StackRadar

CVE-2022-3736

High

Advisory

Published 25 Jan 2023In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.487
99th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
15
of 17,781 indexed, latest versions
Container images
14
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 15 of 17,781 indexed charts deploy, on 14 images.

Affected packageAffected versionsFixed inImages
bindapk9.16.20-r1, 9.16.25-r0, 9.16.27-r0, 9.16.29-r0+3 more9.16.37-r0, 9.18.11-r010
bind9deb1:9.18.1-1ubuntu1.11:9.18.1-1ubuntu1.34
OSV records
ALPINE-CVE-2022-3736UBUNTU-CVE-2022-3736
Also known as
USN-5827-1

Charts affected

15 by stars
ChartLatestAffected imagesRadar Score
home-assistantgeek-cookbookVerified publisher13.5.01 of 1See more

home-assistant geek-cookbook 13.5.0

1 of the 1 container images this version deploys carry CVE-2022-3736.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2022.5.4ec6d67fbedfa
bind@9.16.20-r1
9.16.37-r0

Open the chart page →

7,705
ecr-proxyevryfs-ossVerified publisher0.2.91 of 1See more

ecr-proxy evryfs-oss 0.2.9

1 of the 1 container images this version deploys carry CVE-2022-3736.

Container imageDigestPackageFixed in
esailors/aws-ecr-http-proxy:1.5.15608ae045fa7
bind@9.16.27-r0
9.16.37-r0

Open the chart page →

1,523
blockygeek-cookbookVerified publisher10.5.21 of 1See more

blocky geek-cookbook 10.5.2

1 of the 1 container images this version deploys carry CVE-2022-3736.

Container imageDigestPackageFixed in
ghcr.io/0xerr0r/blocky:v0.18b15824464acb
bind@9.16.25-r0
9.16.37-r0

Open the chart page →

3,030
ueransimadaptivenetlabVerified publisher1.0.31 of 2See more

ueransim adaptivenetlab 1.0.3

1 of the 2 container images this version deploys carry CVE-2022-3736.

Container imageDigestPackageFixed in
openverso/ueransim:3.2.6733f1232b7d3
bind@9.16.33-r0
9.16.37-r0

Open the chart page →

1,389
sonarrgeek-cookbookVerified publisher16.3.21 of 1See more

sonarr geek-cookbook 16.3.2

1 of the 1 container images this version deploys carry CVE-2022-3736.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
bind9@1:9.18.1-1ubuntu1.1
1:9.18.1-1ubuntu1.3

Open the chart page →

13,025
librenmsmidokura-communityVerified publisher0.3.21 of 6See more

librenms midokura-community 0.3.2

1 of the 6 container images this version deploys carry CVE-2022-3736.

Container imageDigestPackageFixed in
librenms/librenms:22.4.14f1f3d667cc7
bind@9.16.27-r0
9.16.37-r0

Open the chart page →

8,967
unboundpascaliskeVerified publisher2.0.01 of 1See more

unbound pascaliske 2.0.0

1 of the 1 container images this version deploys carry CVE-2022-3736.

Container imageDigestPackageFixed in
ghcr.io/pascaliske/unbound:0.1.09009fbd2ef16
bind@9.18.9-r0
9.18.11-r0

Open the chart page →

1,957
nzbgetgeek-cookbookVerified publisher12.4.21 of 1See more

nzbget geek-cookbook 12.4.2

1 of the 1 container images this version deploys carry CVE-2022-3736.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
bind9@1:9.18.1-1ubuntu1.1
1:9.18.1-1ubuntu1.3

Open the chart page →

12,076
pod-gatewaygeek-cookbookVerified publisher5.6.21 of 2See more

pod-gateway geek-cookbook 5.6.2

1 of the 2 container images this version deploys carry CVE-2022-3736.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/pod-gateway:v1.6.1dcb2d814a4f7
bind@9.16.29-r0
9.16.37-r0

Open the chart page →

2,355
radarrgeek-cookbookVerified publisher16.3.21 of 1See more

radarr geek-cookbook 16.3.2

1 of the 1 container images this version deploys carry CVE-2022-3736.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
bind9@1:9.18.1-1ubuntu1.1
1:9.18.1-1ubuntu1.3

Open the chart page →

10,379
rtorrent-rutorrentgeek-cookbookVerified publisher1.1.21 of 1See more

rtorrent-rutorrent geek-cookbook 1.1.2

1 of the 1 container images this version deploys carry CVE-2022-3736.

Container imageDigestPackageFixed in
crazymax/rtorrent-rutorrent:3.10-0.9.8-0.13.8fb307f5b87bf
bind@9.18.10-r0
9.18.11-r0

Open the chart page →

4,232
http-headershttp-headers1.2.11 of 1See more

http-headers http-headers 1.2.1

1 of the 1 container images this version deploys carry CVE-2022-3736.

Container imageDigestPackageFixed in
quay.io/k8start/http-headers:1.2.0c7a9987f2ac5
bind@9.16.33-r0
9.16.37-r0

Open the chart page →

2,009
acmemosquitto-helm-chart0.2.01 of 2See more

acme mosquitto-helm-chart 0.2.0

1 of the 2 container images this version deploys carry CVE-2022-3736.

Container imageDigestPackageFixed in
neilpang/acme.sh:3.0.2595809ad43a2
bind@9.16.25-r0
9.16.37-r0

Open the chart page →

2,050
elasticsearchsvtech-public-helm-charts1.0.01 of 1See more

elasticsearch svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-3736.

Container imageDigestPackageFixed in
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
bind9@1:9.18.1-1ubuntu1.1
1:9.18.1-1ubuntu1.3

Open the chart page →

12,048
preparationsvtech-public-helm-charts1.0.01 of 1See more

preparation svtech-public-helm-charts 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-3736.

Container imageDigestPackageFixed in
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
bind9@1:9.18.1-1ubuntu1.1
1:9.18.1-1ubuntu1.3

Open the chart page →

12,048

Container images carrying it

14 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
bind9@1:9.18.1-1ubuntu1.1
1:9.18.1-1ubuntu1.3
2
crazymax/rtorrent-rutorrent:3.10-0.9.8-0.13.8fb307f5b87bf
bind@9.18.10-r0
9.18.11-r0
1
esailors/aws-ecr-http-proxy:1.5.15608ae045fa7
bind@9.16.27-r0
9.16.37-r0
1
librenms/librenms:22.4.14f1f3d667cc7
bind@9.16.27-r0
9.16.37-r0
1
neilpang/acme.sh:3.0.2595809ad43a2
bind@9.16.25-r0
9.16.37-r0
1
openverso/ueransim:3.2.6733f1232b7d3
bind@9.16.33-r0
9.16.37-r0
1
ghcr.io/0xerr0r/blocky:v0.18b15824464acb
bind@9.16.25-r0
9.16.37-r0
1
ghcr.io/home-assistant/home-assistant:2022.5.4ec6d67fbedfa
bind@9.16.20-r1
9.16.37-r0
1
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
bind9@1:9.18.1-1ubuntu1.1
1:9.18.1-1ubuntu1.3
1
ghcr.io/k8s-at-home/pod-gateway:v1.6.1dcb2d814a4f7
bind@9.16.29-r0
9.16.37-r0
1
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
bind9@1:9.18.1-1ubuntu1.1
1:9.18.1-1ubuntu1.3
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
bind9@1:9.18.1-1ubuntu1.1
1:9.18.1-1ubuntu1.3
1
ghcr.io/pascaliske/unbound:0.1.09009fbd2ef16
bind@9.18.9-r0
9.18.11-r0
1
quay.io/k8start/http-headers:1.2.0c7a9987f2ac5
bind@9.16.33-r0
9.16.37-r0
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.