StackRadar

CVE-2025-1149

Low

Advisory

Published 10 Feb 2025In the index since 5 Sept 2026
Severity
Low
worst across findings
CVSS
3.1
base score, highest
EPSS
0.006
46th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
410
of 17,781 indexed, latest versions
Container images
393
deployed by those charts
Fix available
None
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 410 of 17,781 indexed charts deploy, on 393 images.

Affected packageAffected versionsFixed inImages
binutilsdeb2.24-5ubuntu3.1, 2.24-5ubuntu14.2, 2.26.1-1ubuntu1~16.04.5, 2.26.1-1ubuntu1~16.04.6+39 moreno fix listed393
OSV records
DEBIAN-CVE-2025-1149UBUNTU-CVE-2025-1149

Charts affected

410 by stars
ChartLatestAffected imagesRadar Score
docsumtest-opea1.0.01 of 5See more

docsum test-opea 1.0.0

1 of the 5 container images this version deploys carry CVE-2025-1149.

Container imageDigestPackageFixed in
opea/docsum-ui:1.07f854e9bffaf
binutils@2.40-2
no fix listed

Open the chart page →

28,858
nextcloudth-chartsVerified publisher0.4.01 of 1See more

nextcloud th-charts 0.4.0

1 of the 1 container images this version deploys carry CVE-2025-1149.

Container imageDigestPackageFixed in
library/nextcloud:31.0.6-apache588609d76b21
binutils@2.40-2
no fix listed

Open the chart page →

10,086
tfy-distributortruefoundryVerified publisher0.0.11 of 4See more

tfy-distributor truefoundry 0.0.1

1 of the 4 container images this version deploys carry CVE-2025-1149.

Container imageDigestPackageFixed in
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
binutils@2.40-2
no fix listed

Open the chart page →

17,323
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2025-1149.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
binutils@2.40-2
no fix listed

Open the chart page →

14,358
unmanicvhdirkVerified publisher0.1.41 of 1See more

unmanic vhdirk 0.1.4

1 of the 1 container images this version deploys carry CVE-2025-1149.

Container imageDigestPackageFixed in
josh5/unmanic:0.2.64d49c4816260
binutils@2.38-4ubuntu2.6
no fix listed

Open the chart page →

9,347
aih-scannerwallarmVerified publisher2.7.111 of 2See more

aih-scanner wallarm 2.7.11

1 of the 2 container images this version deploys carry CVE-2025-1149.

Container imageDigestPackageFixed in
wallarm/aih-scanner:2.7.11f1cb26db1f5b
binutils@2.44-3
no fix listed

Open the chart page →

3,911
supersetwbstack0.1.01 of 1See more

superset wbstack 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-1149.

Container imageDigestPackageFixed in
apache/superset:4.0.1ab9467fd712c
binutils@2.40-2
no fix listed

Open the chart page →

7,085
web-dvwaweb-dvwa1.16.01 of 2See more

web-dvwa web-dvwa 1.16.0

1 of the 2 container images this version deploys carry CVE-2025-1149.

Container imageDigestPackageFixed in
gulacedia/web-dvwa-new:v367b467d961ca
binutils@2.40-2
no fix listed

Open the chart page →

10,001
Wordpresswordpress-mariadb1.0.21 of 2See more

Wordpress wordpress-mariadb 1.0.2

1 of the 2 container images this version deploys carry CVE-2025-1149.

Container imageDigestPackageFixed in
library/wordpress:latest5a93c470ae82
binutils@2.44-3
no fix listed

Open the chart page →

5,560
zoo-project-druzoo-projectOfficialVerified publisher0.10.41 of 6See more

zoo-project-dru zoo-project 0.10.4

1 of the 6 container images this version deploys carry CVE-2025-1149.

Container imageDigestPackageFixed in
zooproject/zoo-project:dru-19f3c4eed7c9ec9d1f0375bbe59f9d204a42bd3a9a507cb7e2dd
binutils@2.38-4ubuntu2.12
no fix listed

Open the chart page →

7,849

Container images carrying it

393 by charts deploying them

A fixed version is listed for 0 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
rezachalak/bzen-mongo:1.0.034f694325191
binutils@2.34-6ubuntu1.6
no fix listed
1
rhasspy/wyoming-speech-to-phrase:1.4.3e532f0dbc6b2
binutils@2.40-2
no fix listed
1
rocketadmin/rocketadmin:1.17.710955ef540b9
binutils@2.40-2
no fix listed
1
rocketchat/freeswitch:stablecfba5c20a5cc
binutils@2.40-2
no fix listed
1
roundcube/roundcubemail:1.6.16-apache-nonroot17d9d9580962
binutils@2.44-3
no fix listed
1
rspamd/rspamd:4.1.4e870599c970d
binutils@2.44-3
no fix listed
1
ryshe/terraria:latestb1c89f7f359a
binutils@2.40-2
no fix listed
1
santisbon/evwatcher:latestc4e994ca4540
binutils@2.40-2
no fix listed
1
santisbon/evworker:lateste807283f8d69
binutils@2.40-2
no fix listed
1
santisbon/speedtest:latest8ee3a1697227
binutils@2.40-2
no fix listed
1
sashafefler/spacecapybara_app:latestf96d7804c0ca
binutils@2.40-2
no fix listed
1
scrapinghub/splash:3.4.1a5f89bc84606
binutils@2.30-21ubuntu1~18.04.2
no fix listed
1
seafileltd/seafile-mc:9.0.106693911bcc40
binutils@2.34-6ubuntu1.4
no fix listed
1
seafileltd/seafile-mc:10.0.170628f29c663
binutils@2.34-6ubuntu1.6
no fix listed
1
seafileltd/seafile-mc:9.0.97ac833196f60
binutils@2.34-6ubuntu1.3
no fix listed
1
seafileltd/seafile-mc:11.0.12d0c66e4621bd
binutils@2.38-4ubuntu2.6
no fix listed
1
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
binutils@2.34-6ubuntu1.1
no fix listed
1
seldonio/locust-core:0.81d0da98a2d76
binutils@2.26.1-1ubuntu1~16.04.8
no fix listed
1
serversideup/php:8.5-fpm-nginx8f8c2f010ac5
binutils@2.44-3
no fix listed
1
shaowenchen/ops-controller-manager:latest26da43bb5b66
binutils@2.38-4ubuntu2.12
no fix listed
1
shaowenchen/ops-server:latest315444f703f4
binutils@2.38-4ubuntu2.8
no fix listed
1
signalen/backend:2.50.14760256000738
binutils@2.40-2
no fix listed
1
snipe/snipe-it:v8.3.1141ebf2386fe
binutils@2.42-4ubuntu2.5
no fix listed
1
snipe/snipe-it:v6.0.1455fb7636a98c
binutils@2.34-6ubuntu1.3
no fix listed
1
socialmediamacroscope/autophrase:0.1.570fb11d4f531
binutils@2.34-6ubuntu1.6
no fix listed
1
socialmediamacroscope/collect_reddit_comment:0.1.219d3d26d53ee
binutils@2.30-21ubuntu1~18.04.8
no fix listed
1
socialmediamacroscope/histogram:0.1.26418f9bdb4d2
binutils@2.40-2
no fix listed
1
socialmediamacroscope/image_crawler:0.1.2f508216be63c
binutils@2.30-21ubuntu1~18.04.8
no fix listed
1
socialmediamacroscope/network_analysis:0.1.3b351c21422e6
binutils@2.40-2
no fix listed
1
socialmediamacroscope/preprocessing:0.1.3ca863306314b
binutils@2.40-2
no fix listed
1
socialmediamacroscope/topic_modeling:0.1.3fa490acac2f8
binutils@2.40-2
no fix listed
1
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
binutils@2.34-6ubuntu1.3
no fix listed
1
sonroyaalmerol/docker-sogo:5.12.43f60f3abe990
binutils@2.44-3
no fix listed
1
sslhep/servicex_app:v1.8.51d12f943cec5
binutils@2.44-3
no fix listed
1
sslhep/servicex_code_gen_atlas_xaod:v1.8.5e7aff7f97b89
binutils@2.44-3
no fix listed
1
sslhep/servicex_code_gen_func_adl_uproot:v1.8.5b01b8ee966ed
binutils@2.44-3
no fix listed
1
sslhep/servicex_code_gen_python:v1.8.50e4175a4e1eb
binutils@2.44-3
no fix listed
1
sslhep/servicex_code_gen_raw_uproot:v1.8.5671980005c57
binutils@2.44-3
no fix listed
1
sslhep/servicex_code_gen_topcp:v1.8.5596db2abdd09
binutils@2.44-3
no fix listed
1
sslhep/servicex-did-finder-atlasopenmagic:v1.8.554aaf1721d03
binutils@2.44-3
no fix listed
1
sslhep/servicex-did-finder-cernopendata:v1.8.52cb88ceab5bb
binutils@2.44-3
no fix listed
1
sslhep/servicex-did-finder-xrootd:v1.8.5c284442b44e3
binutils@2.44-3
no fix listed
1
statcan/ckan:2.93921305425b8
binutils@2.34-6ubuntu1.1
no fix listed
1
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.1611bceacec8fb
binutils@2.34-6ubuntu1.1
no fix listed
1
substratusai/verba:v0.4.0-baseURL261695be635eb
binutils@2.40-2
no fix listed
1
supabase/studio:20241021-9f9b08326d8070c55e9
binutils@2.40-2
no fix listed
1
supabase/studio:2026.08.03-sha-022b374606aca9fdaa7
binutils@2.40-2
no fix listed
1
supabase/studio:latest94a2a9d2906e
binutils@2.40-2
no fix listed
1
svtechnmaa/svtech_nagvis:v1.2.118394b08e6c3
binutils@2.40-2
no fix listed
1
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
binutils@2.34-6ubuntu1.9
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.