StackRadar

CVE-2022-42898

High

Advisory

Published 19 Nov 2022In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.8
base score, highest
EPSS
0.064
93rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,018
of 17,787 indexed, latest versions
Container images
1,029
deployed by those charts
Fix available
5 of 5
affected packages

Red Hat Enhancement Advisory: krb5 bug fix update

Carried by container images the latest versions of 1,018 of 17,787 indexed charts deploy, on 1,029 images.

Affected packageAffected versionsFixed inImages
krb5deb1.12+dfsg-2ubuntu5, 1.12+dfsg-2ubuntu5.1, 1.12+dfsg-2ubuntu5.3, 1.12+dfsg-2ubuntu5.4+17 more1.12+dfsg-2ubuntu5.4+esm3, 1.13.2+dfsg-5ubuntu2.2+esm3, 1.16-2ubuntu0.3, 1.17-3+deb10u5+3 more773
heimdaldeb1.6~git20131207+dfsg-1ubuntu1, 1.6~git20131207+dfsg-1ubuntu1.2, 1.7~git20150920+dfsg-4ubuntu1.16.04.1, 7.5.0+dfsg-1+5 more1.6~git20131207+dfsg-1ubuntu1.2+esm3, 1.7~git20150920+dfsg-4ubuntu1.16.04.1+esm3, 7.5.0+dfsg-1ubuntu0.3, 7.7.0+dfsg-1ubuntu1.3274
krb5rpm1.15.1-37.el7_6, 1.15.1-37.el7_7.2, 1.15.1-46.el7, 1.15.1-50.el7+19 more0:1.15.1-55.el7_9, 0:1.18.2-25.el8_8, 0:1.19.1-24.el9_1, 1.16.3-150100.3.27.1+1 more179
krb5apk1.19.2-r4, 1.19.3-r01.19.4-r057
sambadeb2:4.3.11+dfsg-0ubuntu0.16.04.18, 2:4.7.6+dfsg~ubuntu-0ubuntu2.15, 2:4.13.17~dfsg-0ubuntu1.20.04.12:4.3.11+dfsg-0ubuntu0.16.04.34+esm2, 2:4.7.6+dfsg~ubuntu-0ubuntu2.29+esm1, 2:4.15.13+dfsg-0ubuntu0.20.04.14
OSV records
ALPINE-CVE-2022-42898RHEA-2023:3850RHSA-2022:8637RHSA-2022:8640UBUNTU-CVE-2022-42898DLA-3213-1DSA-5286-1openSUSE-SU-2024:12524-1SUSE-SU-2022:4155-1
Also known as
RHSA-2022:8638, RHSA-2022:8639, RHSA-2022:8641, RHSA-2022:8648, RHSA-2022:8662, USN-5800-1, USN-5822-1, USN-5822-2, USN-5828-1, USN-5936-1, USN-7582-1

Charts affected

1,018 by stars
ChartLatestAffected imagesRadar Score
wbaas-backupwbstack0.1.01 of 1See more

wbaas-backup wbstack 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
ghcr.io/wmde/wbaas-backup:v0.1.78e6a9516eac0
heimdal@7.5.0+dfsg-1
krb5@1.16-2ubuntu0.2
7.5.0+dfsg-1ubuntu0.3
1.16-2ubuntu0.3

Open the chart page →

9,748
drillwearefrank1.3.61 of 3See more

drill wearefrank 1.3.6

1 of the 3 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
apache/drill:1.21.11f96558fd292
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3

Open the chart page →

9,399
weather-chartweather-web-app0.1.01 of 1See more

weather-chart weather-web-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
zohardocker12/weather_app_flask:latestb86d60dbb68d
krb5@1.17-3+deb10u1
1.17-3+deb10u5

Open the chart page →

2,671
webapp-chartwebappchart1.0.01 of 1See more

webapp-chart webappchart 1.0.0

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
amagdi888/my-repo:hello-appd8a10fc8faf6
krb5@1.19.3-r0
1.19.4-r0

Open the chart page →

1,201
sonarqubewebencryptor6.7.31 of 3See more

sonarqube webencryptor 6.7.3

1 of the 3 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
library/sonarqube:8.2-communitya246bc64207e
krb5@1.17-3
1.17-3+deb10u5

Open the chart page →

5,462
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2

Open the chart page →

14,420
webhookie-allwebhookie0.1.22 of 3See more

webhookie-all webhookie 0.1.2

2 of the 3 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
krb5@1.18.2-8.el8
0:1.18.2-25.el8_8

Open the chart page →

28,699
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-nginx:latest6de60c83128d
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3

Open the chart page →

7,552
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
istio/kubectl:1.5.10dbb7726d1bf0
heimdal@7.5.0+dfsg-1
krb5@1.16-2ubuntu0.1
7.5.0+dfsg-1ubuntu0.3
1.16-2ubuntu0.3

Open the chart page →

10,857
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2

Open the chart page →

15,287
miniowenerme8.0.101 of 1See more

minio wenerme 8.0.10

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
krb5@1.18.2-5.el8
0:1.18.2-25.el8_8

Open the chart page →

6,915
minio-standalonewenerme1.0.21 of 1See more

minio-standalone wenerme 1.0.2

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2022-01-04T07-41-07Z1484c87239ea
krb5@1.18.2-14.el8
0:1.18.2-25.el8_8

Open the chart page →

6,138
vaultwardenwitcom-gmbh0.2.01 of 2See more

vaultwarden witcom-gmbh 0.2.0

1 of the 2 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
vaultwarden/server:1.25.239f34c5159a2
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3

Open the chart page →

1,585
wp-gats-helmwordpress-gatsby0.0.11 of 3See more

wp-gats-helm wordpress-gatsby 0.0.1

1 of the 3 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
library/wordpress:6.0.0-php8.0-apache277c6c25980f
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3

Open the chart page →

2,021
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
krb5@1.18.2-14.el8
0:1.18.2-25.el8_8

Open the chart page →

11,592
keycloakxzaks2.2.01 of 1See more

keycloakx zaks 2.2.0

1 of the 1 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8

Open the chart page →

6,016
posthogzeet0.23.21 of 9See more

posthog zeet 0.23.2

1 of the 9 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.19.07a85f522c5bc
krb5@1.18.2-22.el8_7
0:1.18.2-25.el8_8

Open the chart page →

3,697
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2022-42898.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
heimdal@7.5.0+dfsg-1
7.5.0+dfsg-1ubuntu0.3
yandex/clickhouse-server:21.3.204eccfffb01d7
heimdal@7.7.0+dfsg-1ubuntu1
7.7.0+dfsg-1ubuntu1.3

Open the chart page →

9,250

Container images carrying it

1,029 by charts deploying them

A fixed version is listed for 5 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
elastictranscoder/media-storage:f6d861a026208b8c2359
heimdal@7.5.0+dfsg-1
krb5@1.16-2ubuntu0.1
7.5.0+dfsg-1ubuntu0.3
1.16-2ubuntu0.3
1
elastictranscoder/transcoder:627e21dcb4a0327029e6
heimdal@7.5.0+dfsg-1
krb5@1.16-2ubuntu0.1
7.5.0+dfsg-1ubuntu0.3
1.16-2ubuntu0.3
1
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
heimdal@7.5.0+dfsg-1
krb5@1.16-2ubuntu0.1
7.5.0+dfsg-1ubuntu0.3
1.16-2ubuntu0.3
1
empathyco/elasticsearch:7.17.2-memlock03e724e41eeb
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
engrmth/bnkr:2.1.06d8464e6f0e8
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
erlangsolutions/wombatoam:4.1.284680c990147a
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u3
1
errbotio/errbot:6.1.900ee4e0953ab
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
esailors/aws-ecr-http-proxy:1.5.15608ae045fa7
krb5@1.19.3-r0
1.19.4-r0
1
esphome/esphome:1.18.03f51ec10e823
krb5@1.17-3+deb10u1
1.17-3+deb10u5
1
ethereumex/eth-stats-dashboard:v0.0.1a7603aa8df4c
heimdal@1.7~git20150920+dfsg-4ubuntu1.16.04.1
krb5@1.13.2+dfsg-5ubuntu2
1.7~git20150920+dfsg-4ubuntu1.16.04.1+esm3
1.13.2+dfsg-5ubuntu2.2+esm3
1
ethersphere/ethproxy:latest3a8a3926caa2
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u3
1
eventstore/eventstore:20.10.2-buster-slimc82d2479f468
krb5@1.17-3+deb10u1
1.17-3+deb10u5
1
evk02/mlflow:2.2.1ef6ff257ef35
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
expediagroup/pitchfork:1.314f2cf61e7de9
krb5@1.18.3-6
1.18.3-6+deb11u3
1
fanzynoodle/smeejas:0.0.15f9916c1a287
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
farberg/apache-knox-docker:1.6.14b4a22487394
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
fireflyiii/core:version-5.6.142f4283bd0cf7
krb5@1.17-3+deb10u3
1.17-3+deb10u5
1
fiware/ishare-satellite:1.2.0c3c1c8ccfb45
krb5@1.19.3-r0
1.19.4-r0
1
fiware/mintaka:0.7.092a3c5cf43c0
krb5@1.18.2-14.el8
0:1.18.2-25.el8_8
1
fiware/mintaka:latestefc6793388cc
krb5@1.18.2-14.el8
0:1.18.2-25.el8_8
1
fjvela/urjc-fjvela-worker:1.0.170cebf67bd66
krb5@1.17-3
1.17-3+deb10u5
1
flag5/clustersecret:0.0.94ad5748bfcc6
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
flofree/base-project:2.1.16b6486c5f81e
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
foldingathome/fah-gpu:latest5ef7742d1eb4
heimdal@7.5.0+dfsg-1
7.5.0+dfsg-1ubuntu0.3
1
fossology/fossology:4.2.18bd1f22ba7bb
krb5@1.17-3+deb10u4
1.17-3+deb10u5
1
foundationdb/foundationdb-kubernetes-sidecar:6.2.30-19ceb2f948c9f
krb5@1.17-3+deb10u1
1.17-3+deb10u5
1
frankescobar/allure-docker-service:2.21.08a4d7e9308de
heimdal@7.5.0+dfsg-1
krb5@1.16-2ubuntu0.1
7.5.0+dfsg-1ubuntu0.3
1.16-2ubuntu0.3
1
frankescobar/allure-docker-service:2.19.0cafa03b94dac
heimdal@7.5.0+dfsg-1
krb5@1.16-2ubuntu0.1
7.5.0+dfsg-1ubuntu0.3
1.16-2ubuntu0.3
1
free5gmano/nextepc-mongodb:latest36f806935519
heimdal@1.7~git20150920+dfsg-4ubuntu1.16.04.1
krb5@1.13.2+dfsg-5ubuntu2.1
1.7~git20150920+dfsg-4ubuntu1.16.04.1+esm3
1.13.2+dfsg-5ubuntu2.2+esm3
1
galaxy/cloudman-server:lateste5c265fe9fcd
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
galaxy/galaxy-init:v18.010267bad550e6
heimdal@1.6~git20131207+dfsg-1ubuntu1.2
krb5@1.12+dfsg-2ubuntu5.3
1.6~git20131207+dfsg-1ubuntu1.2+esm3
1.12+dfsg-2ubuntu5.4+esm3
1
galaxy/galaxy-stable:v18.018e577a626dfd
heimdal@1.6~git20131207+dfsg-1ubuntu1.2
krb5@1.12+dfsg-2ubuntu5.3
1.6~git20131207+dfsg-1ubuntu1.2+esm3
1.12+dfsg-2ubuntu5.4+esm3
1
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
heimdal@7.5.0+dfsg-1
krb5@1.16-2ubuntu0.1
7.5.0+dfsg-1ubuntu0.3
1.16-2ubuntu0.3
1
geoservercloud/geoserver-cloud-gateway:1.0-RC2ca58b74529cd
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
geoservercloud/geoserver-cloud-rest:1.0-RC25dc0c93a1710
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
geoservercloud/geoserver-cloud-wcs:1.0-RC247ae1bdb4bcc
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
geoservercloud/geoserver-cloud-wfs:1.0-RC28c70ee06d5ab
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
gethue/hue:4.11.011b649636e68
heimdal@7.7.0+dfsg-1ubuntu1.2
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
gethue/hue:4.10.05702b2c37ff9
heimdal@7.5.0+dfsg-1
krb5@1.16-2ubuntu0.2
7.5.0+dfsg-1ubuntu0.3
1.16-2ubuntu0.3
1
gethue/nginx:latest07f00f7c7903
krb5@1.17-3+deb10u2
1.17-3+deb10u5
1
gitlab/gitlab-runner:v15.3.0860d4a3fec7a
heimdal@7.7.0+dfsg-1ubuntu1
krb5@1.17-6ubuntu4.1
7.7.0+dfsg-1ubuntu1.3
1.17-6ubuntu4.2
1
gollumorg/gollum:latest7cd5305a3cf7
krb5@1.17-3+deb10u1
1.17-3+deb10u5
1
gophish/gophish:0.12.18a57cd171999
krb5@1.18.3-6+deb11u2
1.18.3-6+deb11u3
1
gotify/server:2.1.409c79bc1e403
krb5@1.18.3-6+deb11u1
1.18.3-6+deb11u3
1
gotson/komga:0.99.49b15ea6bfc30
heimdal@7.5.0+dfsg-1
krb5@1.16-2ubuntu0.1
7.5.0+dfsg-1ubuntu0.3
1.16-2ubuntu0.3
1
gradiant/hdfs:3.2.2e3bf364fe713
krb5@1.18.3-6
1.18.3-6+deb11u3
1
grafana/grafana:9.0.1a738d0744784
krb5@1.19.3-r0
1.19.4-r0
1
grafana/grafana:8.3.5cd7cb4345aa7
krb5@1.19.2-r4
1.19.4-r0
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.