StackRadar

CVE-2022-4304

Medium

Advisory

Published 7 Feb 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.162
97th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,057
of 17,787 indexed, latest versions
Container images
1,059
deployed by those charts
Fix available
3 of 4
affected packages

Security update for openssl-1_1

Carried by container images the latest versions of 1,057 of 17,787 indexed charts deploy, on 1,059 images.

Affected packageAffected versionsFixed inImages
opensslapk1.1.1k-r0, 1.1.1l-r0, 1.1.1l-r7, 1.1.1l-r8+9 more1.1.1t-r0, 3.0.8-r0562
openssldeb1.0.1f-1ubuntu2.5, 1.0.1f-1ubuntu2.8, 1.0.1f-1ubuntu2.25, 1.0.1f-1ubuntu2.27+55 more1.1.1-1ubuntu2.1~18.04.21, 1.1.1-1ubuntu2.fips.2.1~18.04.21, 1.1.1f-1ubuntu2.17, 1.1.1f-1ubuntu2.fips.17+1 more490
openssl1.0deb1.0.2n-1ubuntu5.3, 1.0.2n-1ubuntu5.4, 1.0.2n-1ubuntu5.6, 1.0.2n-1ubuntu5.10+2 moreno fix listed15
openssl-1_1rpm1.1.0i-14.6.11.1.0i-150100.14.56.17
OSV records
ALPINE-CVE-2022-4304UBUNTU-CVE-2022-4304SUSE-SU-2023:2622-1
Also known as
USN-5844-1

Charts affected

1,057 by stars
ChartLatestAffected imagesRadar Score
skoonerxdVerified publisher1.1.01 of 1See more

skooner xd 1.1.0

1 of the 1 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
ymuski/skooner:latest67819ca511b5
openssl@1.1.1n-r0
1.1.1t-r0

Open the chart page →

1,752
pgbounceryasn77-pgbouncer0.0.81 of 1See more

pgbouncer yasn77-pgbouncer 0.0.8

1 of the 1 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
ghcr.io/yasn77/pgbouncer:v0.0.6cc8c13550e44
openssl@1.1.1q-r0
1.1.1t-r0

Open the chart page →

1,152
rawfile-csiymatrixVerified publisher0.2.11 of 4See more

rawfile-csi ymatrix 0.2.1

1 of the 4 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
matrixdb/rawfile-csi:v0.2.195b2e38e913d
openssl@1.1.1n-r0
1.1.1t-r0

Open the chart page →

7,972
zahori-schedulerzahoriVerified publisher1.0.11 of 1See more

zahori-scheduler zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
zahoriaut/zahori-scheduler:1.0.047d0979b1184
openssl@1.1.1-1ubuntu2.1~18.04.23
1.1.1-1ubuntu2.fips.2.1~18.04.21

Open the chart page →

2,458
zahori-serverzahoriVerified publisher1.0.11 of 2See more

zahori-server zahori 1.0.1

1 of the 2 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
flyway/flyway:9.14.1-alpine80f12c80502b
openssl@3.0.7-r2
3.0.8-r0

Open the chart page →

5,846
alertmanager-matrix-forwarderzloi-space1.0.11 of 2See more

alertmanager-matrix-forwarder zloi-space 1.0.1

1 of the 2 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
zl0i/alertmanager-matrix-forwarder:v1.0.0e94047931739
openssl@1.1.1l-r7
1.1.1t-r0

Open the chart page →

3,118
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2022-4304.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
openssl@1.1.1-1ubuntu2.1~18.04.14
1.1.1-1ubuntu2.1~18.04.21
yandex/clickhouse-server:21.3.204eccfffb01d7
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.17

Open the chart page →

9,207

Container images carrying it

1,059 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
bbernhard/signal-cli-rest-api:0.57549ad08d7e14
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.17
1
bicarus/elrond-rosetta:v1.3.50.0b1dab0721e1c
openssl@1.1.1f-1ubuntu2.16
1.1.1f-1ubuntu2.17
1
bicarus/http-https-echo:2785dd6a7e805e
openssl@1.1.1s-r0
1.1.1t-r0
1
bicarus/wg-access-server:v0.8.206cab48e9334
openssl@1.1.1q-r0
1.1.1t-r0
1
binwiederhier/ntfy:v1.27.219eeaec60fda
openssl@1.1.1o-r0
1.1.1t-r0
1
blakeblackshear/frigate:0.10.0-amd64ae269270ad9e
openssl@1.1.1f-1ubuntu2.10
1.1.1f-1ubuntu2.17
1
blockscout/blockscout:5.1.5c365a8f2dc12
openssl@1.1.1q-r0
1.1.1t-r0
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
openssl@1.1.1f-1ubuntu2.8
1.1.1f-1ubuntu2.17
1
casbin/casdoor:v1.224.066f836ef778b
openssl@3.0.7-r2
3.0.8-r0
1
cfcontainerization/quarks-job:v0.0.124-g03faac87366b11c5fa5
openssl-1_1@1.1.0i-14.6.1
1.1.0i-150100.14.56.1
1
cfcontainerization/quarks-secret:v0.0.677-ga060bb643131dbc0c8f
openssl-1_1@1.1.0i-14.6.1
1.1.0i-150100.14.56.1
1
chaosnative/cle-frontend:2.7.007b82a82a702
openssl@1.1.1n-r0
1.1.1t-r0
1
charmcli/soft-serve:v0.4.039523c1a6ba8
openssl@1.1.1q-r0
1.1.1t-r0
1
chetangautamm/repo:Opensips_Buildb4b94155ff5a
openssl@1.0.1f-1ubuntu2.27
no fix listed
1
chetangautamm/repo:sipp.v3e7f7049e1544
openssl@1.1.1f-1ubuntu2.1
1.1.1f-1ubuntu2.17
1
cheyang/distributed-tf:1.6.046cc34755493
openssl@1.0.2g-1ubuntu4.10
no fix listed
1
chirpstack/chirpstack-application-server:3.17.6e0b23dfd24d6
openssl@1.1.1l-r7
1.1.1t-r0
1
chirpstack/chirpstack-application-server:3fb7667fe037f
openssl@3.0.7-r0
3.0.8-r0
1
chirpstack/chirpstack-gateway-bridge:3.13.2ce3f2cdca8a9
openssl@1.1.1l-r7
1.1.1t-r0
1
chirpstack/chirpstack-network-server:3c0bbbb7a3f1e
openssl@3.0.7-r0
3.0.8-r0
1
chirpstack/chirpstack-network-server:3.16.1c98d7fe06bce
openssl@1.1.1l-r7
1.1.1t-r0
1
circleci/runner:launch-agent9bdc62f02162
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.fips.17
1
citizenstig/httpbin:latestb81c818ccb86
openssl@1.0.2g-1ubuntu4.5
no fix listed
1
clastix/kubectl:v1.2187fabaccb3a6
openssl@1.1.1l-r8
1.1.1t-r0
1
clastix/kubectl:v1.22d0376d87ac6b
openssl@1.1.1l-r8
1.1.1t-r0
1
clickhouse/clickhouse-server:24.81ffa82edee00
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.fips.17
1
clickhouse/clickhouse-server:24.4.12e6587b81a26
openssl@1.1.1f-1ubuntu2.22
1.1.1f-1ubuntu2.fips.17
1
clickhouse/clickhouse-server:23.8512bb8a21483
openssl@1.1.1f-1ubuntu2.22
1.1.1f-1ubuntu2.fips.17
1
cloudecho/hello:0.1.0f76ede067ab9
openssl@1.1.1l-r0
1.1.1t-r0
1
cloudentity/openbanking-quickstart-bank:1.11.19402ec4b5016
openssl@1.1.1k-r0
1.1.1t-r0
1
cloudentity/openbanking-quickstart-configuration:1.11.18a1890eb8265
openssl@1.1.1k-r0
1.1.1t-r0
1
cloudentity/openbanking-quickstart-consent-admin-portal:1.11.1ee83cdd45b7b
openssl@1.1.1k-r0
1.1.1t-r0
1
cloudentity/openbanking-quickstart-consent-page:1.11.15728654cecb7
openssl@1.1.1k-r0
1.1.1t-r0
1
cloudentity/openbanking-quickstart-consent-self-service-portal:1.11.18ca94ae6acf4
openssl@1.1.1k-r0
1.1.1t-r0
1
cloudentity/openbanking-quickstart-financroo-tpp:1.11.1c04eb10c77b7
openssl@1.1.1k-r0
1.1.1t-r0
1
cloudve/janis-terminal:latestaf56e77ca587
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.21
1
cloudve/ttyd:latestd79c1c5881c0
openssl@1.1.1-1ubuntu2.1~18.04.6
1.1.1-1ubuntu2.1~18.04.21
1
cnieg/gantt:1.1.2d4b478d76f2a
openssl@1.1.1q-r0
1.1.1t-r0
1
cortezaproject/corteza:2024.9.08eb7a26605c9
openssl@1.1.1f-1ubuntu2.23
1.1.1f-1ubuntu2.fips.17
1
countly/countly-server:25.05.4e3c238248f99
openssl@1.1.1f-1ubuntu2.12
1.1.1f-1ubuntu2.17
1
cradlepoint/pgbouncer:1.0.18f5720b0cd03
openssl@1.1.0g-2ubuntu4.1
1.1.1-1ubuntu2.1~18.04.21
1
crazymax/rrdcached:1.7.2-r4042536a06596
openssl@1.1.1k-r0
1.1.1t-r0
1
crazymax/rtorrent-rutorrent:3.10-0.9.8-0.13.8fb307f5b87bf
openssl@3.0.7-r0
3.0.8-r0
1
cribl/cribl:3.0.2762747cb6796
openssl@1.1.1-1ubuntu2.1~18.04.9
openssl1.0@1.0.2n-1ubuntu5.6
1.1.1-1ubuntu2.1~18.04.21
no fix listed
1
csepulvedab/secret-sync:0.5227a6f2b0ff8
openssl@1.1.1s-r0
1.1.1t-r0
1
csiplugin/csi-neonsan:v1.2.21fa83d45417f
openssl@1.0.2g-1ubuntu4.20
no fix listed
1
curlimages/curl:7.78.0a37d88a5b626
openssl@1.1.1k-r0
1.1.1t-r0
1
curlimages/curl:7.83.1e83fef2d5a03
openssl@1.1.1n-r0
1.1.1t-r0
1
daskdev/dask-notebook:1.1.0052630f5ca04
openssl@1.1.0g-2ubuntu4.3
1.1.1-1ubuntu2.1~18.04.21
1
dasmeta/mongodb-bi-connector:1.0.3fa657960dfec
openssl@1.1.1-1ubuntu2.1~18.04.21
openssl1.0@1.0.2n-1ubuntu5.11
1.1.1-1ubuntu2.fips.2.1~18.04.21
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.