StackRadar

CVE-2022-42898

High

Advisory

Published 19 Nov 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.8
base score, highest
EPSS
0.064
93rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,018
of 17,790 indexed, latest versions
Container images
1,029
deployed by those charts
Fix available
5 of 5
affected packages

Red Hat Enhancement Advisory: krb5 bug fix update

Carried by container images the latest versions of 1,018 of 17,790 indexed charts deploy, on 1,029 images.

Affected packageAffected versionsFixed inImages
krb5deb1.12+dfsg-2ubuntu5, 1.12+dfsg-2ubuntu5.1, 1.12+dfsg-2ubuntu5.3, 1.12+dfsg-2ubuntu5.4+17 more1.12+dfsg-2ubuntu5.4+esm3, 1.13.2+dfsg-5ubuntu2.2+esm3, 1.16-2ubuntu0.3, 1.17-3+deb10u5+3 more773
heimdaldeb1.6~git20131207+dfsg-1ubuntu1, 1.6~git20131207+dfsg-1ubuntu1.2, 1.7~git20150920+dfsg-4ubuntu1.16.04.1, 7.5.0+dfsg-1+5 more1.6~git20131207+dfsg-1ubuntu1.2+esm3, 1.7~git20150920+dfsg-4ubuntu1.16.04.1+esm3, 7.5.0+dfsg-1ubuntu0.3, 7.7.0+dfsg-1ubuntu1.3274
krb5rpm1.15.1-37.el7_6, 1.15.1-37.el7_7.2, 1.15.1-46.el7, 1.15.1-50.el7+19 more0:1.15.1-55.el7_9, 0:1.18.2-25.el8_8, 0:1.19.1-24.el9_1, 1.16.3-150100.3.27.1+1 more179
krb5apk1.19.2-r4, 1.19.3-r01.19.4-r057
sambadeb2:4.3.11+dfsg-0ubuntu0.16.04.18, 2:4.7.6+dfsg~ubuntu-0ubuntu2.15, 2:4.13.17~dfsg-0ubuntu1.20.04.12:4.3.11+dfsg-0ubuntu0.16.04.34+esm2, 2:4.7.6+dfsg~ubuntu-0ubuntu2.29+esm1, 2:4.15.13+dfsg-0ubuntu0.20.04.14
OSV records
ALPINE-CVE-2022-42898RHEA-2023:3850RHSA-2022:8637RHSA-2022:8640UBUNTU-CVE-2022-42898DLA-3213-1DSA-5286-1openSUSE-SU-2024:12524-1SUSE-SU-2022:4155-1
Also known as
RHSA-2022:8638, RHSA-2022:8639, RHSA-2022:8641, RHSA-2022:8648, RHSA-2022:8662, USN-5800-1, USN-5822-1, USN-5822-2, USN-5828-1, USN-5936-1, USN-7582-1

Charts affected

1,018 by stars
ChartLatestAffected imagesRadar Score
wbaas-backupwbstack0.1.01 of 1See more

wbaas-backup wbstack 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
ghcr.io/wmde/wbaas-backup:v0.1.78e6a9516eac0
heimdal@7.5.0+dfsg-1
krb5@1.16-2ubuntu0.2
7.5.0+dfsg-1ubuntu0.3
1.16-2ubuntu0.3

Open the chart page →

9,752
drillwearefrank1.3.61 of 3See more

drill wearefrank 1.3.6

1 of the 3 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
apache/drill:1.21.11f96558fd292
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3

Open the chart page →

9,403
weather-chartweather-web-app0.1.01 of 1See more

weather-chart weather-web-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
zohardocker12/weather_app_flask:latestb86d60dbb68d
krb5@1.17-3+deb10u1
1.17-3+deb10u5

Open the chart page →

2,671
webapp-chartwebappchart1.0.01 of 1See more

webapp-chart webappchart 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
amagdi888/my-repo:hello-appd8a10fc8faf6
krb5@1.19.3-r0
1.19.4-r0

Open the chart page →

1,202
sonarqubewebencryptor6.7.31 of 3See more

sonarqube webencryptor 6.7.3

1 of the 3 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
library/sonarqube:8.2-communitya246bc64207e
krb5@1.17-3
1.17-3+deb10u5

Open the chart page →

5,465
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2

Open the chart page →

14,414
webhookie-allwebhookie0.1.22 of 3See more

webhookie-all webhookie 0.1.2

2 of the 3 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
krb5@1.18.2-8.el8
0:1.18.2-25.el8_8

Open the chart page →

28,697
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-nginx:latest6de60c83128d
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3

Open the chart page →

7,562
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
istio/kubectl:1.5.10dbb7726d1bf0
heimdal@7.5.0+dfsg-1
krb5@1.16-2ubuntu0.1
7.5.0+dfsg-1ubuntu0.3
1.16-2ubuntu0.3

Open the chart page →

10,859
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2

Open the chart page →

15,288
miniowenerme8.0.101 of 1See more

minio wenerme 8.0.10

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
krb5@1.18.2-5.el8
0:1.18.2-25.el8_8

Open the chart page →

6,922
minio-standalonewenerme1.0.21 of 1See more

minio-standalone wenerme 1.0.2

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2022-01-04T07-41-07Z1484c87239ea
krb5@1.18.2-14.el8
0:1.18.2-25.el8_8

Open the chart page →

6,144
vaultwardenwitcom-gmbh0.2.01 of 2See more

vaultwarden witcom-gmbh 0.2.0

1 of the 2 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
vaultwarden/server:1.25.239f34c5159a2
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3

Open the chart page →

1,586
wp-gats-helmwordpress-gatsby0.0.11 of 3See more

wp-gats-helm wordpress-gatsby 0.0.1

1 of the 3 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
library/wordpress:6.0.0-php8.0-apache277c6c25980f
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3

Open the chart page →

2,021
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
krb5@1.18.2-14.el8
0:1.18.2-25.el8_8

Open the chart page →

11,603
keycloakxzaks2.2.01 of 1See more

keycloakx zaks 2.2.0

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8

Open the chart page →

6,016
posthogzeet0.23.21 of 9See more

posthog zeet 0.23.2

1 of the 9 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.19.07a85f522c5bc
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8

Open the chart page →

3,697
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
heimdal@7.5.0+dfsg-1
7.5.0+dfsg-1ubuntu0.3
yandex/clickhouse-server:21.3.204eccfffb01d7
heimdal@7.7.0+dfsg-1ubuntu1
7.7.0+dfsg-1ubuntu1.3

Open the chart page →

9,256

Container images carrying it

1,029 by charts deploying them

A fixed version is listed for 5 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
krb5@1.19.2-2
1.19.2-2ubuntu0.1
1
ghcr.io/k8s-at-home/readarr:v0.1.0.715ad943e9309e4
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
krb5@1.19.2-2
1.19.2-2ubuntu0.1
1
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
ghcr.io/k8s-at-home/theme-park:v1.7.3f8a5ec8f4669
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
ghcr.io/k8s-at-home/wireguard:v1.0.20210424448045c4270b
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
ghcr.io/kedacore/external-scaler-azure-cosmos-db:0.1.04985d164ead9
krb5@1.17-3+deb10u3
1.17-3+deb10u5
1
ghcr.io/komputing/fauceth:release4ab8fa4143b4
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
heimdal@7.5.0+dfsg-1ubuntu0.2
krb5@1.16-2ubuntu0.2
7.5.0+dfsg-1ubuntu0.3
1.16-2ubuntu0.3
1
ghcr.io/kubeshop/k8s-sidecar:ignore-initial-events7f583a36a764
krb5@1.19.3-r0
1.19.4-r0
1
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
ghcr.io/kvaps/linstor-controller:v1.14.000ce11c31087
krb5@1.17-3+deb10u2
1.17-3+deb10u5
1
ghcr.io/kvaps/linstor-satellite:v1.14.0a573fb9bc809
krb5@1.17-3+deb10u2
1.17-3+deb10u5
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
ghcr.io/leoquote/tinyproxy_exporter:master6b4103d88dbb
krb5@1.18.3-6
1.18.3-6+deb11u3
1
ghcr.io/libretime/libretime-legacy:latest35b4531189c2
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u3
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
heimdal@7.5.0+dfsg-1
krb5@1.16-2ubuntu0.2
7.5.0+dfsg-1ubuntu0.3
1.16-2ubuntu0.3
1
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
krb5@1.19.2-2
1.19.2-2ubuntu0.1
1
ghcr.io/linuxserver/resilio-sync:version-2.7.2.1375605b6d544028
heimdal@7.5.0+dfsg-1
krb5@1.16-2ubuntu0.2
7.5.0+dfsg-1ubuntu0.3
1.16-2ubuntu0.3
1
ghcr.io/lsst-sqre/strimzi-registry-operator:0.6.07e25f7048aff
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
ghcr.io/melodyyangaws/hive-metastore:3.0.0e949b0f733f0
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
ghcr.io/nathanvaughn/webtrees:2.0.1969423a100fab
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
ghcr.io/paperless-ngx/paperless-ngx:1.8.09bbc9a90641e
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
ghcr.io/privacyengineering/collector-go:main7217f1a4fa28
krb5@1.17-3+deb10u3
1.17-3+deb10u5
1
ghcr.io/privacyengineering/consumer:main73f59c032812
krb5@1.17-3+deb10u3
1.17-3+deb10u5
1
ghcr.io/privacyengineering/hawk-monitor:master13309f068a56
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
ghcr.io/savonet/liquidsoap:v2.0.19e08148e1055
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
ghcr.io/simoncaron/velero-notifications:1.0.0d058963d4de7
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
heimdal@7.7.0+dfsg-1ubuntu1.1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
heimdal@7.7.0+dfsg-1ubuntu1.1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
heimdal@7.7.0+dfsg-1ubuntu1.1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
ghcr.io/star-whale/server:0.6.158368359c8dd0
krb5@1.17-6ubuntu4.1
1.17-6ubuntu4.2
1
ghcr.io/volosoft/eshoponabp/app-authserver:1.0.022ce496c67d7
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
ghcr.io/volosoft/eshoponabp/app-publicweb:1.0.07e53010dda55
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
ghcr.io/volosoft/eshoponabp/gateway-web:1.0.026465a2bf671
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
ghcr.io/volosoft/eshoponabp/gateway-web-public:1.0.050cab15c80d9
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
ghcr.io/volosoft/eshoponabp/service-administration:1.0.0206a9bee17a8
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
ghcr.io/volosoft/eshoponabp/service-basket:1.0.0dd5ce454072e
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
ghcr.io/volosoft/eshoponabp/service-catalog:1.0.07ecb00f53d99
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
ghcr.io/volosoft/eshoponabp/service-identity:1.0.0e53bf47b62d0
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
ghcr.io/volosoft/eshoponabp/service-ordering:1.0.15e836b17337f
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
ghcr.io/volosoft/eshoponabp/service-payment:1.0.02ca91145099c
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.