StackRadar

CVE-2022-36227

Critical

Advisory

Published 22 Nov 2022In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.024
83rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
139
of 17,781 indexed, latest versions
Container images
160
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: libarchive security update

Carried by container images the latest versions of 139 of 17,781 indexed charts deploy, on 160 images.

Affected packageAffected versionsFixed inImages
libarchivedeb3.1.2-11ubuntu0.16.04.3, 3.3.3-4+deb10u1, 3.4.0-2ubuntu1, 3.4.0-2ubuntu1.2+1 more3.1.2-11ubuntu0.16.04.8+esm1, 3.3.3-4+deb10u3, 3.4.0-2ubuntu1.3, 3.6.0-1ubuntu1.219
libarchiveapk3.6.0-r0, 3.6.1-r03.6.1-r12
libarchiverpm3.3.2-3.el8, 3.3.2-8.el8_1, 3.3.2-9.el8, 3.3.3-1.el8+4 more0:3.3.3-5.el8, 0:3.5.3-4.el9139
OSV records
ALPINE-CVE-2022-36227UBUNTU-CVE-2022-36227RHSA-2023:2532RHSA-2023:3018RLSA-2023:3018DLA-3294-1
Also known as
RHSA-2024:0146, USN-7070-1

Charts affected

139 by stars
ChartLatestAffected imagesRadar Score
dnation-kubernetes-monitoring-stackdnationcloud4.0.22 of 17See more

dnation-kubernetes-monitoring-stack dnationcloud 4.0.2

2 of the 17 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2022-10-20T23-26-33Z50ee58bc9770
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8
quay.io/minio/minio:RELEASE.2022-10-24T18-35-07Zd853057f2800
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

21,641
drogue-cloud-coredrogue-iotVerified publisher0.7.1120 of 22See more

drogue-cloud-core drogue-iot 0.7.11

20 of the 22 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
ghcr.io/drogue-iot/authentication-service:0.11.0857b137fc7b3
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
ghcr.io/drogue-iot/coap-endpoint:0.11.044790b71aa22
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
ghcr.io/drogue-iot/command-endpoint:0.11.06dce3158b851
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
ghcr.io/drogue-iot/console-backend:0.11.025d229ae5bde
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
ghcr.io/drogue-iot/console-frontend:0.11.0558972f9374c
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
ghcr.io/drogue-iot/database-migration:0.11.057072c72a7cd
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
ghcr.io/drogue-iot/device-management-controller:0.11.0200aea1a2b42
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
ghcr.io/drogue-iot/device-management-service:0.11.0f4a5bfc06a74
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
ghcr.io/drogue-iot/device-state-service:0.11.0fbf0738cfc7e
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
ghcr.io/drogue-iot/http-endpoint:0.11.0b612c18479e0
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
ghcr.io/drogue-iot/knative-operator:0.11.0e2d927639f6e
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
ghcr.io/drogue-iot/mqtt-endpoint:0.11.032c6d2f5eab9
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
ghcr.io/drogue-iot/mqtt-integration:0.11.07ac2adb6ca49
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
ghcr.io/drogue-iot/outbox-controller:0.11.01a958edafdb1
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
ghcr.io/drogue-iot/test-cert-generator:0.11.06ba7e1608286
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
ghcr.io/drogue-iot/topic-strimzi-operator:0.11.05253fbf8d04c
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
ghcr.io/drogue-iot/ttn-operator:0.11.07dd5ac80c8f1
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
ghcr.io/drogue-iot/user-auth-service:0.11.0adebc40ddf98
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
ghcr.io/drogue-iot/websocket-integration:0.11.0372dcd370945
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
quay.io/keycloak/keycloak:20.0054ef67eb7da
libarchive@3.3.3-4.el8
0:3.3.3-5.el8

Open the chart page →

55,666
drogue-cloud-examplesdrogue-iotVerified publisher0.7.112 of 6See more

drogue-cloud-examples drogue-iot 0.7.11

2 of the 6 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
ghcr.io/drogue-iot/drogue-event-source:0.2.1e2e812a4cf8e
libarchive@3.3.3-1.el8
0:3.3.3-5.el8
ghcr.io/drogue-iot/postgresql-pusher:0.2.1c6bb121ced90
libarchive@3.3.3-1.el8
0:3.3.3-5.el8

Open the chart page →

30,699
drogue-cloud-twindrogue-iotVerified publisher0.7.111 of 8See more

drogue-cloud-twin drogue-iot 0.7.11

1 of the 8 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0054ef67eb7da
libarchive@3.3.3-4.el8
0:3.3.3-5.el8

Open the chart page →

6,915
mintakaeclipse-aeriosVerified publisher1.0.01 of 2See more

mintaka eclipse-aerios 1.0.0

1 of the 2 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
fiware/mintaka:0.7.092a3c5cf43c0
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

11,482
eoloPlanteolo-plannerVerified publisher0.1.02 of 7See more

eoloPlant eolo-planner 0.1.0

2 of the 7 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
mastercloudapps/server:v2.23f3d24dfe2686
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
mastercloudapps/weatherservice:v1.23de859d29c116
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

27,537
eoloplannereoloplannerVerified publisher0.1.02 of 7See more

eoloplanner eoloplanner 0.1.0

2 of the 7 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
codeurjc/weatherservice:v1.0b9e2f7234349
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

32,205
eoloPlannerCommunicationsKubernetes3eoloplannercommunicationskuberneteshelmVerified publisher0.1.02 of 7See more

eoloPlannerCommunicationsKubernetes3 eoloplannercommunicationskuberneteshelm 0.1.0

2 of the 7 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
mastercloudapps/server:v2.23f3d24dfe2686
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
mastercloudapps/weatherservice:v1.23de859d29c116
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

27,537
eoloplannereoloplanner-molynx-gat0.1.02 of 7See more

eoloplanner eoloplanner-molynx-gat 0.1.0

2 of the 7 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
codeurjc/weatherservice:v1.0b9e2f7234349
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

28,482
eolo-plannereolo-planner-repo0.1.01 of 7See more

eolo-planner eolo-planner-repo 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
codeurjc/weatherservice:v1.0b9e2f7234349
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

27,096
eoloplanteoloplant1.0.02 of 7See more

eoloplant eoloplant 1.0.0

2 of the 7 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
mastercloudapps/server:v2.23f3d24dfe2686
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
mastercloudapps/weatherservice:v1.23de859d29c116
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

27,537
eoloplantseoloplants-urjcVerified publisher0.1.02 of 7See more

eoloplants eoloplants-urjc 0.1.0

2 of the 7 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
codeurjc/weatherservice:v1.0b9e2f7234349
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

27,721
servereoloserverVerified publisher0.1.02 of 7See more

server eoloserver 0.1.0

2 of the 7 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
codeurjc/weatherservice:v1.0b9e2f7234349
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

32,205
apollofiware0.1.41 of 1See more

apollo fiware 0.1.4

1 of the 1 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
quay.io/fiware/apollo:0.0.1055330b1b60c1
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

6,936
canis-majorfiware0.2.31 of 1See more

canis-major fiware 0.2.3

1 of the 1 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
libarchive@3.3.3-1.el8
0:3.3.3-5.el8

Open the chart page →

8,528
dss-validation-servicefiware0.0.191 of 1See more

dss-validation-service fiware 0.0.19

1 of the 1 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
libarchive@3.3.3-4.el8
0:3.3.3-5.el8

Open the chart page →

4,536
endpoint-auth-servicefiware0.1.41 of 4See more

endpoint-auth-service fiware 0.1.4

1 of the 4 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

11,835
mintakafiware0.4.71 of 1See more

mintaka fiware 0.4.7

1 of the 1 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
fiware/mintaka:latestefc6793388cc
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

7,019
orionfiware1.6.111 of 2See more

orion fiware 1.6.11

1 of the 2 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
quay.io/opencloudio/ibm-mongodb:4.0.24d8c631a6dc43
libarchive@3.3.3-1.el8
0:3.3.3-5.el8

Open the chart page →

10,637
trusted-issuers-registryfiware0.13.01 of 1See more

trusted-issuers-registry fiware 0.13.0

1 of the 1 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
quay.io/fiware/trusted-issuers-registry:0.11.1a8a9ec461034
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

7,087
apache-musicindexgeek-cookbookVerified publisher2.4.21 of 1See more

apache-musicindex geek-cookbook 2.4.2

1 of the 1 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/apache-musicindex:v1.4.1-2c9bd82dc5fda
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.3

Open the chart page →

14,659
openkmgeek-cookbookVerified publisher4.2.01 of 1See more

openkm geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
openkm/openkm-ce:6.3.113bc465a7461b
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.3

Open the chart page →

27,949
xtevegeek-cookbookVerified publisher8.4.21 of 1See more

xteve geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.3

Open the chart page →

17,929
mimir-openshift-experimentalgrafana2.1.02 of 4See more

mimir-openshift-experimental grafana 2.1.0

2 of the 4 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2021-02-14T04-28-06Z2a374c124d44
libarchive@3.3.2-9.el8
0:3.3.3-5.el8
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
libarchive@3.3.2-9.el8
0:3.3.3-5.el8

Open the chart page →

17,759
ditto-operatorhelm-chartsVerified publisher0.3.01 of 1See more

ditto-operator helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
ghcr.io/ctron/ditto-operator:0.4.061a9bb81b85c
libarchive@3.3.3-1.el8
0:3.3.3-5.el8

Open the chart page →

2,674
hawkbit-operatorhelm-chartsVerified publisher0.1.41 of 1See more

hawkbit-operator helm-charts 0.1.4

1 of the 1 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
ctron/hawkbit-operator:0.1.48fdea8f76499
libarchive@3.3.2-8.el8_1
0:3.3.3-5.el8

Open the chart page →

5,792
iofoghelm-chartsVerified publisher0.1.11 of 3See more

iofog helm-charts 0.1.1

1 of the 3 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
libarchive@3.3.3-1.el8
0:3.3.3-5.el8

Open the chart page →

24,161
streamsheetshelm-chartsVerified publisher0.2.35 of 8See more

streamsheets helm-charts 0.2.3

5 of the 8 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
ghcr.io/ctron/streamsheets-base:2.4.00cf25ed621e2
libarchive@3.3.3-1.el8
0:3.3.3-5.el8
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
libarchive@3.3.3-1.el8
0:3.3.3-5.el8
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
libarchive@3.3.3-1.el8
0:3.3.3-5.el8
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
libarchive@3.3.3-1.el8
0:3.3.3-5.el8
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
libarchive@3.3.3-1.el8
0:3.3.3-5.el8

Open the chart page →

89,959
nominatimheywood8-helm-chartsVerified publisher3.10.81 of 3See more

nominatim heywood8-helm-charts 3.10.8

1 of the 3 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
mediagis/nominatim:4.2d0eae7b51374
libarchive@3.6.0-1ubuntu1
3.6.0-1ubuntu1.2

Open the chart page →

14,290
eoloplanthttpd-eoloplant0.1.02 of 7See more

eoloplant httpd-eoloplant 0.1.0

2 of the 7 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
codeurjc/weatherservice:v1.0b9e2f7234349
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

32,205
ibm-object-storage-pluginibm-charts1.1.52 of 2See more

ibm-object-storage-plugin ibm-charts 1.1.5

2 of the 2 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
ibmcom/ibmcloud-object-storage-driver:1.8.16c796a4c693b4
libarchive@3.3.2-8.el8_1
0:3.3.3-5.el8
ibmcom/ibmcloud-object-storage-plugin:1.8.169c73804b37a3
libarchive@3.3.2-8.el8_1
0:3.3.3-5.el8

Open the chart page →

12,461
ibm-ucv-prodibm-helm5.2.61 of 16See more

ibm-ucv-prod ibm-helm 5.2.6

1 of the 16 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
ibmcom/opencontent-common-utils:1.1.2cd5065df7304
libarchive@3.3.2-3.el8
0:3.3.3-5.el8

Open the chart page →

12,105
eoloserverihuertas2021-vmartinp2021-helm0.1.02 of 7See more

eoloserver ihuertas2021-vmartinp2021-helm 0.1.0

2 of the 7 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
codeurjc/weatherservice:v1.0b9e2f7234349
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

27,721
evi-miniointelVerified publisher3.0.32 of 2See more

evi-minio intel 3.0.3

2 of the 2 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
quay.io/minio/mc:RELEASE.2023-01-28T20-29-38Zad34abeba912
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
quay.io/minio/minio:RELEASE.2023-02-10T18-48-39Za0a002cb113c
libarchive@3.3.3-4.el8
0:3.3.3-5.el8

Open the chart page →

7,459
kesintelVerified publisher0.8.31 of 1See more

kes intel 0.8.3

1 of the 1 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
minio/kes:v0.22.255f3aef5803e
libarchive@3.3.3-4.el8
0:3.3.3-5.el8

Open the chart page →

3,570
jx-app-anchorejenkins-x0.0.41 of 2See more

jx-app-anchore jenkins-x 0.0.4

1 of the 2 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
anchore/anchore-engine:v0.7.1ed9b3badd17c
libarchive@3.3.2-8.el8_1
0:3.3.3-5.el8

Open the chart page →

9,854
nexusjenkins-x0.1.371 of 1See more

nexus jenkins-x 0.1.37

1 of the 1 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
libarchive@3.3.2-8.el8_1
0:3.3.3-5.el8

Open the chart page →

12,856
keycloak-operator-legacykeycloak-operator-legacy1.0.01 of 1See more

keycloak-operator-legacy keycloak-operator-legacy 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:19.0.2-legacy15fa0ed662b1
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

5,067
fabric-operatorkubebb0.1.01 of 1See more

fabric-operator kubebb 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
hyperledgerk8s/fabric-operator:7776e7129a8af8be270
libarchive@3.3.3-4.el8
0:3.3.3-5.el8

Open the chart page →

3,988
miniokubebb5.0.102 of 2See more

minio kubebb 5.0.10

2 of the 2 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
hyperledgerk8s/minio-mc:RELEASE.2023-01-28T20-29-38Z729b3d128487
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
hyperledgerk8s/minio-minio:RELEASE.2023-02-10T18-48-39Zed0b0c56f1ea
libarchive@3.3.3-4.el8
0:3.3.3-5.el8

Open the chart page →

7,459
patch-operatorloafoe0.11.31 of 2See more

patch-operator loafoe 0.11.3

1 of the 2 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
quay.io/redhat-cop/kube-rbac-proxy:v0.11.0c68135620167
libarchive@3.3.3-1.el8
0:3.3.3-5.el8

Open the chart page →

4,904
eoloplantmca-eoloplaner0.1.01 of 7See more

eoloplant mca-eoloplaner 0.1.0

1 of the 7 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
codeurjc/weatherservice:v1.0b9e2f7234349
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

29,588
cloud-native-javamcouliba0.1.01 of 1See more

cloud-native-java mcouliba 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
quay.io/mcouliba/quarkus-serverless:1.0c2851757eca4
libarchive@3.3.2-8.el8_1
0:3.3.3-5.el8

Open the chart page →

4,979
fossologymidokura-communityVerified publisher0.2.21 of 2See more

fossology midokura-community 0.2.2

1 of the 2 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
fossology/fossology:4.2.18bd1f22ba7bb
libarchive@3.3.3-4+deb10u1
3.3.3-4+deb10u3

Open the chart page →

3,294
minio-operatorminio-operator4.3.71 of 2See more

minio-operator minio-operator 4.3.7

1 of the 2 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
minio/operator:v4.3.754393e03f3b2
libarchive@3.3.3-1.el8
0:3.3.3-5.el8

Open the chart page →

6,085
cockroachdb-operatormmontesVerified publisher0.1.01 of 1See more

cockroachdb-operator mmontes 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
cockroachdb/cockroach-operator:v2.1.0983312754620
libarchive@3.3.3-1.el8
0:3.3.3-5.el8

Open the chart page →

7,775
my-app-namemy-app-name0.0.21 of 1See more

my-app-name my-app-name 0.0.2

1 of the 1 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
viniciusfcf/gitops-quarkus-app-jvm:latestbba8ee1b5cd5
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

9,149
Practica_4_helmmy-heml-appVerified publisher0.1.02 of 7See more

Practica_4_helm my-heml-app 0.1.0

2 of the 7 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
codeurjc/server:v1.0310bea5b1ee7
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
codeurjc/weatherservice:v1.0b9e2f7234349
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

27,721
papergirlneoskop3.2.61 of 5See more

papergirl neoskop 3.2.6

1 of the 5 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
minio/mc:RELEASE.2022-05-09T04-08-26Z4b415310d8d0
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8

Open the chart page →

6,982
nominatimnominatim-chart1.3.01 of 3See more

nominatim nominatim-chart 1.3.0

1 of the 3 container images this version deploys carry CVE-2022-36227.

Container imageDigestPackageFixed in
mediagis/nominatim:3.7c15e941485ef
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.3

Open the chart page →

22,658

Container images carrying it

160 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/drogue-iot/mqtt-endpoint:0.11.032c6d2f5eab9
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
1
ghcr.io/drogue-iot/mqtt-integration:0.11.07ac2adb6ca49
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
1
ghcr.io/drogue-iot/outbox-controller:0.11.01a958edafdb1
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
1
ghcr.io/drogue-iot/postgresql-pusher:0.2.1c6bb121ced90
libarchive@3.3.3-1.el8
0:3.3.3-5.el8
1
ghcr.io/drogue-iot/test-cert-generator:0.11.06ba7e1608286
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
1
ghcr.io/drogue-iot/topic-strimzi-operator:0.11.05253fbf8d04c
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
1
ghcr.io/drogue-iot/ttn-operator:0.11.07dd5ac80c8f1
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
1
ghcr.io/drogue-iot/user-auth-service:0.11.0adebc40ddf98
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
1
ghcr.io/drogue-iot/websocket-integration:0.11.0372dcd370945
libarchive@3.5.3-3.el9
0:3.5.3-4.el9
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.3
1
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
libarchive@3.3.2-8.el8_1
0:3.3.3-5.el8
1
ghcr.io/k8s-at-home/apache-musicindex:v1.4.1-2c9bd82dc5fda
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.3
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.3
1
ghcr.io/mjohnson9/docker-pleroma:v0.1.44f08e2823756
libarchive@3.6.1-r0
3.6.1-r1
1
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
libarchive@3.4.0-2ubuntu1.2
3.4.0-2ubuntu1.3
1
quay.io/backube/scribe:0.2.0cdefc81c6b2e
libarchive@3.3.3-1.el8
0:3.3.3-5.el8
1
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
libarchive@3.3.3-1.el8
0:3.3.3-5.el8
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
libarchive@3.3.3-1.el8
0:3.3.3-5.el8
1
quay.io/fiware/apollo:0.0.1055330b1b60c1
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8
1
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
libarchive@3.3.3-1.el8
0:3.3.3-5.el8
1
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8
1
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
libarchive@3.3.3-1.el8
0:3.3.3-5.el8
1
quay.io/fiware/trusted-issuers-registry:0.11.1a8a9ec461034
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8
1
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
1
quay.io/flomesh/fsm-bootstrap-ubi8:0.1.8-ubi.6e6d7afb1a4bf
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
1
quay.io/flomesh/fsm-ingress-pipy-ubi8:0.1.8-ubi.6fce990dece01
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
1
quay.io/flomesh/fsm-manager-ubi8:0.1.8-ubi.63590af73f65a
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
1
quay.io/flomesh/osm-edge-bootstrap-ubi8:1.2.1e048bc7a17c2
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
1
quay.io/flomesh/osm-edge-controller-ubi8:1.2.1674f45865af1
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
1
quay.io/flomesh/osm-edge-crds-ubi8:1.2.1c3bc5e7a70e6
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
1
quay.io/flomesh/osm-edge-injector-ubi8:1.2.18e9c39c34e89
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
1
quay.io/flomesh/osm-edge-preinstall-ubi8:1.2.1f94282a9cfec
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
1
quay.io/flomesh/pipy-repo-ubi8:0.70.0-469912fdf6c183
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
1
quay.io/flomesh/pipy-ubi8:0.50.0-8824352dca6672
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
1
quay.io/flomesh/pipy-ubi8:0.70.0-4635d87a381432
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
libarchive@3.3.2-8.el8_1
0:3.3.3-5.el8
1
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
libarchive@3.3.3-1.el8
0:3.3.3-5.el8
1
quay.io/keycloak/keycloak:20.0.18830f76112b6
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
1
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
1
quay.io/keycloak/keycloak-operator:19.0.3-legacy09d52508fee9
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8
1
quay.io/keycloak/keycloak-operator:19.0.2-legacy15fa0ed662b1
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8
1
quay.io/keycloak/keycloak-operator:18.0.0-legacy36ce77526145
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8
1
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
libarchive@3.3.3-4.el8
0:3.3.3-5.el8
1
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8
1
quay.io/mcouliba/quarkus-serverless:1.0c2851757eca4
libarchive@3.3.2-8.el8_1
0:3.3.3-5.el8
1
quay.io/minio/mc:RELEASE.2022-10-20T23-26-33Z50ee58bc9770
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8
1
quay.io/minio/mc:RELEASE.2022-09-16T09-16-47Z546a8b52d7b0
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8
1
quay.io/minio/minio:RELEASE.2022-09-17T00-09-45Zc3d20bc2ea08
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8
1
quay.io/minio/minio:RELEASE.2022-10-24T18-35-07Zd853057f2800
libarchive@3.3.3-3.el8_5
0:3.3.3-5.el8
1
quay.io/mongodb/mongodb-kubernetes-operator:0.3.0107a7c73af59
libarchive@3.3.2-9.el8
0:3.3.3-5.el8
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.