StackRadar

CVE-2024-28085

Low

Advisory

Published 27 Mar 2024In the index since 5 Sept 2026
Severity
Low
worst across findings
CVSS
3.3
base score, highest
EPSS
0.022
82nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,092
of 17,790 indexed, latest versions
Container images
1,124
deployed by those charts
Fix available
2 of 2
affected packages

util-linux - security update

Carried by container images the latest versions of 1,092 of 17,790 indexed charts deploy, on 1,124 images.

Affected packageAffected versionsFixed inImages
util-linuxdeb1:2.27.1-6ubuntu3.3, 1:2.36.1-8+deb11u1, 2.20.1-5.1ubuntu20.2, 2.20.1-5.1ubuntu20.4+26 more2.34-0.1ubuntu9.6, 2.36.1-8+deb11u2, 2.37.2-4ubuntu3.4, 2.38.1-5+deb12u11,121
util-linuxrpm2.33.1-4.8.1, 2.33.1-lp151.3.3.22.33.2-150100.4.45.1, 2.40.2-2.13
OSV records
DEBIAN-CVE-2024-28085UBUNTU-CVE-2024-28085DSA-5650-1openSUSE-SU-2024:14523-1SUSE-SU-2024:1106-1
Also known as
USN-6719-1, USN-6719-2

Charts affected

1,092 by stars
ChartLatestAffected imagesRadar Score
tfy-distributortruefoundryVerified publisher0.0.11 of 4See more

tfy-distributor truefoundry 0.0.1

1 of the 4 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
util-linux@2.38.1-5+b1
2.38.1-5+deb12u1

Open the chart page →

17,396
twentytwenty-crm0.1.111 of 4See more

twenty twenty-crm 0.1.11

1 of the 4 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
redis/redis-stack-server:7.2.0-v10e44b2b49d059
util-linux@2.37.2-4ubuntu3.3
2.37.2-4ubuntu3.4

Open the chart page →

5,602
jupyterhubuninettsigma21.6.01 of 5See more

jupyterhub uninettsigma2 1.6.0

1 of the 5 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
quay.io/nird-toolkit/jupyterhub-server:20221215-e6aa80ecae8c0622533
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2

Open the chart page →

8,642
lightstepupdater-lightstep-satellite1.2.21 of 1See more

lightstep updater-lightstep-satellite 1.2.2

1 of the 1 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
lightstep/collector:2021-01-26_23-02-36Z11c5569aaf3b
util-linux@2.27.1-6ubuntu3.6
no fix listed

Open the chart page →

15,340
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
util-linux@2.38.1-5+b1
2.38.1-5+deb12u1

Open the chart page →

14,431
velero-notificationsvelero-notifications1.1.01 of 1See more

velero-notifications velero-notifications 1.1.0

1 of the 1 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
ghcr.io/simoncaron/velero-notifications:1.0.0d058963d4de7
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2

Open the chart page →

1,285
homarrvhdirkVerified publisher0.1.51 of 1See more

homarr vhdirk 0.1.5

1 of the 1 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
ghcr.io/ajnart/homarr:lateste103abadfb52
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2

Open the chart page →

2,789
unmanicvhdirkVerified publisher0.1.41 of 1See more

unmanic vhdirk 0.1.4

1 of the 1 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
josh5/unmanic:0.2.64d49c4816260
util-linux@2.37.2-4ubuntu3
2.37.2-4ubuntu3.4

Open the chart page →

9,424
twenty-crmvictorlane0.0.11 of 3See more

twenty-crm victorlane 0.0.1

1 of the 3 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
twentycrm/twenty-postgres-spilo:latest2f78405a78be
util-linux@2.37.2-4ubuntu3
2.37.2-4ubuntu3.4

Open the chart page →

13,575
pagesvictor-pages1.0.02 of 3See more

pages victor-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
util-linux@2.34-0.1ubuntu9.1
2.34-0.1ubuntu9.6
flyway/flyway:6.4.422d97ceb0c47
util-linux@2.31.1-0.4ubuntu3.6
no fix listed

Open the chart page →

20,242
kube-monitoring-telegram-botviento-repository1.0.01 of 1See more

kube-monitoring-telegram-bot viento-repository 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
vientoprojects/kubernetes-monitoring-telegram-bot:latesteb2a71531741
util-linux@2.31.1-0.4ubuntu3.7
no fix listed

Open the chart page →

7,897
vinyl-lib-chartvinyl-libVerified publisher0.1.01 of 1See more

vinyl-lib-chart vinyl-lib 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
kporwit/vinyl_lib_app:v0.1.1217de0302218
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2

Open the chart page →

3,392
hedgedocvista0.1.11 of 1See more

hedgedoc vista 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
quay.io/hedgedoc/hedgedoc:1.9.4e09967519a1d
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2

Open the chart page →

3,119
resultappvoting-app-helm-charts-repoVerified publisher1.0.01 of 1See more

resultapp voting-app-helm-charts-repo 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2

Open the chart page →

1,263
voteappvoting-app-helm-charts-repoVerified publisher1.0.02 of 5See more

voteapp voting-app-helm-charts-repo 1.0.0

2 of the 5 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2
kodekloud/examplevotingapp_vote:v13a856afb02a3
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2

Open the chart page →

8,309
resultappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 1See more

resultapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2

Open the chart page →

1,263
voteappvoting-app-helm-charts-repo-cloudVerified publisher1.0.02 of 5See more

voteapp voting-app-helm-charts-repo-cloud 1.0.0

2 of the 5 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2
kodekloud/examplevotingapp_vote:v13a856afb02a3
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2

Open the chart page →

8,309
kongwallarmVerified publisher4.6.31 of 7See more

kong wallarm 4.6.3

1 of the 7 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
wallarm/kong:3.1.0-ubuntu-4.6.0ea9608c82e40
util-linux@2.34-0.1ubuntu9.3
2.34-0.1ubuntu9.6

Open the chart page →

11,448
pageswalter1.0.02 of 3See more

pages walter 1.0.0

2 of the 3 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
util-linux@2.34-0.1ubuntu9.1
2.34-0.1ubuntu9.6
flyway/flyway:6.4.422d97ceb0c47
util-linux@2.31.1-0.4ubuntu3.6
no fix listed

Open the chart page →

20,242
wazuh-manager-filebeatwazuh-manager-filebeat0.1.0-gamma1 of 1See more

wazuh-manager-filebeat wazuh-manager-filebeat 0.1.0-gamma

1 of the 1 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
iosifache/wazuh-manager-filebeat:latest85df3f04b5da
util-linux@2.34-0.1ubuntu9.3
2.34-0.1ubuntu9.6

Open the chart page →

11,171
apiwbstack0.36.01 of 1See more

api wbstack 0.36.0

1 of the 1 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
ghcr.io/wbstack/api:8x.9.11eee94f9f7a53
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2

Open the chart page →

2,019
istio-service-meshwbstack0.0.11 of 1See more

istio-service-mesh wbstack 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
istio/pilot:1.17.1ce9d87606701
util-linux@2.37.2-4ubuntu3
2.37.2-4ubuntu3.4

Open the chart page →

6,282
mediawikiwbstack0.14.01 of 1See more

mediawiki wbstack 0.14.0

1 of the 1 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2

Open the chart page →

2,132
wbaas-backupwbstack0.1.01 of 1See more

wbaas-backup wbstack 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
ghcr.io/wmde/wbaas-backup:v0.1.78e6a9516eac0
util-linux@2.31.1-0.4ubuntu3.7
no fix listed

Open the chart page →

9,752
drillwearefrank1.3.62 of 3See more

drill wearefrank 1.3.6

2 of the 3 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
apache/drill:1.21.11f96558fd292
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2
bitnamilegacy/zookeeper:3.9.0-debian-11-r1110ed1ea3c8d1
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2

Open the chart page →

9,403
myweatherhelmwebapp11.3.501 of 8See more

myweatherhelm webapp1 1.3.50

1 of the 8 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
util-linux@2.34-0.1ubuntu9.4
2.34-0.1ubuntu9.6

Open the chart page →

9,252
myweatherhelm-schedulingwebapp11.3.921 of 9See more

myweatherhelm-scheduling webapp1 1.3.92

1 of the 9 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
util-linux@2.34-0.1ubuntu9.4
2.34-0.1ubuntu9.6

Open the chart page →

9,252
web-dvwaweb-dvwa1.16.01 of 2See more

web-dvwa web-dvwa 1.16.0

1 of the 2 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
gulacedia/web-dvwa-new:v367b467d961ca
util-linux@2.38.1-5+b1
2.38.1-5+deb12u1

Open the chart page →

10,111
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
util-linux@2.34-0.1ubuntu9.1
2.34-0.1ubuntu9.6

Open the chart page →

14,414
webhookie-allwebhookie0.1.21 of 3See more

webhookie-all webhookie 0.1.2

1 of the 3 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
util-linux@2.34-0.1ubuntu9.1
2.34-0.1ubuntu9.6

Open the chart page →

28,697
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-nginx:latest6de60c83128d
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2

Open the chart page →

7,562
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
istio/kubectl:1.5.10dbb7726d1bf0
util-linux@2.31.1-0.4ubuntu3.6
no fix listed

Open the chart page →

10,859
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
util-linux@2.34-0.1ubuntu9.1
2.34-0.1ubuntu9.6

Open the chart page →

15,288
openebswenerme3.10.02 of 3See more

openebs wenerme 3.10.0

2 of the 3 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
util-linux@2.37.2-4ubuntu3
2.37.2-4ubuntu3.4
openebs/node-disk-operator:2.1.06afe2123c457
util-linux@2.37.2-4ubuntu3
2.37.2-4ubuntu3.4

Open the chart page →

10,587
wexa-studiowexa-studio1.2.01 of 15See more

wexa-studio wexa-studio 1.2.0

1 of the 15 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.7.45f2a56b95266
util-linux@2.38.1-5+b1
2.38.1-5+deb12u1

Open the chart page →

15,044
jaegerwikimedia3.1.21 of 4See more

jaeger wikimedia 3.1.2

1 of the 4 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
util-linux@2.37.2-4ubuntu3
2.37.2-4ubuntu3.4

Open the chart page →

9,320
marge-botwiremindVerified publisher1.4.41 of 1See more

marge-bot wiremind 1.4.4

1 of the 1 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.14.0dcffb926e563
util-linux@2.38.1-5+b1
2.38.1-5+deb12u1

Open the chart page →

5,559
vaultwardenwitcom-gmbh0.2.01 of 2See more

vaultwarden witcom-gmbh 0.2.0

1 of the 2 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
vaultwarden/server:1.25.239f34c5159a2
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2

Open the chart page →

1,586
wp-gats-helmwordpress-gatsby0.0.11 of 3See more

wp-gats-helm wordpress-gatsby 0.0.1

1 of the 3 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
library/wordpress:6.0.0-php8.0-apache277c6c25980f
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2

Open the chart page →

2,021
api-snapyoukadevVerified publisher0.1.11 of 1See more

api-snap youkadev 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
youkadev/api-snap:0.1.14db0f9428e67
util-linux@2.38.1-5+b1
2.38.1-5+deb12u1

Open the chart page →

2,684
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2

Open the chart page →

1,838
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2024-28085.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
util-linux@2.31.1-0.4ubuntu3.7
no fix listed
yandex/clickhouse-server:21.3.204eccfffb01d7
util-linux@2.34-0.1ubuntu9.1
2.34-0.1ubuntu9.6

Open the chart page →

9,256

Container images carrying it

1,124 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/aerokube/jumphost:1.0.170fd7c00418d
util-linux@2.37.2-4ubuntu3.3
2.37.2-4ubuntu3.4
1
quay.io/aerokube/keygen:1.0.1578934444f04
util-linux@2.37.2-4ubuntu3.3
2.37.2-4ubuntu3.4
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
util-linux@2.37.2-4ubuntu3
2.37.2-4ubuntu3.4
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
util-linux@2.37.2-4ubuntu3
2.37.2-4ubuntu3.4
1
quay.io/bentoml/yatai:0.4.614b482c1f1b8
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2
1
quay.io/cilium/cilium:v1.15.1351d6685dc6f
util-linux@2.37.2-4ubuntu3
2.37.2-4ubuntu3.4
1
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
util-linux@2.31.1-0.4ubuntu3.7
no fix listed
1
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
util-linux@2.37.2-4ubuntu3
2.37.2-4ubuntu3.4
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
util-linux@2.37.2-4ubuntu3
2.37.2-4ubuntu3.4
1
quay.io/fluentd_elasticsearch/fluentd:v4.2.399079df58561
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2
1
quay.io/jupyterhub/k8s-hub:3.2.12528c6e57587
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2
1
quay.io/mongodb/farm-intro-backend:0.11a9ce0b8fbd4
util-linux@2.36.1-8
2.36.1-8+deb11u2
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
util-linux@2.27.1-6ubuntu3.10
no fix listed
1
quay.io/nird-toolkit/jupyterhub-server:20221215-e6aa80ecae8c0622533
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
util-linux@2.27.1-6ubuntu3.6
no fix listed
1
quay.io/snowdrop/spring-boot-rest-http-example:2.7b1a054613715
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2
1
quay.io/soketi/k8soketi:0.1-18-debian4cd9ea9434c4
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2
1
quay.io/soketi/soketi:1.6-16-debian713223456cf1
util-linux@2.36.1-8+deb11u1
2.36.1-8+deb11u2
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
util-linux@2.38.1-5+b1
2.38.1-5+deb12u1
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
util-linux@2.34-0.1ubuntu9.1
2.34-0.1ubuntu9.6
1
registry.gitlab.com/open-forms/forms-catalogue:latest4eaf9c911f33
util-linux@2.36.1-8
2.36.1-8+deb11u2
1
registry.gitlab.com/open-forms/request-registry:latest0886cbbc5f95
util-linux@2.36.1-8
2.36.1-8+deb11u2
1
registry.gitlab.com/vicamo/docker-sshd/sshd:3.0-stable22c33d693fe2
util-linux@2.36.1-8
2.36.1-8+deb11u2
1
registry.k8s.io/git-sync/git-sync:v3.6.96fa9042f6128
util-linux@1:2.36.1-8+deb11u1
2.36.1-8+deb11u2
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.