CVE-2022-41409
HighAdvisory
Published 18 Jul 2023In the index since 5 Sept 2026
- Severity
- High
- worst across findings
- CVSS
- 7.5
- base score, highest
- EPSS
- 0.011
- 64th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 689
- of 17,781 indexed, latest versions
- Container images
- 609
- deployed by those charts
- Fix available
- 1 of 2
- affected packages
The matching OSV records carry no description.
Carried by container images the latest versions of 689 of 17,781 indexed charts deploy, on 609 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| pcre2deb | 10.21-1, 10.34-7, 10.34-7ubuntu0.1, 10.39-3+ubuntu20.04.1+deb.sury.org+2+3 more | no fix listed | 545 |
| pcre2apk | 10.39-r0, 10.40-r0 | 10.42-r0 | 64 |
- OSV records
- ALPINE-CVE-2022-41409UBUNTU-CVE-2022-41409
Charts affected
689 by stars
Container images carrying it
609 by charts deploying them
A fixed version is listed for 1 of the 2 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| andrewgolikov55/ | fcc001b61c0e | pcre2 | no fix listed | 1 |
| andrewmackrodt/ | 33f9080470c9 | pcre2 | no fix listed | 1 |
| anguda/ | c435285fc241 | pcre2 | no fix listed | 1 |
| anonaddy/ | 957a95565166 | pcre2 | 10.42-r0 | 1 |
| apache/ | 80136ae753ee | pcre2 | no fix listed | 1 |
| apache/ | afa47bf1692a | pcre2 | no fix listed | 1 |
| apache/ | 63b8e3e40742 | pcre2 | no fix listed | 1 |
| apachepulsar/ | 16f9fdab3fa6 | pcre2 | no fix listed | 1 |
| apachepulsar/ | 3b262ab7a7d9 | pcre2 | no fix listed | 1 |
| apachepulsar/ | 9c9947de139d | pcre2 | no fix listed | 1 |
| apachepulsar/ | d056c89b7131 | pcre2 | no fix listed | 1 |
| apachepulsar/ | d538416d5afe | pcre2 | no fix listed | 1 |
| apache/ | 76c176e8a0e4 | pcre2 | no fix listed | 1 |
| apache/ | c8fb51195444 | pcre2 | no fix listed | 1 |
| apache/ | 133d35d2c263 | pcre2 | no fix listed | 1 |
| apache/ | b4ec8c18d079 | pcre2 | no fix listed | 1 |
| apache/ | 295f1dc87d98 | pcre2 | no fix listed | 1 |
| apache/ | 80530f0308a5 | pcre2 | no fix listed | 1 |
| apache/ | 92d055a84e9e | pcre2 | no fix listed | 1 |
| aquasec/ | 973d0df16189 | pcre2 | 10.42-r0 | 1 |
| assistiot/ | 6a107f224c34 | pcre2 | no fix listed | 1 |
| assistiot/ | 20338b353aaf | pcre2 | 10.42-r0 | 1 |
| assistiot/ | d157fbe150e3 | pcre2 | no fix listed | 1 |
| assistiot/ | e9bae124095f | pcre2 | no fix listed | 1 |
| assistiot/ | 30812ba93555 | pcre2 | no fix listed | 1 |
| assistiot/ | 3fe850384689 | pcre2 | 10.42-r0 | 1 |
| assistiot/ | ea254b6d8a31 | pcre2 | no fix listed | 1 |
| assistiot/ | 25fc9f373524 | pcre2 | 10.42-r0 | 1 |
| assistiot/ | e5ae539ce2cb | pcre2 | no fix listed | 1 |
| atlassian/ | 3b9222ab32ef | pcre2 | no fix listed | 1 |
| atlassian/ | 37bc46cbec1a | pcre2 | no fix listed | 1 |
| b4bz/ | 48a81e130470 | pcre2 | 10.42-r0 | 1 |
| b4bz/ | 678ac390d7c9 | pcre2 | 10.42-r0 | 1 |
| bbernhard/ | 549ad08d7e14 | pcre2 | no fix listed | 1 |
| beanbag/ | 6b840f546e1c | pcre2 | no fix listed | 1 |
| bicarus/ | b1dab0721e1c | pcre2 | no fix listed | 1 |
| bicarus/ | bed688d16762 | pcre2 | no fix listed | 1 |
| blakeblackshear/ | ae269270ad9e | pcre2 | no fix listed | 1 |
| blockscout/ | c365a8f2dc12 | pcre2 | 10.42-r0 | 1 |
| boxcutter/ | 84e13f01bcab | pcre2 | no fix listed | 1 |
| browserless/ | c81ae5585b47 | pcre2 | no fix listed | 1 |
| camunda/ | ab5abc09e407 | pcre2 | no fix listed | 1 |
| chaerr/ | 66833deec017 | pcre2 | no fix listed | 1 |
| chaosnative/ | 07b82a82a702 | pcre2 | 10.42-r0 | 1 |
| charmcli/ | 39523c1a6ba8 | pcre2 | 10.42-r0 | 1 |
| checkmk/ | c11b422210c4 | pcre2 | no fix listed | 1 |
| chetangautamm/ | e7f7049e1544 | pcre2 | no fix listed | 1 |
| cheveo/ | 82240f890884 | pcre2 | no fix listed | 1 |
| chriseaton/ | 54c3384ce701 | pcre2 | no fix listed | 1 |
| circleci/ | 9bdc62f02162 | pcre2 | no fix listed | 1 |