StackRadar

CVE-2022-42898

High

Advisory

Published 19 Nov 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.8
base score, highest
EPSS
0.064
93rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,018
of 17,790 indexed, latest versions
Container images
1,029
deployed by those charts
Fix available
5 of 5
affected packages

Red Hat Enhancement Advisory: krb5 bug fix update

Carried by container images the latest versions of 1,018 of 17,790 indexed charts deploy, on 1,029 images.

Affected packageAffected versionsFixed inImages
krb5deb1.12+dfsg-2ubuntu5, 1.12+dfsg-2ubuntu5.1, 1.12+dfsg-2ubuntu5.3, 1.12+dfsg-2ubuntu5.4+17 more1.12+dfsg-2ubuntu5.4+esm3, 1.13.2+dfsg-5ubuntu2.2+esm3, 1.16-2ubuntu0.3, 1.17-3+deb10u5+3 more773
heimdaldeb1.6~git20131207+dfsg-1ubuntu1, 1.6~git20131207+dfsg-1ubuntu1.2, 1.7~git20150920+dfsg-4ubuntu1.16.04.1, 7.5.0+dfsg-1+5 more1.6~git20131207+dfsg-1ubuntu1.2+esm3, 1.7~git20150920+dfsg-4ubuntu1.16.04.1+esm3, 7.5.0+dfsg-1ubuntu0.3, 7.7.0+dfsg-1ubuntu1.3274
krb5rpm1.15.1-37.el7_6, 1.15.1-37.el7_7.2, 1.15.1-46.el7, 1.15.1-50.el7+19 more0:1.15.1-55.el7_9, 0:1.18.2-25.el8_8, 0:1.19.1-24.el9_1, 1.16.3-150100.3.27.1+1 more179
krb5apk1.19.2-r4, 1.19.3-r01.19.4-r057
sambadeb2:4.3.11+dfsg-0ubuntu0.16.04.18, 2:4.7.6+dfsg~ubuntu-0ubuntu2.15, 2:4.13.17~dfsg-0ubuntu1.20.04.12:4.3.11+dfsg-0ubuntu0.16.04.34+esm2, 2:4.7.6+dfsg~ubuntu-0ubuntu2.29+esm1, 2:4.15.13+dfsg-0ubuntu0.20.04.14
OSV records
ALPINE-CVE-2022-42898RHEA-2023:3850RHSA-2022:8637RHSA-2022:8640UBUNTU-CVE-2022-42898DLA-3213-1DSA-5286-1openSUSE-SU-2024:12524-1SUSE-SU-2022:4155-1
Also known as
RHSA-2022:8638, RHSA-2022:8639, RHSA-2022:8641, RHSA-2022:8648, RHSA-2022:8662, USN-5800-1, USN-5822-1, USN-5822-2, USN-5828-1, USN-5936-1, USN-7582-1

Charts affected

1,018 by stars
ChartLatestAffected imagesRadar Score
wbaas-backupwbstack0.1.01 of 1See more

wbaas-backup wbstack 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
ghcr.io/wmde/wbaas-backup:v0.1.78e6a9516eac0
heimdal@7.5.0+dfsg-1
krb5@1.16-2ubuntu0.2
7.5.0+dfsg-1ubuntu0.3
1.16-2ubuntu0.3

Open the chart page →

9,752
drillwearefrank1.3.61 of 3See more

drill wearefrank 1.3.6

1 of the 3 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
apache/drill:1.21.11f96558fd292
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3

Open the chart page →

9,403
weather-chartweather-web-app0.1.01 of 1See more

weather-chart weather-web-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
zohardocker12/weather_app_flask:latestb86d60dbb68d
krb5@1.17-3+deb10u1
1.17-3+deb10u5

Open the chart page →

2,671
webapp-chartwebappchart1.0.01 of 1See more

webapp-chart webappchart 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
amagdi888/my-repo:hello-appd8a10fc8faf6
krb5@1.19.3-r0
1.19.4-r0

Open the chart page →

1,202
sonarqubewebencryptor6.7.31 of 3See more

sonarqube webencryptor 6.7.3

1 of the 3 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
library/sonarqube:8.2-communitya246bc64207e
krb5@1.17-3
1.17-3+deb10u5

Open the chart page →

5,465
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2

Open the chart page →

14,414
webhookie-allwebhookie0.1.22 of 3See more

webhookie-all webhookie 0.1.2

2 of the 3 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
krb5@1.18.2-8.el8
0:1.18.2-25.el8_8

Open the chart page →

28,697
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-nginx:latest6de60c83128d
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3

Open the chart page →

7,562
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
istio/kubectl:1.5.10dbb7726d1bf0
heimdal@7.5.0+dfsg-1
krb5@1.16-2ubuntu0.1
7.5.0+dfsg-1ubuntu0.3
1.16-2ubuntu0.3

Open the chart page →

10,859
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2

Open the chart page →

15,288
miniowenerme8.0.101 of 1See more

minio wenerme 8.0.10

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
krb5@1.18.2-5.el8
0:1.18.2-25.el8_8

Open the chart page →

6,922
minio-standalonewenerme1.0.21 of 1See more

minio-standalone wenerme 1.0.2

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2022-01-04T07-41-07Z1484c87239ea
krb5@1.18.2-14.el8
0:1.18.2-25.el8_8

Open the chart page →

6,144
vaultwardenwitcom-gmbh0.2.01 of 2See more

vaultwarden witcom-gmbh 0.2.0

1 of the 2 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
vaultwarden/server:1.25.239f34c5159a2
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3

Open the chart page →

1,586
wp-gats-helmwordpress-gatsby0.0.11 of 3See more

wp-gats-helm wordpress-gatsby 0.0.1

1 of the 3 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
library/wordpress:6.0.0-php8.0-apache277c6c25980f
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3

Open the chart page →

2,021
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
krb5@1.18.2-14.el8
0:1.18.2-25.el8_8

Open the chart page →

11,603
keycloakxzaks2.2.01 of 1See more

keycloakx zaks 2.2.0

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8

Open the chart page →

6,016
posthogzeet0.23.21 of 9See more

posthog zeet 0.23.2

1 of the 9 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.19.07a85f522c5bc
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8

Open the chart page →

3,697
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
heimdal@7.5.0+dfsg-1
7.5.0+dfsg-1ubuntu0.3
yandex/clickhouse-server:21.3.204eccfffb01d7
heimdal@7.7.0+dfsg-1ubuntu1
7.7.0+dfsg-1ubuntu1.3

Open the chart page →

9,256

Container images carrying it

1,029 by charts deploying them

A fixed version is listed for 5 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/wbstack/api:8x.9.11eee94f9f7a53
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u3
1
ghcr.io/wbstack/cradle:2.0.11c7a78c54f77
krb5@1.17-3+deb10u1
1.17-3+deb10u5
1
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
ghcr.io/wbstack/quickstatements:1.3.588423e422ea8
krb5@1.17-3+deb10u1
1.17-3+deb10u5
1
ghcr.io/wbstack/widar:1.31702fc9df79f
krb5@1.17-3+deb10u1
1.17-3+deb10u5
1
ghcr.io/wmde/wbaas-backup:v0.1.78e6a9516eac0
heimdal@7.5.0+dfsg-1
krb5@1.16-2ubuntu0.2
7.5.0+dfsg-1ubuntu0.3
1.16-2ubuntu0.3
1
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
mcr.microsoft.com/oss/bitnami/redis:6.0.8.9e1e9cf5297a6
krb5@1.17-3+deb10u2
1.17-3+deb10u5
1
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
heimdal@7.5.0+dfsg-1
krb5@1.16-2ubuntu0.2
7.5.0+dfsg-1ubuntu0.3
1.16-2ubuntu0.3
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
krb5@1.19.2-2
1.19.2-2ubuntu0.1
1
quay.io/backube/scribe:0.2.0cdefc81c6b2e
krb5@1.18.2-8.el8
0:1.18.2-25.el8_8
1
quay.io/bentoml/yatai:0.4.614b482c1f1b8
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
krb5@1.18.2-8.el8
0:1.18.2-25.el8_8
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
krb5@1.18.2-8.el8
0:1.18.2-25.el8_8
1
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
heimdal@7.5.0+dfsg-1ubuntu0.1
krb5@1.16-2ubuntu0.2
7.5.0+dfsg-1ubuntu0.3
1.16-2ubuntu0.3
1
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
krb5@1.19.2-2
1.19.2-2ubuntu0.1
1
quay.io/fairwinds/yelb-appserver:v0.6.0fae21f06131f
krb5@1.17-3+deb10u3
1.17-3+deb10u5
1
quay.io/fiware/apollo:0.0.1055330b1b60c1
krb5@1.18.2-14.el8
0:1.18.2-25.el8_8
1
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
krb5@1.18.2-14.el8
0:1.18.2-25.el8_8
1
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
krb5@1.18.2-14.el8
0:1.18.2-25.el8_8
1
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
krb5@1.18.2-8.3.el8_4
0:1.18.2-25.el8_8
1
quay.io/fiware/trusted-issuers-registry:0.11.1a8a9ec461034
krb5@1.18.2-14.el8
0:1.18.2-25.el8_8
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
krb5@1.19.2-2
1.19.2-2ubuntu0.1
1
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8
1
quay.io/flomesh/fsm-bootstrap-ubi8:0.1.8-ubi.6e6d7afb1a4bf
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8
1
quay.io/flomesh/fsm-ingress-pipy-ubi8:0.1.8-ubi.6fce990dece01
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8
1
quay.io/flomesh/fsm-manager-ubi8:0.1.8-ubi.63590af73f65a
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8
1
quay.io/flomesh/osm-edge-bootstrap-ubi8:1.2.1e048bc7a17c2
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8
1
quay.io/flomesh/osm-edge-controller-ubi8:1.2.1674f45865af1
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8
1
quay.io/flomesh/osm-edge-crds-ubi8:1.2.1c3bc5e7a70e6
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8
1
quay.io/flomesh/osm-edge-injector-ubi8:1.2.18e9c39c34e89
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8
1
quay.io/flomesh/osm-edge-preinstall-ubi8:1.2.1f94282a9cfec
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8
1
quay.io/flomesh/pipy-repo-ubi8:0.70.0-469912fdf6c183
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8
1
quay.io/flomesh/pipy-ubi8:0.50.0-8824352dca6672
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8
1
quay.io/flomesh/pipy-ubi8:0.70.0-4635d87a381432
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8
1
quay.io/fluentd_elasticsearch/fluentd:v4.2.399079df58561
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u3
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
krb5@1.17-18.el8
0:1.18.2-25.el8_8
1
quay.io/k8start/http-headers:1.2.0c7a9987f2ac5
krb5@1.19.3-r0
1.19.4-r0
1
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
krb5@1.18.2-8.el8
0:1.18.2-25.el8_8
1
quay.io/keycloak/keycloak:20.0.18830f76112b6
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8
1
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8
1
quay.io/keycloak/keycloak-operator:19.0.3-legacy09d52508fee9
krb5@1.18.2-14.el8
0:1.18.2-25.el8_8
1
quay.io/keycloak/keycloak-operator:19.0.2-legacy15fa0ed662b1
krb5@1.18.2-14.el8
0:1.18.2-25.el8_8
1
quay.io/keycloak/keycloak-operator:18.0.0-legacy36ce77526145
krb5@1.18.2-14.el8
0:1.18.2-25.el8_8
1
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8
1
quay.io/kiwigrid/k8s-sidecar:1.15.61f025ae37b7b
krb5@1.19.2-r4
1.19.4-r0
1
quay.io/kiwigrid/k8s-sidecar:1.21.0710e23b489c5
krb5@1.19.3-r0
1.19.4-r0
1
quay.io/kiwigrid/k8s-sidecar:1.15.1a25886092fa4
krb5@1.19.2-r4
1.19.4-r0
1
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
krb5@1.18.2-14.el8
0:1.18.2-25.el8_8
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.