StackRadar

CVE-2025-13151

High

Advisory

Published 7 Jan 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.011
65th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,949
of 17,803 indexed, latest versions
Container images
2,133
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: libtasn1 security update

Carried by container images the latest versions of 1,949 of 17,803 indexed charts deploy, on 2,133 images.

Affected packageAffected versionsFixed inImages
libtasn1-6deb3.4-3ubuntu0.1, 3.4-3ubuntu0.5, 3.4-3ubuntu0.6, 4.7-3ubuntu0.16.04.2+12 more3.4-3ubuntu0.6+esm1, 4.7-3ubuntu0.16.04.3+esm4, 4.13-2ubuntu0.1~esm1, 4.16.0-2ubuntu0.1+esm1+4 more1,738
libtasn1apk4.19.0-r2, 4.20.0-r04.21.0-r046
libtasn1rpm4.13-3.el8, 4.13-3.el8_6.1, 4.13-4.el8_7, 4.13-5.el8_10+7 more0:4.13-6.el8_10, 0:4.16.0-10.el9_8, 0:4.20.0-5.el10_2, 4.13-150000.4.14.1+2 more349
OSV records
ALPINE-CVE-2025-13151DEBIAN-CVE-2025-13151UBUNTU-CVE-2025-13151RHSA-2026:28235RHSA-2026:28253RHSA-2026:36728RLSA-2026:28253RLSA-2026:36728openSUSE-SU-2026:10033-1SUSE-SU-2026:0224-1SUSE-SU-2026:21142-1
Also known as
USN-7954-1, USN-7954-2

Charts affected

1,949 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

2,133 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
voltha/voltha-tester:1.7.0655c3048a602
libtasn1-6@4.7-3ubuntu0.16.04.3
4.7-3ubuntu0.16.04.3+esm4
1
wallarm/api-gateway:0.2.0a3d4d2f780e8
libtasn1-6@4.19.0-2+deb12u1
no fix listed
1
wallarm/gateway-controller:0.4.09c6ed23e2f0e
libtasn1-6@4.20.0-2
4.20.0-2+deb13u1
1
wallarm/kong:3.1.0-ubuntu-4.6.0ea9608c82e40
libtasn1-6@4.16.0-2
4.16.0-2ubuntu0.1+esm1
1
wasmcloud/wasmcloud:0.81.05c7acfe7e8e1
libtasn1-6@4.19.0-2
no fix listed
1
wateim/lighthouse-launch:latest2520149ee574
libtasn1-6@4.18.0-4build1
4.18.0-4ubuntu0.2
1
wavefronthq/proxy:9.2d1064d28f6eb
libtasn1-6@4.13-2
4.13-2ubuntu0.1~esm1
1
wazuh/wazuh-dashboard:4.4.11787550d2358
libtasn1-6@4.16.0-2
4.16.0-2ubuntu0.1+esm1
1
wazuh/wazuh-manager:4.4.121994f40e0da
libtasn1-6@4.16.0-2
4.16.0-2ubuntu0.1+esm1
1
wekanteam/wekan:v4.2268a51f0327df
libtasn1-6@4.16.0-2
4.16.0-2ubuntu0.1+esm1
1
wiktorn/overpass-api:latest9bb5f4a9b54c
libtasn1-6@4.19.0-2+deb12u1
no fix listed
1
wistefan/mvf:lateste0887302b2d8
libtasn1-6@4.18.0-4build1
4.18.0-4ubuntu0.2
1
wolveix/satisfactory-server:v1.9.1199be1064b18
libtasn1-6@4.18.0-4build1
4.18.0-4ubuntu0.2
1
wolveix/satisfactory-server:v1.9.9464d11e36e10
libtasn1-6@4.18.0-4ubuntu0.1
4.18.0-4ubuntu0.2
1
woojoong/wowza:latestec230db19652
libtasn1-6@4.13-2
4.13-2ubuntu0.1~esm1
1
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
libtasn1-6@4.18.0-4build1
4.18.0-4ubuntu0.2
1
xeladock/mysql_dns:latest4baf531453f1
libtasn1-6@4.18.0-4build1
4.18.0-4ubuntu0.2
1
xeladock/nginx2:latestc259a67b1dff
libtasn1-6@4.18.0-4build1
4.18.0-4ubuntu0.2
1
xeotek/kadeck:6.3.439a3b37a17c5
libtasn1-6@4.18.0-4ubuntu0.1
4.18.0-4ubuntu0.2
1
xeotek/kadeck:4.2.94c6b04d9ce55
libtasn1-6@4.16.0-2
4.16.0-2ubuntu0.1+esm1
1
xom4ekp2p/infini-route-attestators-public-mainnet-attester:latestd0e0aa238b02
libtasn1-6@4.19.0-2
no fix listed
1
xom4ekp2p/infini-route-attestators-public-mainnet-avs-webapi:latest2745b5fd8785
libtasn1-6@4.19.0-2
no fix listed
1
yandex/clickhouse-client:21.3863f94a0f607
libtasn1-6@4.13-2
4.13-2ubuntu0.1~esm1
1
yandex/clickhouse-server:latest1cbf75aabe1e
libtasn1-6@4.16.0-2
4.16.0-2ubuntu0.1+esm1
1
yandex/clickhouse-server:21.3.204eccfffb01d7
libtasn1-6@4.16.0-2
4.16.0-2ubuntu0.1+esm1
1
yandex/clickhouse-server:19.17ab1738a64b70
libtasn1-6@4.13-2
4.13-2ubuntu0.1~esm1
1
yandex/clickhouse-server:19.14ccf9c2b5e3f2
libtasn1-6@4.13-2
4.13-2ubuntu0.1~esm1
1
yandex/clickhouse-server:19.16d210dc69321e
libtasn1-6@4.13-2
4.13-2ubuntu0.1~esm1
1
youkadev/api-snap:0.1.14db0f9428e67
libtasn1-6@4.19.0-2
no fix listed
1
yuzutech/kroki-bpmn:0.29.1444805c4b917
libtasn1@4.20.0-r0
4.21.0-r0
1
yuzutech/kroki-diagramsnet:0.29.1b810edbf9c62
libtasn1@4.20.0-r0
4.21.0-r0
1
yuzutech/kroki-excalidraw:0.29.157917319ea70
libtasn1@4.20.0-r0
4.21.0-r0
1
yuzutech/kroki-mermaid:0.29.1963b4acfde6e
libtasn1@4.20.0-r0
4.21.0-r0
1
zabbix/zabbix-agent:ubuntu-5.4.62127168cab03
libtasn1-6@4.16.0-2
4.16.0-2ubuntu0.1+esm1
1
zabbix/zabbix-agent2:ubuntu-6.0.8e5b594057c9c
libtasn1-6@4.18.0-4build1
4.18.0-4ubuntu0.2
1
zabbix/zabbix-server-mysql:ubuntu-6.4-latest55d074b6b031
libtasn1-6@4.19.0-3build1
4.19.0-3ubuntu0.24.04.2
1
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
libtasn1-6@4.16.0-2
4.16.0-2ubuntu0.1+esm1
1
zabbix/zabbix-server-pgsql:ubuntu-6.0.8d59ffa07f615
libtasn1-6@4.18.0-4build1
4.18.0-4ubuntu0.2
1
zabbix/zabbix-web-nginx-mysql:ubuntu-6.4-latest0e5f69c4c54e
libtasn1-6@4.19.0-3build1
4.19.0-3ubuntu0.24.04.2
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
libtasn1-6@4.16.0-2
4.16.0-2ubuntu0.1+esm1
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-6.0.899e9a090b516
libtasn1-6@4.18.0-4build1
4.18.0-4ubuntu0.2
1
zabbix/zabbix-web-service:ubuntu-6.0.8ee4baa872280
libtasn1-6@4.18.0-4build1
4.18.0-4ubuntu0.2
1
zenmldocker/zenml-server:0.96.409027a6312ee
libtasn1-6@4.19.0-2+deb12u1
no fix listed
1
zepai/knowledge-graph-mcp:v0.2.16ab0ee79926b
libtasn1-6@4.19.0-2+deb12u1
no fix listed
1
gcr.io/abacus-labs-dev/hyperlane-agent:10c0ab1-20231215-220639f33e88324a40
libtasn1-6@4.18.0-4build1
4.18.0-4ubuntu0.2
1
gcr.io/datadoghq/cluster-agent:7.61.06efe04ba4e06
libtasn1-6@4.19.0-3build1
4.19.0-3ubuntu0.24.04.2
1
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
libtasn1-6@4.13-2
4.13-2ubuntu0.1~esm1
1
gcr.io/google-containers/echoserver:1.910f4dbc8eeeb
libtasn1-6@4.7-3ubuntu0.16.04.2
4.7-3ubuntu0.16.04.3+esm4
1
gcr.io/google_containers/echoserver:1.10cb5c1bddd1b5
libtasn1-6@4.7-3ubuntu0.16.04.2
4.7-3ubuntu0.16.04.3+esm4
1
gcr.io/istio-release/pilot:release-1.0-latest-daily5ea7b7f3632a
libtasn1-6@4.7-3ubuntu0.16.04.3
4.7-3ubuntu0.16.04.3+esm4
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.