →

10,543
galaxykubemancloudve2.10.11 of 7See more

galaxykubeman cloudve 2.10.1

1 of the 7 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8c825f3d5e28b
stdlib@go1.16.2
1.17.11

Open the chart page →

16,117
janisterminalcloudve0.1.01 of 2See more

janisterminal cloudve 0.1.0

1 of the 2 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
stakater/proxyinjector:v0.0.2383fef483d497
stdlib@go1.13.1
1.17.11

Open the chart page →

14,285
openstack-cinder-csicloudve1.2.01 of 5See more

openstack-cinder-csi cloudve 1.2.0

1 of the 5 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
k8scloudprovider/cinder-csi-plugin:latesta30c7a2a594a
stdlib@go1.17.10
1.17.11

Open the chart page →

2,061
proxyinjectorcloudve0.0.231 of 1See more

proxyinjector cloudve 0.0.23

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
stakater/proxyinjector:v0.0.2383fef483d497
stdlib@go1.13.1
1.17.11

Open the chart page →

2,853
d2-prometheus-exportercmacraeVerified publisher0.1.01 of 1See more

d2-prometheus-exporter cmacrae 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
cmacrae/d2-prometheus-exporter:v0.1.0fc5fecba436e
stdlib@go1.15
1.17.11

Open the chart page →

1,299
kovecmacraeVerified publisher0.2.01 of 1See more

kove cmacrae 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
ghcr.io/cmacrae/kove:v0.2.0185bfaae750c
stdlib@go1.17
1.17.11

Open the chart page →

2,089
kove-deprecationscmacraeVerified publisher0.1.21 of 1See more

kove-deprecations cmacrae 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
ghcr.io/cmacrae/kove:v0.1.0db1244edefc8
stdlib@go1.16
1.17.11

Open the chart page →

2,203
lgtmcmacraeVerified publisher0.1.01 of 1See more

lgtm cmacrae 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
cmacrae/lgtm:0.1.0dec8d490fe40
stdlib@go1.14.1
1.17.11

Open the chart page →

1,909
door-agentcnoVerified publisher3.0.151 of 15See more

door-agent cno 3.0.15

1 of the 15 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
envoyproxy/ratelimit:6f5de117b6cb6e16f8c9
stdlib@go1.14.13
1.17.11

Open the chart page →

19,380
traefik-forward-authcolearendt0.0.151 of 1See more

traefik-forward-auth colearendt 0.0.15

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
thomseddon/traefik-forward-auth:269a2c985d2c5
stdlib@go1.13.12
1.17.11

Open the chart page →

2,234
mysqlcomet-mysql-helmVerified publisher1.0.71 of 1See more

mysql comet-mysql-helm 1.0.7

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
library/mysql:8.4.2ac80b6e09e5b
stdlib@go1.18.2
1.17.11

Open the chart page →

1,055
cgrccommongroundregistratiecomponent0.1.01 of 3See more

cgrc commongroundregistratiecomponent 0.1.0

1 of the 3 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
conduction/cgrc-php:dev25415534d245
stdlib@go1.13.10
1.17.11

Open the chart page →

7,572
conduction-uiconduction-ui0.1.01 of 6See more

conduction-ui conduction-ui 0.1.0

1 of the 6 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
conduction/conduction-ui-php:dev2744565516e8
stdlib@go1.13.10
1.17.11

Open the chart page →

12,906
betaalservicecontacten-catalog1.0.01 of 3See more

betaalservice contacten-catalog 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
conduction/betaalservice-php:latestece1ab544c57
stdlib@go1.13.10
1.17.11

Open the chart page →

7,209
contactmoment-componentcontactmoment-component0.1.01 of 4See more

contactmoment-component contactmoment-component 0.1.0

1 of the 4 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
conduction/contactmoment-component-php:deve1d4ad1e22a8
stdlib@go1.13.10
1.17.11

Open the chart page →

8,408
containers-security-chartscontainers-security0.1.01 of 7See more

containers-security-charts containers-security 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
falcosecurity/falcosidekick:2.27.0828ee36cb13a
stdlib@go1.18.1
1.17.11

Open the chart page →

9,146
katibcowboysysopVerified publisher2.4.23 of 4See more

katib cowboysysop 2.4.2

3 of the 4 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
kubeflowkatib/katib-controller:v0.12.012a28c8a0b41
stdlib@go1.17.1
1.17.11
kubeflowkatib/katib-db-manager:v0.12.0db88bf09d88e
stdlib@go1.13.3
1.17.11
kubeflowkatib/katib-ui:v0.12.0129f0aaba976
stdlib@go1.17.1
1.17.11

Open the chart page →

6,542
kfservingcowboysysopVerified publisher1.3.11 of 3See more

kfserving cowboysysop 1.3.1

1 of the 3 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
kfserving/kfserving-controller:v0.6.163d79d04c2e3
stdlib@go1.14.14
1.17.11

Open the chart page →

3,830
metacontrollercowboysysopVerified publisher1.2.21 of 1See more

metacontroller cowboysysop 1.2.2

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
metacontrollerio/metacontroller:v2.1.10336993b88e4
stdlib@go1.17.6
1.17.11

Open the chart page →

2,092
mpi-operatorcowboysysopVerified publisher1.2.21 of 1See more

mpi-operator cowboysysop 1.2.2

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
mpioperator/mpi-operator:0.3.03ccfa8d8b7bf
stdlib@go1.15.13
1.17.11

Open the chart page →

2,577
notebook-controllercowboysysopVerified publisher1.1.21 of 1See more

notebook-controller cowboysysop 1.1.2

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
public.ecr.aws/j1r0q0g6/notebooks/notebook-controller:v1.4cac3ed9a9826
stdlib@go1.15.15
1.17.11

Open the chart page →

2,582
quickchartcowboysysopVerified publisher5.0.01 of 1See more

quickchart cowboysysop 5.0.0

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
ianw/quickchart:v1.7.1dc49dd460c37
stdlib@go1.13.1
1.17.11

Open the chart page →

5,489
training-operatorcowboysysopVerified publisher1.2.21 of 1See more

training-operator cowboysysop 1.2.2

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
public.ecr.aws/j1r0q0g6/training/training-operator:760ac1171dd30039a7363ffa03c77454bd714da5ae59d222fd87
stdlib@go1.14.9
1.17.11

Open the chart page →

2,275
crossplane-controllerscrossplane0.12.01 of 1See more

crossplane-controllers crossplane 0.12.0

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
crossplane/crossplane:v0.12.066666e6963af
stdlib@go1.14.4
1.17.11

Open the chart page →

2,312
oam-kubernetes-runtimecrossplane0.0.3-71.g0f235901 of 2See more

oam-kubernetes-runtime crossplane 0.0.3-71.g0f23590

1 of the 2 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
crossplane/oam-kubernetes-runtime:v0.0.3-71.g0f235900112171c45e3
stdlib@go1.13.14
1.17.11

Open the chart page →

2,248
oam-kubernetes-runtime-legacycrossplane0.3.1-5.g11e18941 of 1See more

oam-kubernetes-runtime-legacy crossplane 0.3.1-5.g11e1894

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
crossplane/oam-kubernetes-runtime:v0.3.1-5.g11e189407b8b410dc76
stdlib@go1.13.15
1.17.11

Open the chart page →

2,231
external-service-operatorcrowdfox0.1.01 of 1See more

external-service-operator crowdfox 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
crowdfox/external-service-operator:v1.1.06fa7e8063d27
stdlib@go1.14.2
1.17.11

Open the chart page →

4,625
electric-mailcryptexlabsVerified publisher0.0.12 of 5See more

electric-mail cryptexlabs 0.0.1

2 of the 5 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
hashicorp/vault:1.8.34db614d40d0e
stdlib@go1.16.7
1.17.11
hashicorp/vault-k8s:0.13.1bebb03e8e800
stdlib@go1.16.3
1.17.11

Open the chart page →

5,973
purple-piecryptexlabsVerified publisher0.0.12 of 4See more

purple-pie cryptexlabs 0.0.1

2 of the 4 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
hashicorp/vault:1.8.34db614d40d0e
stdlib@go1.16.7
1.17.11
hashicorp/vault-k8s:0.13.1bebb03e8e800
stdlib@go1.16.3
1.17.11

Open the chart page →

5,973
openldapcsic-charts0.1.11 of 2See more

openldap csic-charts 0.1.1

1 of the 2 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
osixia/openldap:1.5.018742e9c449c
stdlib@go1.15.5
1.17.11

Open the chart page →

5,293
rtcsic-charts0.1.11 of 5See more

rt csic-charts 0.1.1

1 of the 5 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
library/postgres:13.11-bullseye5c265bf1fd30
stdlib@go1.18.2
1.17.11

Open the chart page →

14,206
wazuhcsic-charts0.1.01 of 4See more

wazuh csic-charts 0.1.0

1 of the 4 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
wazuh/wazuh-manager:4.4.121994f40e0da
stdlib@go1.14.12
1.17.11

Open the chart page →

13,937
irods-csi-drivercyverse0.12.01 of 4See more

irods-csi-driver cyverse 0.12.0

1 of the 4 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-provisioner:v3.1.0122bfb8c1eda
stdlib@go1.17.3
1.17.11

Open the chart page →

5,257
home-assistantdamounVerified publisher1.1.01 of 1See more

home-assistant damoun 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2023.11.3feffc0b8227d
stdlib@go1.17.1
1.17.11

Open the chart page →

6,178
speedtest-exporterdamounVerified publisher1.0.61 of 1See more

speedtest-exporter damoun 1.0.6

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
ghcr.io/danopstech/speedtest_exporter:v0.0.599efbe55412b
stdlib@go1.16.6
1.17.11

Open the chart page →

1,209
grafana-agentdandydev-chartsVerified publisher0.19.21 of 1See more

grafana-agent dandydev-charts 0.19.2

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
grafana/agent:v0.20.0825c09373d27
stdlib@go1.16
1.17.11

Open the chart page →

3,238
cloudwatch-agent-prometheusdasmeta0.2.21 of 1See more

cloudwatch-agent-prometheus dasmeta 0.2.2

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
amazon/cloudwatch-agent:1.247350.0b251780e745d1783c93
stdlib@go1.15.15
1.17.11

Open the chart page →

2,977
mongodb-bi-connectordasmeta1.0.31 of 1See more

mongodb-bi-connector dasmeta 1.0.3

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
dasmeta/mongodb-bi-connector:1.0.3fa657960dfec
stdlib@go1.16.9
1.17.11

Open the chart page →

5,838
nfs-provisionerdasmeta1.0.31 of 1See more

nfs-provisioner dasmeta 1.0.3

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
quay.io/kubernetes_incubator/nfs-provisioner:v2.3.0f402e6039b3c
stdlib@go1.13.4
1.17.11

Open the chart page →

2,806
datadog-csi-driverdatadogVerified publisher0.17.01 of 2See more

datadog-csi-driver datadog 0.17.0

1 of the 2 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/csi-node-driver-registrar:v2.0.1e07f914c32f0
stdlib@go1.15
1.17.11

Open the chart page →

2,041
datadog-operatordatadog-test0.1.21 of 1See more

datadog-operator datadog-test 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
datadog/operator:0.3.117f08a860090
stdlib@go1.15.2
1.17.11

Open the chart page →

3,979
ambassador-operatordatawire0.3.01 of 1See more

ambassador-operator datawire 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
datawire/ambassador-operator:v1.3.0f95ae710d75c
stdlib@go1.16.5
1.17.11

Open the chart page →

7,486
eg-edge-stackdatawire0.0.11 of 7See more

eg-edge-stack datawire 0.0.1

1 of the 7 container images this version deploys carry CVE-2022-30634.

Container imageDigestPackageFixed in
library/redis:7.0.1092b8b307ee28
stdlib@go1.18.2
1.17.11

Open the chart page →

15,781

Container images carrying it

1,162 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
library/influxdb:2.3.0-alpined7f5dd5f70e2
stdlib@go1.17.2
1.17.11
1
library/kapacitor:1.6.37232f6388a4d
stdlib@go1.17.2
1.17.11
1
library/mariadb:10.7.307e06f2e7ae9
stdlib@go1.16.7
1.17.11
1
library/mariadb:10.11.21c33370a599c
stdlib@go1.16.7
1.17.11
1
library/mariadb:10.422edfe1c7834
stdlib@go1.18.2
1.17.11
1
library/mariadb:10.8.2-focal490f01279be1
stdlib@go1.16.7
1.17.11
1
library/mariadb:12.0.25b6a1eac15b8
stdlib@go1.18.2
1.17.11
1
library/mariadb:10.6.218a16204dc96c
stdlib@go1.18.2
1.17.11
1
library/mariadb:10.79a48ac9f196f
stdlib@go1.16.7
1.17.11
1
library/mariadb:10.10.2bfc25a68e113
stdlib@go1.16.7
1.17.11
1
library/mariadb:10.6.15e22328f4d714
stdlib@go1.16.7
1.17.11
1
library/mariadb:10.9.4fbb8456ebdb1
stdlib@go1.16.7
1.17.11
1
library/mariadb:11.7.2fcc7fcd7114a
stdlib@go1.18.2
1.17.11
1
library/mongo:7.0.140032d2ca20db
stdlib@go1.18.2
1.17.11
1
library/mongo:4.4.1305678ae4e5e1
stdlib@go1.16.7
1.17.11
1
library/mongo:4.4-bionic3d0e6df9fd5b
stdlib@go1.16.3
1.17.11
1
library/mongo:5.0.14-focal50cae5081ab4
stdlib@go1.17.10
1.17.11
1
library/mongo:6.0.12646902910d6a
stdlib@go1.18.2
1.17.11
1
library/mongo:4.2699d652ed674
stdlib@go1.18.2
1.17.11
1
library/mongo:6.0.271a63fc2438e
stdlib@go1.17.10
1.17.11
1
library/mongo:5.0.217c81758cb295
stdlib@go1.18.2
1.17.11
1
library/mongo:7.0.12ae1cf99fa7bf
stdlib@go1.18.2
1.17.11
1
library/mongo:4.4.18d23ec07162ca
stdlib@go1.17.10
1.17.11
1
library/mongo:8.0.11dca8d11fe467
stdlib@go1.18.2
1.17.11
1
library/mysql:8.4.3106d5197fd8e
stdlib@go1.18.2
1.17.11
1
library/mysql:8.0.303c1aab708f6e
stdlib@go1.16.7
1.17.11
1
library/mysql:9.0.192dc86967801
stdlib@go1.18.2
1.17.11
1
library/mysql:8.0.41bf577825b52a
stdlib@go1.18.2
1.17.11
1
library/mysql:8.0.39ccb8f749bb5e
stdlib@go1.18.2
1.17.11
1
library/mysql:8.0.40d58ac93387f6
stdlib@go1.18.2
1.17.11
1
library/postgres:13.703652c675ae1
stdlib@go1.16.7
1.17.11
1
library/postgres:14.32d1e636f0778
stdlib@go1.16.7
1.17.11
1
library/postgres:17.4304ab8135187
stdlib@go1.18.2
1.17.11
1
library/postgres:16.6557fea37a744
stdlib@go1.18.2
1.17.11
1
library/postgres:16.4-alpine5660c2cbfea5
stdlib@go1.18.2
1.17.11
1
library/postgres:13.11-bullseye5c265bf1fd30
stdlib@go1.18.2
1.17.11
1
library/postgres:17.5-alpine6567bca8d7bc
stdlib@go1.18.2
1.17.11
1
library/postgres:17.4-alpine7062a2109c4b
stdlib@go1.18.2
1.17.11
1
library/postgres:12-alpine7c8f48705831
stdlib@go1.18.2
1.17.11
1
library/postgres:17.2-alpine7e5df973a748
stdlib@go1.18.2
1.17.11
1
library/postgres:15.38775adb39f0d
stdlib@go1.18.2
1.17.11
1
library/postgres:17.5aadf2c0696f5
stdlib@go1.18.2
1.17.11
1
library/postgres:13.12ced3ba927f4c
stdlib@go1.18.2
1.17.11
1
library/postgres:14.6f565573d74ae
stdlib@go1.18.2
1.17.11
1
library/postgres:17.5-bookwormfbcea1bd13b6
stdlib@go1.18.2
1.17.11
1
library/redis:7.0.4091a7b5de688
stdlib@go1.16.7
1.17.11
1
library/redis:7-bullseye6a5130174e14
stdlib@go1.18.2
1.17.11
1
library/redis:7.2.5-alpine6aaf3f5e6bc8
stdlib@go1.18.2
1.17.11
1
library/redis:6.2.20-alpine77697a75da9f
stdlib@go1.18.2
1.17.11
1
library/redis83edc2b8e9ff
stdlib@go1.18.2
1.17.11
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.