StackRadar

CVE-2025-0395

Medium

Advisory

Published 22 Jan 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.2
base score, highest
EPSS
0.004
29th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,693
of 17,790 indexed, latest versions
Container images
1,932
deployed by those charts
Fix available
4 of 4
affected packages

Red Hat Security Advisory: glibc security update

Carried by container images the latest versions of 1,693 of 17,790 indexed charts deploy, on 1,932 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+47 more2.23-0ubuntu11.3+esm8, 2.27-3ubuntu1.6+esm4, 2.31-0ubuntu9.17, 2.31-13+deb11u12+3 more1,649
glibcapk2.37-r6, 2.38-r6, 2.39-r7, 2.40-r1+2 more2.40-r68
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 more2.19-0ubuntu6.15+esm47
glibcrpm2.26-lp151.18.7, 2.28-42.el8_0.1, 2.28-72.el8_1.1, 2.28-101.el8+34 more0:2.28-251.el8_10.16, 0:2.34-60.el9_2.17, 0:2.34-100.el9_4.10, 0:2.34-125.el9_5.8+2 more268
OSV records
CGA-354x-xwx7-vv3vDEBIAN-CVE-2025-0395RHSA-2025:3828RHSA-2025:4241RHSA-2025:4243RHSA-2025:4244RLSA-2025:3828RLSA-2025:4244UBUNTU-CVE-2025-0395DLA-4143-1openSUSE-SU-2025:14851-1SUSE-SU-2025:0562-1
Also known as
CGA-79rm-9cf4-hqxc, USN-7259-1, USN-7259-2, USN-7259-3

Charts affected

1,693 by stars
ChartLatestAffected imagesRadar Score
clearml-servingallegroaiVerified publisher1.6.24 of 9See more

clearml-serving allegroai 1.6.2

4 of the 9 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
allegroai/clearml-serving-inference:1.3.0fca885e8cfc6
glibc@2.31-13+deb11u5
2.31-13+deb11u12
allegroai/clearml-serving-statistics:1.3.0c58d9da7bdf8
glibc@2.31-13+deb11u5
2.31-13+deb11u12
bitnamilegacy/kafka:3.4.0-debian-11-r6ac64829e45b3
glibc@2.31-13+deb11u5
2.31-13+deb11u12
bitnamilegacy/zookeeper:3.8.1-debian-11-r6dba59d740e13
glibc@2.31-13+deb11u5
2.31-13+deb11u12

Open the chart page →

17,897
mariadbalphani-helm-chartsVerified publisher10.10.31 of 1See more

mariadb alphani-helm-charts 10.10.3

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
library/mariadb:10.10.2bfc25a68e113
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.9

Open the chart page →

8,387
openldapalphani-helm-chartsVerified publisher2.4.571 of 2See more

openldap alphani-helm-charts 2.4.57

1 of the 2 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
roertel/openldap:1.0.00edb2d98d276
glibc@2.31-13+deb11u5
2.31-13+deb11u12

Open the chart page →

3,067
whisperandrenarchyVerified publisher1.0.01 of 1See more

whisper andrenarchy 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
rhasspy/wyoming-whisper:1.0.080b99ddeef6c
glibc@2.31-13+deb11u6
2.31-13+deb11u12

Open the chart page →

688
alazanteonVerified publisher0.12.01 of 1See more

alaz anteon 0.12.0

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
ddosify/alaz:v0.12.0ea602056d9ce
glibc@2.36-9+deb12u7
2.36-9+deb12u10

Open the chart page →

3,395
anteonanteonVerified publisher2.6.43 of 13See more

anteon anteon 2.6.4

3 of the 13 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
ddosify/selfhosted_alaz_backend:2.3.11e5be48b37348
glibc@2.31-13+deb11u10
2.31-13+deb11u12
ddosify/selfhosted_backend:3.2.93c11e3182652
glibc@2.36-9+deb12u4
2.36-9+deb12u10
ddosify/selfhosted_hammermanager:2.0.2b796b8c73011
glibc@2.36-9+deb12u4
2.36-9+deb12u10

Open the chart page →

22,304
soarv113assist-iot-cybersecurity-monitoring-soar0.1.33 of 5See more

soarv113 assist-iot-cybersecurity-monitoring-soar 0.1.3

3 of the 5 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_ir-cas:latest6a107f224c34
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.17
assistiot/cybersecurity-monitoring_ir-ctx:latestae8b3d72eb5d
glibc@2.31-13+deb11u6
2.31-13+deb11u12
assistiot/cybersecurity-monitoring_ir-thv:latestc8b6c7eaa0cd
glibc@2.31-13+deb11u4
2.31-13+deb11u12

Open the chart page →

17,951
dltbrokerassist-iot-distributed-broker0.2.02 of 9See more

dltbroker assist-iot-distributed-broker 0.2.0

2 of the 9 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
glibc@2.23-0ubuntu10
2.23-0ubuntu11.3+esm8
hyperledger/fabric-couchdb:0.4.15f6c724592abf
glibc@2.23-0ubuntu11
2.23-0ubuntu11.3+esm8

Open the chart page →

77,883
dltloggingassist-iot-logging-auditing0.2.02 of 9See more

dltlogging assist-iot-logging-auditing 0.2.0

2 of the 9 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
glibc@2.23-0ubuntu10
2.23-0ubuntu11.3+esm8
hyperledger/fabric-couchdb:0.4.15f6c724592abf
glibc@2.23-0ubuntu11
2.23-0ubuntu11.3+esm8

Open the chart page →

77,863
cso-proxyav1o-chartsVerified publisher0.1.31 of 1See more

cso-proxy av1o-charts 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
ghcr.io/djcass44/cso-proxy:cccf49fdb360d44125ad
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm4

Open the chart page →

4,308
kube-image-webhookav1o-chartsVerified publisher0.1.31 of 1See more

kube-image-webhook av1o-charts 0.1.3

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
registry.gitlab.com/autokubeops/kube-image-webhook:v0.2.0fcf464708a21
glibc@2.27-3ubuntu1.5
2.27-3ubuntu1.6+esm4

Open the chart page →

3,731
open-elevationbeeinventor0.1.01 of 2See more

open-elevation beeinventor 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
openelevation/open-elevation:latest82fb21612e86
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.17

Open the chart page →

13,219
aramid-participationbiatec-repoVerified publisher4.4.11 of 1See more

aramid-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-aramidmain-extended:4.4.1-stablef12ce1cfb72e
glibc@2.35-0ubuntu3.8
2.35-0ubuntu3.9

Open the chart page →

7,246
voimain-participationbiatec-repoVerified publisher4.4.11 of 1See more

voimain-participation biatec-repo 4.4.1

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
scholtz2/algorand-participation-voimain-extended:4.4.1-stable64966de56d9f
glibc@2.35-0ubuntu3.8
2.35-0ubuntu3.9

Open the chart page →

7,246
block-buster-helm-appblock-buster-app7.6.01 of 1See more

block-buster-helm-app block-buster-app 7.6.0

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
siddharth67/block-buster-dev:7.6.04e1151ea5774
glibc@2.31-13+deb11u5
2.31-13+deb11u12

Open the chart page →

978
prometheus-airbyte-exporterbotify-helm-chartsVerified publisher0.7.11 of 1See more

prometheus-airbyte-exporter botify-helm-charts 0.7.1

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
ghcr.io/botify-labs/airbyte_exporter:2.3.02105b1f33013
glibc@2.36-9+deb12u3
2.36-9+deb12u10

Open the chart page →

2,919
bucket-backup-restorebucket-backup-restore0.1.01 of 2See more

bucket-backup-restore bucket-backup-restore 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
abohatyrenko/bucket-backup-restore:latestfa98af15a13e
glibc@2.31-13+deb11u7
2.31-13+deb11u12

Open the chart page →

2,049
csgobuttahtoastVerified publisher0.2.31 of 1See more

csgo buttahtoast 0.2.3

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
cm2network/csgo:sourcemod93df54a2e4fb
glibc@2.31-13+deb11u8
2.31-13+deb11u12

Open the chart page →

376
geoserver-cloudcamptocamp20.0.56 of 11See more

geoserver-cloud camptocamp2 0.0.5

6 of the 11 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.17
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.17
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.17
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.17
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.17
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.17

Open the chart page →

84,710
geoserverCloudcamptocamp20.0.66 of 11See more

geoserverCloud camptocamp2 0.0.6

6 of the 11 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.17
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.17
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.17
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.17
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.17
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.17

Open the chart page →

84,710
passbolt-hachristianhuthVerified publisher6.0.11 of 4See more

passbolt-ha christianhuth 6.0.1

1 of the 4 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
passbolt/passbolt:3.4.0-ce-non-root655547e17263
glibc@2.31-13+deb11u2
2.31-13+deb11u12

Open the chart page →

10,931
syncstorage-rschristianhuthVerified publisher6.1.11 of 2See more

syncstorage-rs christianhuth 6.1.1

1 of the 2 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
ghcr.io/porelli/firefox-sync:syncstorage-rs-mysql-0.18.27d244e514216
glibc@2.31-13+deb11u11
2.31-13+deb11u12

Open the chart page →

693
tensorflow-notebookcloudnativeapp0.1.21 of 1See more

tensorflow-notebook cloudnativeapp 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
tensorflow/tensorflow:1.6.0-devel1e3172090703
glibc@2.23-0ubuntu10
2.23-0ubuntu11.3+esm8

Open the chart page →

36,143
pgbenchcloudnative-pgVerified publisher0.1.01 of 1See more

pgbench cloudnative-pg 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
ghcr.io/cloudnative-pg/postgresql:14.5b3b30d04b362
glibc@2.31-13+deb11u5
2.31-13+deb11u12

Open the chart page →

2,713
clustereye-stackclustereyeVerified publisher0.1.11 of 5See more

clustereye-stack clustereye 0.1.1

1 of the 5 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.31.02bf7f042e396
glibc@2.35-0ubuntu3.8
2.35-0ubuntu3.9

Open the chart page →

4,906
proxy-relaycnieg2.1.21 of 1See more

proxy-relay cnieg 2.1.2

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
library/httpd:2.4.54ee2117e77c35
glibc@2.31-13+deb11u5
2.31-13+deb11u12

Open the chart page →

732
istio-allcode4devsVerified publisher1.2.03 of 6See more

istio-all code4devs 1.2.0

3 of the 6 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
istio/install-cni:1.24.2-distrolessaef4825e110f
glibc@2.40-r3
2.40-r6
istio/ztunnel:1.24.2-distroless3e475eb88965
glibc@2.40-r3
2.40-r6
quay.io/kiali/kiali:v1.89.30dcdb1c1e747
glibc@2.28-236.el8_9.12
0:2.28-251.el8_10.16

Open the chart page →

4,811
istio-control-planecode4devsVerified publisher1.0.02 of 3See more

istio-control-plane code4devs 1.0.0

2 of the 3 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
istio/install-cni:1.24.2-distrolessaef4825e110f
glibc@2.40-r3
2.40-r6
istio/ztunnel:1.24.2-distroless3e475eb88965
glibc@2.40-r3
2.40-r6

Open the chart page →

2,373
commonground-gatewaycommonground-gateway1.5.41 of 7See more

commonground-gateway commonground-gateway 1.5.4

1 of the 7 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
glibc@2.36-9
2.36-9+deb12u10

Open the chart page →

9,747
contactcataloguscontact-catalogus1.0.01 of 3See more

contactcatalogus contact-catalogus 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/contactcatalogus-nginx:latest480c84fa9e63
glibc@2.31-13+deb11u3
2.31-13+deb11u12

Open the chart page →

7,313
sops-operatorcraftypathVerified publisher0.8.01 of 1See more

sops-operator craftypath 0.8.0

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
craftypath/sops-operator:v0.8.0402a0024c732
glibc@2.28-151.el8
0:2.28-251.el8_10.16

Open the chart page →

6,480
oci-registrycronce0.4.51 of 1See more

oci-registry cronce 0.4.5

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
mcronce/oci-registry:v0.4.509519cd7bd2f
glibc@2.36-9+deb12u4
2.36-9+deb12u10

Open the chart page →

1,316
paperless-ngxcrystalnetVerified publisher0.2.221 of 3See more

paperless-ngx crystalnet 0.2.22

1 of the 3 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
glibc@2.36-9+deb12u8
2.36-9+deb12u10

Open the chart page →

13,792
cubefscubefs3.2.02 of 10See more

cubefs cubefs 3.2.0

2 of the 10 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
chubaofs/cfs-client:3.2.015ff74209ce7
glibc@2.31-13+deb11u2
2.31-13+deb11u12
chubaofs/cfs-server:3.2.0205030e045f2
glibc@2.31-13+deb11u2
2.31-13+deb11u12

Open the chart page →

15,931
CubeUniversecubeuniverseVerified publisher0.1.01 of 1See more

CubeUniverse cubeuniverse 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
tksky1/cubeuniverse:0.1alphaec7b889f380f
glibc@2.31-13+deb11u5
2.31-13+deb11u12

Open the chart page →

1,837
nifid4nVerified publisher2.0.01 of 5See more

nifi d4n 2.0.0

1 of the 5 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
apache/nifi-registry:1.26.07cdfd8deec92
glibc@2.35-0ubuntu3.7
2.35-0ubuntu3.9

Open the chart page →

5,440
data-fairdata354-helmVerified publisher1.1.21 of 12See more

data-fair data354-helm 1.1.2

1 of the 12 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
ghcr.io/data-fair/elasticsearch:7.17.1aa45adaf59a7
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.17

Open the chart page →

38,441
extendeddaemonsetdatadogVerified publisher0.3.31 of 1See more

extendeddaemonset datadog 0.3.3

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
datadog/extendeddaemonset:v0.8.0513a4377aed5
glibc@2.28-164.el8
0:2.28-251.el8_10.16

Open the chart page →

4,759
dbrepodbrepo1.13.310 of 25See more

dbrepo dbrepo 1.13.3

10 of the 25 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
bitnamilegacy/grafana:11.4.0-debian-12-r0cb8ab5515676
glibc@2.36-9+deb12u9
2.36-9+deb12u10
bitnamilegacy/mariadb-galera:11.3.2-debian-12-r9aee9c668098f
glibc@2.36-9+deb12u7
2.36-9+deb12u10
bitnamilegacy/mysqld-exporter:0.15.1-debian-12-r2611a5f0b79e79
glibc@2.36-9+deb12u7
2.36-9+deb12u10
bitnamilegacy/openldap:2.6.8-debian-12-r16e412c178ef9
glibc@2.36-9+deb12u7
2.36-9+deb12u10
bitnamilegacy/opensearch:2.18.0-debian-12-r0d8440eb6b290
glibc@2.36-9+deb12u8
2.36-9+deb12u10
bitnamilegacy/os-shell:12-debian-12-r3217444b4b2c96
glibc@2.36-9+deb12u8
2.36-9+deb12u10
bitnamilegacy/postgres-exporter:0.15.0-debian-12-r44e7e1b3a90682
glibc@2.36-9+deb12u8
2.36-9+deb12u10
bitnamilegacy/postgresql:17.0.0-debian-12-r9d885ac277163
glibc@2.36-9+deb12u8
2.36-9+deb12u10
bitnamilegacy/prometheus:2.54.1-debian-12-r408b1b7cb6a5b
glibc@2.36-9+deb12u8
2.36-9+deb12u10
bitnamilegacy/rabbitmq:3.13.7-debian-12-r2cd593809e359
glibc@2.36-9+deb12u7
2.36-9+deb12u10

Open the chart page →

53,108
mastodondefault-ghVerified publisher0.3.11 of 3See more

mastodon default-gh 0.3.1

1 of the 3 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
ghcr.io/mastodon/mastodon:v4.1.26b18e6d0eda4
glibc@2.31-13+deb11u5
2.31-13+deb11u12

Open the chart page →

5,058
frontenddemo-application0.1.01 of 1See more

frontend demo-application 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
azhar008/flaskapplication:latesta1e827b0adea
glibc@2.31-13+deb11u2
2.31-13+deb11u12

Open the chart page →

3,558
calicodevtron0.1.11 of 4See more

calico devtron 0.1.1

1 of the 4 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
glibc@2.28-151.el8
0:2.28-251.el8_10.16

Open the chart page →

10,094
clairdevtron0.1.141 of 2See more

clair devtron 0.1.14

1 of the 2 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
glibc@2.28-164.el8
0:2.28-251.el8_10.16

Open the chart page →

6,237
digispoof-interfacedigispoof-interface1.0.01 of 3See more

digispoof-interface digispoof-interface 1.0.0

1 of the 3 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/digispoof-interface-nginx:latest8fa4597217a4
glibc@2.31-13+deb11u2
2.31-13+deb11u12

Open the chart page →

7,788
powershelluniversaldigitalhubVerified publisher0.1.21 of 1See more

powershelluniversal digitalhub 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
ironmansoftware/universal:3.3.1-ubuntu-20.041943c73cce31
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.17

Open the chart page →

6,982
joplin-serverdjjudas21Verified publisher5.5.81 of 1See more

joplin-server djjudas21 5.5.8

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
joplin/server:2.14.2-betab87564ef34e9
glibc@2.31-13+deb11u7
2.31-13+deb11u12

Open the chart page →

3,925
dominodominoVerified publisher0.1.111 of 3See more

domino domino 0.1.11

1 of the 3 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
ghcr.io/tauffer-consulting/domino-rest:latest8bf880fe8c73
glibc@2.36-9+deb12u4
2.36-9+deb12u10

Open the chart page →

8,864
seafiledr300481Verified publisher0.12.11 of 1See more

seafile dr300481 0.12.1

1 of the 1 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:11.0.12d0c66e4621bd
glibc@2.35-0ubuntu3.8
2.35-0ubuntu3.9

Open the chart page →

10,911
dragonfly-stackdragonflyVerified publisher0.1.21 of 7See more

dragonfly-stack dragonfly 0.1.2

1 of the 7 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
dragonflyoss/client:v0.1.82edf3e921f4e0
glibc@2.36-9+deb12u7
2.36-9+deb12u10

Open the chart page →

18,480
elchi-stackelchi1.13.03 of 10See more

elchi-stack elchi 1.13.0

3 of the 10 container images this version deploys carry CVE-2025-0395.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:24.81ffa82edee00
glibc@2.31-0ubuntu9.16
2.31-0ubuntu9.17
envoyproxy/envoy:v1.33.056da5afd7df3
glibc@2.35-0ubuntu3.8
2.35-0ubuntu3.9
library/mongo:6.0.12646902910d6a
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.9

Open the chart page →

15,540

Container images carrying it

1,932 by charts deploying them

A fixed version is listed for 4 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/nlamirault/bbox_exporter:1.0.0f5dd1f7794c6
glibc@2.31-13+deb11u3
2.31-13+deb11u12
1
ghcr.io/nlamirault/freebox-exporter:1.0.02d522b664e12
glibc@2.31-13+deb11u4
2.31-13+deb11u12
1
ghcr.io/noahburrell0/sealed-secrets-ui:v0.1.47e7368fb472d
glibc@2.36-9+deb12u9
2.36-9+deb12u10
1
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
glibc@2.36-9+deb12u8
2.36-9+deb12u10
1
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
glibc@2.36-9+deb12u9
2.36-9+deb12u10
1
ghcr.io/openstack-exporter/openstack-exporter:1.7.0e5146a7dd515
glibc@2.31-13+deb11u8
2.31-13+deb11u12
1
ghcr.io/open-telemetry/demo:1.12.0-imageprovider4e322858fe56
glibc@2.36-9+deb12u7
2.36-9+deb12u10
1
ghcr.io/open-telemetry/demo:1.12.0-accountingservice6d051840bb29
glibc@2.36-9+deb12u8
2.36-9+deb12u10
1
ghcr.io/open-telemetry/demo:1.12.0-frauddetectionservice77cefdab4d5c
glibc@2.31-13+deb11u10
2.31-13+deb11u12
1
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
glibc@2.36-9+deb12u8
2.36-9+deb12u10
1
ghcr.io/open-telemetry/demo:1.12.0-quoteservice87eb325d306f
glibc@2.36-9+deb12u8
2.36-9+deb12u10
1
ghcr.io/open-telemetry/demo:1.12.0-frontendproxy9fdec1be03e4
glibc@2.35-0ubuntu3.8
2.35-0ubuntu3.9
1
ghcr.io/open-telemetry/demo:1.12.0-emailservicea1f5cebb5240
glibc@2.36-9+deb12u3
2.36-9+deb12u10
1
ghcr.io/open-telemetry/demo:1.12.0-shippingservicea3ca4c02a5df
glibc@2.36-9+deb12u8
2.36-9+deb12u10
1
ghcr.io/open-telemetry/demo:1.12.0-adservicea59e5eead495
glibc@2.39-0ubuntu8.3
2.39-0ubuntu8.4
1
ghcr.io/open-telemetry/demo:1.12.0-recommendationserviceb294a4278407
glibc@2.36-9+deb12u8
2.36-9+deb12u10
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.17
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
glibc@2.36-9+deb12u8
2.36-9+deb12u10
1
ghcr.io/paperless-ngx/paperless-ngx:1.8.09bbc9a90641e
glibc@2.31-13+deb11u3
2.31-13+deb11u12
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
glibc@2.36-9+deb12u3
2.36-9+deb12u10
1
ghcr.io/perceptolab/devops-demo-app:0.0.2cdc0658c40fb
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm4
1
ghcr.io/porelli/firefox-sync:syncstorage-rs-mysql-0.18.27d244e514216
glibc@2.31-13+deb11u11
2.31-13+deb11u12
1
ghcr.io/postgresml/pgcat:v1.2.0627761f6dcbc
glibc@2.36-9+deb12u7
2.36-9+deb12u10
1
ghcr.io/privacyengineering/hawk-monitor:master13309f068a56
glibc@2.31-13+deb11u3
2.31-13+deb11u12
1
ghcr.io/privacyengineering/hawk-service:latestbfedf47bb5e0
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.9
1
ghcr.io/projectnessie/nessie:0.92.19efe3c74d55f
glibc@2.34-100.el9_4.2
0:2.34-100.el9_4.10
1
ghcr.io/rajnandan1/kener:3.2.182b993cb232eb
glibc@2.36-9+deb12u9
2.36-9+deb12u10
1
ghcr.io/remla23-team17/app:1.0.05816dbddf47d
glibc@2.31-13+deb11u6
2.31-13+deb11u12
1
ghcr.io/remla23-team17/model-service:1.0.0aa59fe2c4f6a
glibc@2.31-13+deb11u6
2.31-13+deb11u12
1
ghcr.io/riotkit-org/backup-repository:v4.0.0ab41ffa78f69
glibc@2.31-13+deb11u5
2.31-13+deb11u12
1
ghcr.io/rivals-space/rivals-mastodon:1.6.143b23d55e4be
glibc@2.31-13+deb11u5
2.31-13+deb11u12
1
ghcr.io/rodg/nodecg-base:latest31be4bf87070
glibc@2.31-13+deb11u6
2.31-13+deb11u12
1
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
glibc@2.36-9
2.36-9+deb12u10
1
ghcr.io/salaboy/fmtok8s-email-service:v0.2.0-nativeb52d5dbac2ca
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm4
1
ghcr.io/salaboy/fmtok8s-email-service:v0.1.0-nativecf28472bc460
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm4
1
ghcr.io/salesforce/sloop:sha-2ce8bbe119e24f24b1d
glibc@2.31-13+deb11u5
2.31-13+deb11u12
1
ghcr.io/savonet/liquidsoap:v2.0.19e08148e1055
glibc@2.31-13+deb11u2
2.31-13+deb11u12
1
ghcr.io/sdwbgn/unitycatalog-helm/docker/unitycatalog-ui:0.2.1-5d668c1ed07e7ca098d
glibc@2.36-9+deb12u9
2.36-9+deb12u10
1
ghcr.io/serenita-org/vero:v0.8.3e5a7ec714acc
glibc@2.36-9+deb12u7
2.36-9+deb12u10
1
ghcr.io/sergelogvinov/keydb:6.3.376a19ddc3626
glibc@2.31-13+deb11u6
2.31-13+deb11u12
1
ghcr.io/simoncaron/velero-notifications:1.0.0d058963d4de7
glibc@2.31-13+deb11u3
2.31-13+deb11u12
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.17
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.17
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.17
1
ghcr.io/spidernet-io/spiderpool/spiderpool-controller:v1.2.042304e3ed36e
glibc@2.31-0ubuntu9.16
2.31-0ubuntu9.17
1
ghcr.io/spiffe/spire-controller-manager:0.2.25e90b2d092df
glibc@2.31-13+deb11u5
2.31-13+deb11u12
1
ghcr.io/squent/kuma-ingress-watcher:1.7.014d45b2a1f00
glibc@2.36-9+deb12u9
2.36-9+deb12u10
1
ghcr.io/star-whale/server:0.6.158368359c8dd0
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.17
1
ghcr.io/streamingfast/substreams-sink-kv:v2.3.026953ec68d5d
glibc@2.31-0ubuntu9.16
2.31-0ubuntu9.17
1
ghcr.io/streamingfast/substreams-sink-noop:v1.4.0d7c43c3135c6
glibc@2.31-0ubuntu9.16
2.31-0ubuntu9.17
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.