StackRadar

CVE-2022-47629

Critical

Advisory

Published 20 Dec 2022In the index since 5 Sept 2026
Severity
Critical
worst across findings
CVSS
9.8
base score, highest
EPSS
0.015
74th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
409
of 17,781 indexed, latest versions
Container images
407
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: libksba security update

Carried by container images the latest versions of 409 of 17,781 indexed charts deploy, on 407 images.

Affected packageAffected versionsFixed inImages
libksbadeb1.3.3-1ubuntu0.16.04.1, 1.3.5-2, 1.3.5-2+deb10u1, 1.3.5-2ubuntu0.18.04.1+5 more1.3.3-1ubuntu0.16.04.1+esm2, 1.3.5-2+deb10u2, 1.3.5-2ubuntu0.18.04.2, 1.3.5-2ubuntu0.20.04.2+2 more263
libksbaapk1.5.1-r0, 1.6.0-r01.5.1-r1, 1.6.3-r08
libksbarpm1.3.5-2.14, 1.3.5-7.el8, 1.3.5-8.el8_6, 1.3.5-9.el8_2+4 more0:1.3.5-9.el8_1, 0:1.3.5-9.el8_2, 0:1.3.5-9.el8_4, 0:1.3.5-9.el8_6+4 more136
OSV records
ALPINE-CVE-2022-47629UBUNTU-CVE-2022-47629RHSA-2023:0592RHSA-2023:0593RHSA-2023:0594RHSA-2023:0624RHSA-2023:0625RHSA-2023:0626DLA-3248-1DSA-5305-1openSUSE-SU-2024:12595-1SUSE-SU-2023:0056-2
Also known as
USN-5787-1, USN-5787-2

Charts affected

409 by stars
ChartLatestAffected imagesRadar Score
weather-chartweather-web-app0.1.01 of 1See more

weather-chart weather-web-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-47629.

Container imageDigestPackageFixed in
zohardocker12/weather_app_flask:latestb86d60dbb68d
libksba@1.3.5-2
1.3.5-2+deb10u2

Open the chart page →

2,670
sonarqubewebencryptor6.7.31 of 3See more

sonarqube webencryptor 6.7.3

1 of the 3 container images this version deploys carry CVE-2022-47629.

Container imageDigestPackageFixed in
library/sonarqube:8.2-communitya246bc64207e
libksba@1.3.5-2
1.3.5-2+deb10u2

Open the chart page →

5,460
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-47629.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
libksba@1.3.5-2
1.3.5-2ubuntu0.20.04.2

Open the chart page →

14,364
webhookie-allwebhookie0.1.22 of 3See more

webhookie-all webhookie 0.1.2

2 of the 3 container images this version deploys carry CVE-2022-47629.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
libksba@1.3.5-2
1.3.5-2ubuntu0.20.04.2
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
libksba@1.3.5-7.el8
0:1.3.5-9.el8_4

Open the chart page →

28,605
miniowenerme8.0.101 of 1See more

minio wenerme 8.0.10

1 of the 1 container images this version deploys carry CVE-2022-47629.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
libksba@1.3.5-7.el8
0:1.3.5-9.el8_7

Open the chart page →

6,915
minio-standalonewenerme1.0.21 of 1See more

minio-standalone wenerme 1.0.2

1 of the 1 container images this version deploys carry CVE-2022-47629.

Container imageDigestPackageFixed in
minio/minio:RELEASE.2022-01-04T07-41-07Z1484c87239ea
libksba@1.3.5-7.el8
0:1.3.5-9.el8_7

Open the chart page →

6,138
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2022-47629.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
libksba@1.3.5-7.el8
0:1.3.5-9.el8_7

Open the chart page →

11,577
keycloakxzaks2.2.01 of 1See more

keycloakx zaks 2.2.0

1 of the 1 container images this version deploys carry CVE-2022-47629.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
libksba@1.3.5-8.el8_6
0:1.3.5-9.el8_7

Open the chart page →

6,016
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2022-47629.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
libksba@1.3.5-2
1.3.5-2ubuntu0.18.04.2
yandex/clickhouse-server:21.3.204eccfffb01d7
libksba@1.3.5-2
1.3.5-2ubuntu0.20.04.2

Open the chart page →

9,207

Container images carrying it

407 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
libksba@1.3.5-2
1.3.5-2ubuntu0.18.04.2
1
gcr.io/ml-pipeline/metadata-writer:2.0.0-alpha.5ec3ae9f6df47
libksba@1.5.0-3
1.5.0-3+deb11u2
1
gcr.io/ml-pipeline/mysql:5.7-debiandf28187b5455
libksba@1.3.5-2
1.3.5-2+deb10u2
1
ghcr.io/alexanderbabel/database-s3-backup:1.3.33191b771a6f2
libksba@1.5.1-r0
1.5.1-r1
1
ghcr.io/cfcontainerizationbot/kubecf-kubectl:v1.19.261daa1bba5cb
libksba@1.3.5-2.14
1.3.5-150000.4.6.1
1
ghcr.io/cloudfoundry-incubator/quarks-job:v1.0.213760eee87f839
libksba@1.3.5-2.14
1.3.5-150000.4.6.1
1
ghcr.io/cloudfoundry-incubator/quarks-operator:v7.0.1-0.g5396b116a1432b0d503
libksba@1.3.5-2.14
1.3.5-150000.4.6.1
1
ghcr.io/cloudfoundry-incubator/quarks-secret:v1.0.754f059af4de8ed
libksba@1.3.5-2.14
1.3.5-150000.4.6.1
1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1304-g4b4f2ac5c7c70b527255
libksba@1.3.5-2.14
1.3.5-150000.4.6.1
1
ghcr.io/cloudfoundry-incubator/quarks-statefulset:v0.0.1308-g6a8b2220e24a9e0a21b6
libksba@1.3.5-2.14
1.3.5-150000.4.6.1
1
ghcr.io/cloudnative-pg/postgresql:14.5b3b30d04b362
libksba@1.5.0-3+deb11u1
1.5.0-3+deb11u2
1
ghcr.io/ctron/ditto-operator:0.4.061a9bb81b85c
libksba@1.3.5-7.el8
0:1.3.5-9.el8_7
1
ghcr.io/ctron/streamsheets-base:2.4.00cf25ed621e2
libksba@1.3.5-7.el8
0:1.3.5-9.el8_4
1
ghcr.io/ctron/streamsheets-gateway:2.4.00635f17c9d2c
libksba@1.3.5-7.el8
0:1.3.5-9.el8_4
1
ghcr.io/ctron/streamsheets-service-graphs:2.4.0e34964e336c1
libksba@1.3.5-7.el8
0:1.3.5-9.el8_4
1
ghcr.io/ctron/streamsheets-service-machines:2.4.00c5a3398d1e4
libksba@1.3.5-7.el8
0:1.3.5-9.el8_4
1
ghcr.io/ctron/streamsheets-service-streams:2.4.08ba040e79ca0
libksba@1.3.5-7.el8
0:1.3.5-9.el8_4
1
ghcr.io/drogue-iot/authentication-service:0.11.0857b137fc7b3
libksba@1.5.1-5.el9_0
0:1.5.1-6.el9_1
1
ghcr.io/drogue-iot/coap-endpoint:0.11.044790b71aa22
libksba@1.5.1-5.el9_0
0:1.5.1-6.el9_1
1
ghcr.io/drogue-iot/command-endpoint:0.11.06dce3158b851
libksba@1.5.1-5.el9_0
0:1.5.1-6.el9_1
1
ghcr.io/drogue-iot/console-backend:0.11.025d229ae5bde
libksba@1.5.1-5.el9_0
0:1.5.1-6.el9_1
1
ghcr.io/drogue-iot/console-frontend:0.11.0558972f9374c
libksba@1.5.1-5.el9_0
0:1.5.1-6.el9_1
1
ghcr.io/drogue-iot/database-migration:0.11.057072c72a7cd
libksba@1.5.1-5.el9_0
0:1.5.1-6.el9_1
1
ghcr.io/drogue-iot/device-management-controller:0.11.0200aea1a2b42
libksba@1.5.1-5.el9_0
0:1.5.1-6.el9_1
1
ghcr.io/drogue-iot/device-management-service:0.11.0f4a5bfc06a74
libksba@1.5.1-5.el9_0
0:1.5.1-6.el9_1
1
ghcr.io/drogue-iot/device-state-service:0.11.0fbf0738cfc7e
libksba@1.5.1-5.el9_0
0:1.5.1-6.el9_1
1
ghcr.io/drogue-iot/drogue-event-source:0.2.1e2e812a4cf8e
libksba@1.3.5-7.el8
0:1.3.5-9.el8_7
1
ghcr.io/drogue-iot/http-endpoint:0.11.0b612c18479e0
libksba@1.5.1-5.el9_0
0:1.5.1-6.el9_1
1
ghcr.io/drogue-iot/knative-operator:0.11.0e2d927639f6e
libksba@1.5.1-5.el9_0
0:1.5.1-6.el9_1
1
ghcr.io/drogue-iot/mqtt-endpoint:0.11.032c6d2f5eab9
libksba@1.5.1-5.el9_0
0:1.5.1-6.el9_1
1
ghcr.io/drogue-iot/mqtt-integration:0.11.07ac2adb6ca49
libksba@1.5.1-5.el9_0
0:1.5.1-6.el9_1
1
ghcr.io/drogue-iot/outbox-controller:0.11.01a958edafdb1
libksba@1.5.1-5.el9_0
0:1.5.1-6.el9_1
1
ghcr.io/drogue-iot/postgresql-pusher:0.2.1c6bb121ced90
libksba@1.3.5-7.el8
0:1.3.5-9.el8_7
1
ghcr.io/drogue-iot/test-cert-generator:0.11.06ba7e1608286
libksba@1.3.5-8.el8_6
0:1.3.5-9.el8_7
1
ghcr.io/drogue-iot/topic-strimzi-operator:0.11.05253fbf8d04c
libksba@1.5.1-5.el9_0
0:1.5.1-6.el9_1
1
ghcr.io/drogue-iot/ttn-operator:0.11.07dd5ac80c8f1
libksba@1.5.1-5.el9_0
0:1.5.1-6.el9_1
1
ghcr.io/drogue-iot/user-auth-service:0.11.0adebc40ddf98
libksba@1.5.1-5.el9_0
0:1.5.1-6.el9_1
1
ghcr.io/drogue-iot/websocket-integration:0.11.0372dcd370945
libksba@1.5.1-5.el9_0
0:1.5.1-6.el9_1
1
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
libksba@1.3.5-2
1.3.5-2ubuntu0.18.04.2
1
ghcr.io/edgelesssys/edgelessdb-sgx-1gb:v0.3.27e1d7a11a11a
libksba@1.3.5-2ubuntu0.20.04.1
1.3.5-2ubuntu0.20.04.2
1
ghcr.io/fleeksoft/hbase/hdfs:3.3.3.2ac62269785ac
libksba@1.5.0-3
1.5.0-3+deb11u2
1
ghcr.io/g0dscookie/aptly:latestedd095d3c0ee
libksba@1.5.0-3
1.5.0-3+deb11u2
1
ghcr.io/g0dscookie/icinga2:2.13.5da81246ccfc9
libksba@1.5.0-3
1.5.0-3+deb11u2
1
ghcr.io/grofers/legend:0.1d6e901ad0ebd
libksba@1.3.5-2
1.3.5-2+deb10u2
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
libksba@1.3.5-2
1.3.5-2ubuntu0.20.04.2
1
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
libksba@1.3.5-7.el8
0:1.3.5-9.el8_2
1
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
libksba@1.3.5-2
1.3.5-2ubuntu0.20.04.2
1
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
libksba@1.3.5-2
1.3.5-2ubuntu0.20.04.2
1
ghcr.io/k8s-at-home/leaf2mqtt:v0.1fc9f5aca6cf4
libksba@1.3.5-2
1.3.5-2+deb10u2
1
ghcr.io/leoquote/tinyproxy_exporter:master6b4103d88dbb
libksba@1.5.0-3
1.5.0-3+deb11u2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.