StackRadar

CVE-2025-14104

Medium

Advisory

Published 5 Dec 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.1
base score, highest
EPSS
0.002
9th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,884
of 17,790 indexed, latest versions
Container images
2,046
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: util-linux security update

Carried by container images the latest versions of 1,884 of 17,790 indexed charts deploy, on 2,046 images.

Affected packageAffected versionsFixed inImages
util-linuxdeb1:2.27.1-6ubuntu3.3, 1:2.38.1-5+deb12u1, 1:4.16.0-2+really2.41-5, 2.20.1-5.1ubuntu20.2+31 more2.41.3-1, 2.41.5-0+deb13u1+e11,630
util-linuxrpm2.32.1-8.el8, 2.32.1-17.el8, 2.32.1-22.el8, 2.32.1-24.el8+18 more0:2.32.1-48.el8_10, 0:2.37.4-21.el9, 0:2.37.4-21.el9_7, 2.40.4-150700.4.3.1+1 more313
util-linuxapk2.41-r9, 2.41.2-r02.41.4-r0, 2.41.6-r0103
OSV records
ALPINE-CVE-2025-14104DEBIAN-CVE-2025-14104RHSA-2026:1852RHSA-2026:1913RLSA-2026:1852RLSA-2026:1913UBUNTU-CVE-2025-14104ECHO-2993-d712-59ceopenSUSE-SU-2026:10072-1SUSE-SU-2026:0230-1

Charts affected

1,884 by stars
ChartLatestAffected imagesRadar Score
csi-driver-smbdeimosfr-charts1.20.31 of 5See more

csi-driver-smb deimosfr-charts 1.20.3

1 of the 5 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
registry.k8s.io/sig-storage/smbplugin:v1.20.3dc7746bb081e
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

3,005
linkdingdeimosfr-charts1.0.31 of 1See more

linkding deimosfr-charts 1.0.3

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.35.00c5dddf0b37c
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

6,092
supersetdeliveryheroVerified publisher1.1.31 of 1See more

superset deliveryhero 1.1.3

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
apache/superset:latest16b50bbef664
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

2,328
dellhw_exporterdellhw-exporterVerified publisher1.0.11 of 1See more

dellhw_exporter dellhw-exporter 1.0.1

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
quay.io/galexrt/dellhw_exporter:v2.0.0-rc.18a1361fa38c1
util-linux@2.37.4-18.el9
0:2.37.4-21.el9

Open the chart page →

3,233
challengedeneme0.1.01 of 2See more

challenge deneme 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
library/redis:6143f7bfc2358
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

2,721
deploy-elibrarydeploy-elibrary-helm0.1.01 of 1See more

deploy-elibrary deploy-elibrary-helm 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
psorab/elibrary:latest53b68896c4ce
util-linux@2.34-0.1ubuntu9.3
no fix listed

Open the chart page →

7,254
deploy-elibrarydeploy-elibrary-oo0.1.01 of 1See more

deploy-elibrary deploy-elibrary-oo 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
jedi132000/nextapp:latestdc2a81e92f23
util-linux@2.34-0.1ubuntu9.3
no fix listed

Open the chart page →

8,149
deployhubdeployhubVerified publisher10.0.4151 of 11See more

deployhub deployhub 10.0.415

1 of the 11 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
quay.io/deployhub/ms-nginx:svccat-v11.0.815-g717581d2d3400664e8
util-linux@2.41.2-r0
2.41.4-r0

Open the chart page →

11,191
seafilederp3.2.01 of 1See more

seafile derp 3.2.0

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:10.0.170628f29c663
util-linux@2.34-0.1ubuntu9.4
no fix listed

Open the chart page →

14,920
devops-diplomdevops-diplom-chartVerified publisher0.8.01 of 2See more

devops-diplom devops-diplom-chart 0.8.0

1 of the 2 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
library/postgres:13-alpinefb9065b6e3e2
util-linux@2.41-r9
2.41.6-r0

Open the chart page →

2,549
ai-agentdevtron0.0.11 of 1See more

ai-agent devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

9,685
calertdevtron0.0.11 of 1See more

calert devtron 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
util-linux@2.34-0.1ubuntu9.3
no fix listed

Open the chart page →

4,690
devtron-enterprisedevtron48.0.04 of 28See more

devtron-enterprise devtron 48.0.0

4 of the 28 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
util-linux@2.38.1-5+b1
no fix listed
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
util-linux@2.27.1-6ubuntu3.10
no fix listed
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
util-linux@2.38.1-5+deb12u3
no fix listed
quay.io/devtron/postgres:14.91b594392f7cb
util-linux@2.38.1-5+b1
no fix listed

Open the chart page →

68,695
dgraphdevtron0.0.201 of 1See more

dgraph devtron 0.0.20

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
util-linux@2.34-0.1ubuntu9.1
no fix listed

Open the chart page →

11,959
migration-incluster-cddevtron0.10.01 of 1See more

migration-incluster-cd devtron 0.10.0

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

3,908
ai-agentdevtron-labs0.0.11 of 1See more

ai-agent devtron-labs 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
quay.io/devtron/ai-agent:0.0.16545dac92173
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

9,685
calertdevtron-labs0.0.11 of 1See more

calert devtron-labs 0.0.1

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
util-linux@2.34-0.1ubuntu9.3
no fix listed

Open the chart page →

4,690
calicodevtron-labs0.1.11 of 4See more

calico devtron-labs 0.1.1

1 of the 4 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
quay.io/devtron/calico-networking:node-v3.19.1bc4aa22272ef
util-linux@2.32.1-17.el8
0:2.32.1-48.el8_10

Open the chart page →

10,094
clairdevtron-labs0.1.141 of 2See more

clair devtron-labs 0.1.14

1 of the 2 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
util-linux@2.32.1-28.el8
0:2.32.1-48.el8_10

Open the chart page →

6,237
devtron-enterprisedevtron-labs48.0.04 of 28See more

devtron-enterprise devtron-labs 48.0.0

4 of the 28 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
util-linux@2.38.1-5+b1
no fix listed
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
util-linux@2.27.1-6ubuntu3.10
no fix listed
quay.io/devtron/notifier:9804331c-372-39294709c7da19c5a
util-linux@2.38.1-5+deb12u3
no fix listed
quay.io/devtron/postgres:14.91b594392f7cb
util-linux@2.38.1-5+b1
no fix listed

Open the chart page →

68,695
devtron-operatordevtron-labs0.23.32 of 11See more

devtron-operator devtron-labs 0.23.3

2 of the 11 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
util-linux@2.38.1-5+b1
no fix listed
quay.io/devtron/postgres:14.91b594392f7cb
util-linux@2.38.1-5+b1
no fix listed

Open the chart page →

33,180
dgraphdevtron-labs0.0.201 of 1See more

dgraph devtron-labs 0.0.20

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
util-linux@2.34-0.1ubuntu9.1
no fix listed

Open the chart page →

11,959
migration-incluster-cddevtron-labs0.10.01 of 1See more

migration-incluster-cd devtron-labs 0.10.0

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

3,908
eoloplannerdfa-amm-eoloplannerVerified publisher0.1.02 of 7See more

eoloplanner dfa-amm-eoloplanner 0.1.0

2 of the 7 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
library/mongo:4.2.12-bionic628741415fc9
util-linux@2.31.1-0.4ubuntu3.7
no fix listed
oscarsotosanchez/weatherservice:v1.0911ec961d10b
util-linux@2.31.1-0.4ubuntu3.7
no fix listed

Open the chart page →

27,620
dial-admindialVerified publisher0.18.01 of 3See more

dial-admin dial 0.18.0

1 of the 3 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.5.0-debian-12-r1285198aae0aed
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

4,064
difydify1.0.02 of 4See more

dify dify 1.0.0

2 of the 4 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
langgenius/dify-api:1.0.0066035f93856
util-linux@2.38.1-5+deb12u3
no fix listed
langgenius/dify-sandbox:0.2.009b7e8705673
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

19,399
pagesdipak1.0.02 of 3See more

pages dipak 1.0.0

2 of the 3 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
util-linux@2.34-0.1ubuntu9.1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
util-linux@2.31.1-0.4ubuntu3.6
no fix listed

Open the chart page →

20,242
adventurelogdjjudas21Verified publisher0.1.11 of 3See more

adventurelog djjudas21 0.1.1

1 of the 3 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
ghcr.io/seanmorley15/adventurelog-backend:v0.13.00250d9cb0d74
util-linux@2.41-5
2.41.3-1

Open the chart page →

7,501
alertifydjjudas21Verified publisher0.1.01 of 1See more

alertify djjudas21 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
djjudas21/alertify:0.1.0ba22be670c37
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

2,395
domainmoddjjudas21Verified publisher1.0.01 of 1See more

domainmod djjudas21 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
domainmod/domainmod:4.23.04017bfe4c597
util-linux@2.38.1-5+b1
no fix listed

Open the chart page →

7,203
ecowitt-exporterdjjudas21Verified publisher2.2.21 of 1See more

ecowitt-exporter djjudas21 2.2.2

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
djjudas21/ecowitt-exporter:2.2.073aab45ef10d
util-linux@2.41-r9
2.41.6-r0

Open the chart page →

1,006
liturgical-colourdjjudas21Verified publisher99.99.991 of 1See more

liturgical-colour djjudas21 99.99.99

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
djjudas21/liturgical-colour-app:0.7.2954935971d42
util-linux@2.41-r9
2.41.6-r0

Open the chart page →

873
nova-exporterdjjudas21Verified publisher0.1.161 of 1See more

nova-exporter djjudas21 0.1.16

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
djjudas21/nova-exporter:0.0.10e9094580885c
util-linux@2.41-r9
2.41.6-r0

Open the chart page →

1,412
ownclouddjjudas21Verified publisher0.3.232 of 3See more

owncloud djjudas21 0.3.23

2 of the 3 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.3.2-debian-12-r9320c70dfd914
util-linux@2.38.1-5+deb12u1
no fix listed
valkey/valkey:8.1.481db6d39e1bb
util-linux@2.41-5
2.41.3-1

Open the chart page →

10,144
spoolmandjjudas21Verified publisher0.1.81 of 1See more

spoolman djjudas21 0.1.8

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
ghcr.io/donkie/spoolman:0.24.042135965c42d
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

1,850
truecommanddjjudas21Verified publisher0.1.01 of 1See more

truecommand djjudas21 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
ixsystems/truecommand:3.2.019c218455cd2
util-linux@2.41-5
2.41.3-1

Open the chart page →

5,197
webtreesdjjudas21Verified publisher3.0.01 of 1See more

webtrees djjudas21 3.0.0

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
ghcr.io/nathanvaughn/webtrees:2.2.6034151b61a80
util-linux@2.41-5
2.41.3-1

Open the chart page →

5,998
wizarrdjjudas21Verified publisher0.1.51 of 1See more

wizarr djjudas21 0.1.5

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
util-linux@2.38.1-5+b1
no fix listed

Open the chart page →

14,700
dnation-kubernetes-jsonnet-translatordnationcloud2.0.11 of 1See more

dnation-kubernetes-jsonnet-translator dnationcloud 2.0.1

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

3,839
dnation-kubernetes-monitoringdnationcloud3.0.21 of 1See more

dnation-kubernetes-monitoring dnationcloud 3.0.2

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

3,839
dnation-kubernetes-monitoring-stackdnationcloud4.0.24 of 17See more

dnation-kubernetes-monitoring-stack dnationcloud 4.0.2

4 of the 17 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
dnationcloud/kubernetes-jsonnet-translator:2.0.178fed4f3c130
util-linux@2.38.1-5+deb12u1
no fix listed
quay.io/kiwigrid/k8s-sidecar:2.8.1abb55b2165c6
util-linux@2.41-r9
2.41.6-r0
quay.io/minio/mc:RELEASE.2022-10-20T23-26-33Z50ee58bc9770
util-linux@2.32.1-35.el8
0:2.32.1-48.el8_10
quay.io/minio/minio:RELEASE.2022-10-24T18-35-07Zd853057f2800
util-linux@2.32.1-35.el8
0:2.32.1-48.el8_10

Open the chart page →

21,744
api-postsdniel0.9.11 of 1See more

api-posts dniel 0.9.1

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
dniel/api-posts:master45a667852f2a
util-linux@2.31.1-0.4ubuntu3.4
no fix listed

Open the chart page →

8,995
dnsmasq-k8sdnsmasq-k8s1.4.11 of 1See more

dnsmasq-k8s dnsmasq-k8s 1.4.1

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
deimosfr/dnsmasq-k8s:1.4.1284c4040fc6d
util-linux@2.41-5
2.41.3-1

Open the chart page →

3,066
dominodomino-iisasVerified publisher0.3.13 of 3See more

domino domino-iisas 0.3.1

3 of the 3 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
library/postgres:134689940c6838
util-linux@2.41-5
2.41.3-1
ghcr.io/iisas/domino-frontend:k8s8e53861be292
util-linux@2.38.1-5+deb12u3
no fix listed
ghcr.io/iisas/domino-rest:latest3009350bfc11
util-linux@2.41-5
2.41.3-1

Open the chart page →

10,340
doris-foundationdbdorisVerified publisher25.8.01 of 4See more

doris-foundationdb doris 25.8.0

1 of the 4 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
foundationdb/fdb-kubernetes-operator:v2.3.07d7b6985291e
util-linux@2.37.4-20.el9
0:2.37.4-21.el9

Open the chart page →

3,185
seleniumdoubanVerified publisher1.3.21 of 1See more

selenium douban 1.3.2

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
selenium/hub:3.141.5902f251d48d5f
util-linux@2.34-0.1ubuntu9.1
no fix listed

Open the chart page →

11,827
eoloplannerdreyg-jescribanob-chart-eoloplanner0.1.02 of 7See more

eoloplanner dreyg-jescribanob-chart-eoloplanner 0.1.0

2 of the 7 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
library/mongo:4.2.12-bionic628741415fc9
util-linux@2.31.1-0.4ubuntu3.7
no fix listed
oscarsotosanchez/weatherservice:v1.0911ec961d10b
util-linux@2.31.1-0.4ubuntu3.7
no fix listed

Open the chart page →

24,726
drogue-cloud-coredrogue-iotVerified publisher0.7.1120 of 22See more

drogue-cloud-core drogue-iot 0.7.11

20 of the 22 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
ghcr.io/drogue-iot/authentication-service:0.11.0857b137fc7b3
util-linux@2.37.4-9.el9
0:2.37.4-21.el9_7
ghcr.io/drogue-iot/coap-endpoint:0.11.044790b71aa22
util-linux@2.37.4-9.el9
0:2.37.4-21.el9_7
ghcr.io/drogue-iot/command-endpoint:0.11.06dce3158b851
util-linux@2.37.4-9.el9
0:2.37.4-21.el9_7
ghcr.io/drogue-iot/console-backend:0.11.025d229ae5bde
util-linux@2.37.4-9.el9
0:2.37.4-21.el9_7
ghcr.io/drogue-iot/console-frontend:0.11.0558972f9374c
util-linux@2.37.4-9.el9
0:2.37.4-21.el9_7
ghcr.io/drogue-iot/database-migration:0.11.057072c72a7cd
util-linux@2.37.4-9.el9
0:2.37.4-21.el9_7
ghcr.io/drogue-iot/device-management-controller:0.11.0200aea1a2b42
util-linux@2.37.4-9.el9
0:2.37.4-21.el9_7
ghcr.io/drogue-iot/device-management-service:0.11.0f4a5bfc06a74
util-linux@2.37.4-9.el9
0:2.37.4-21.el9_7
ghcr.io/drogue-iot/device-state-service:0.11.0fbf0738cfc7e
util-linux@2.37.4-9.el9
0:2.37.4-21.el9_7
ghcr.io/drogue-iot/http-endpoint:0.11.0b612c18479e0
util-linux@2.37.4-9.el9
0:2.37.4-21.el9_7
ghcr.io/drogue-iot/knative-operator:0.11.0e2d927639f6e
util-linux@2.37.4-9.el9
0:2.37.4-21.el9_7
ghcr.io/drogue-iot/mqtt-endpoint:0.11.032c6d2f5eab9
util-linux@2.37.4-9.el9
0:2.37.4-21.el9_7
ghcr.io/drogue-iot/mqtt-integration:0.11.07ac2adb6ca49
util-linux@2.37.4-9.el9
0:2.37.4-21.el9_7
ghcr.io/drogue-iot/outbox-controller:0.11.01a958edafdb1
util-linux@2.37.4-9.el9
0:2.37.4-21.el9_7
ghcr.io/drogue-iot/test-cert-generator:0.11.06ba7e1608286
util-linux@2.32.1-38.el8
0:2.32.1-48.el8_10
ghcr.io/drogue-iot/topic-strimzi-operator:0.11.05253fbf8d04c
util-linux@2.37.4-9.el9
0:2.37.4-21.el9_7
ghcr.io/drogue-iot/ttn-operator:0.11.07dd5ac80c8f1
util-linux@2.37.4-9.el9
0:2.37.4-21.el9_7
ghcr.io/drogue-iot/user-auth-service:0.11.0adebc40ddf98
util-linux@2.37.4-9.el9
0:2.37.4-21.el9_7
ghcr.io/drogue-iot/websocket-integration:0.11.0372dcd370945
util-linux@2.37.4-9.el9
0:2.37.4-21.el9_7
quay.io/keycloak/keycloak:20.0054ef67eb7da
util-linux@2.32.1-39.el8_7
0:2.32.1-48.el8_10

Open the chart page →

55,990
drogue-cloud-examplesdrogue-iotVerified publisher0.7.113 of 6See more

drogue-cloud-examples drogue-iot 0.7.11

3 of the 6 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
ghcr.io/ctron/kubectl:1.25e37d61b5277c
util-linux@2.32.1-43.el8
0:2.32.1-48.el8_10
ghcr.io/drogue-iot/drogue-event-source:0.2.1e2e812a4cf8e
util-linux@2.32.1-28.el8
0:2.32.1-48.el8_10
ghcr.io/drogue-iot/postgresql-pusher:0.2.1c6bb121ced90
util-linux@2.32.1-28.el8
0:2.32.1-48.el8_10

Open the chart page →

30,753
drogue-cloud-twindrogue-iotVerified publisher0.7.111 of 8See more

drogue-cloud-twin drogue-iot 0.7.11

1 of the 8 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0054ef67eb7da
util-linux@2.32.1-39.el8_7
0:2.32.1-48.el8_10

Open the chart page →

6,915

Container images carrying it

2,046 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
minio/minio:RELEASE.2022-10-24T18-35-07Zf9576903f19d
util-linux@2.32.1-35.el8
0:2.32.1-48.el8_10
1
minio/minio:RELEASE.2023-01-12T02-06-16Zfc6bedc99355
util-linux@2.32.1-38.el8
0:2.32.1-48.el8_10
1
minio/operator:v5.0.9170b154d2c61
util-linux@2.32.1-42.el8_8
0:2.32.1-48.el8_10
1
minio/operator:v4.1.02adc5be088f5
util-linux@2.32.1-27.el8
0:2.32.1-48.el8_10
1
mintproject/graphql-engine:305c0dbeba1878eafe348f21fc300fbfc017d9dc83aade2c1855
util-linux@2.34-0.1ubuntu9.3
no fix listed
1
mintproject/model-catalog-fastapi:7dd88dc5bf1fe6a6d4703ea0a077afee45cb256102260d20a21f
util-linux@2.38.1-5+deb12u3
no fix listed
1
miqm/session-scaler:0.1.0c5c211717d9b
util-linux@2.38.1-5+b1
no fix listed
1
mockserver/mockserver:mockserver-8.0.0b8426e0b3c80
util-linux@2.38.1-5+deb12u3
no fix listed
1
moodlehq/moodle-php-apache:8.4-bookworm922af5166835
util-linux@2.38.1-5+deb12u3
no fix listed
1
moreillon/api-proxy:latestd7d4a5463525
util-linux@2.38.1-5+deb12u3
no fix listed
1
moreillon/camera-viewer:lateste418cc694bd5
util-linux@2.38.1-5+deb12u3
no fix listed
1
moreillon/food-manager:lateste8fd856e593d
util-linux@2.38.1-5+deb12u3
no fix listed
1
moreillon/group-manager:latest3caa8f710ee0
util-linux@2.38.1-5+deb12u3
no fix listed
1
moreillon/group-manager-front:latest5f0a38498271
util-linux@2.41-5
2.41.3-1
1
moreillon/user-manager-front:v5.1.06597e6b98d21
util-linux@2.38.1-5+deb12u1
no fix listed
1
moreillon/user-manager-mongoose:v5.0.1d2ee0423b797
util-linux@2.38.1-5+b1
no fix listed
1
mrasif/mrasif.in:v4.6.0375a1ed8fdc0
util-linux@2.41.2-r0
2.41.4-r0
1
mshanley80/httpbin2022:latest5b189a70c0fb
util-linux@2.34-0.1ubuntu9.3
no fix listed
1
muhammedgamal/fp23:latest74b4cd69b6fa
util-linux@2.38.1-5+deb12u1
no fix listed
1
muluder/prograncontrollermcord:0.1.843b597a93da7
util-linux@2.27.1-6ubuntu3.3
no fix listed
1
murtazashah46/helmfile:latest4d11726cf803
util-linux@2.38.1-5+deb12u1
no fix listed
1
mvance/unbound:1.20.04bf67b567f39
util-linux@2.38.1-5+deb12u1
no fix listed
1
mvance/unbound:1.22.076906da36d18
util-linux@2.38.1-5+deb12u1
no fix listed
1
n3uronhub/n3uron:v1.22.4423a0bdd9cb9
util-linux@2.41-5
2.41.3-1
1
ncsa/checks:main0b738bbc8d70
util-linux@2.41-5
2.41.3-1
1
netdata/netdata:v2.11.0c45c71eb23ff
util-linux@2.41-5
2.41.3-1
1
netrisai/controller-grpc:4.6.0.00753178bf173c2
util-linux@2.34-0.1ubuntu9.6
no fix listed
1
netrisai/controller-telescope:4.6.0.00414d82948a8b2
util-linux@2.34-0.1ubuntu9.6
no fix listed
1
netrisai/controller-telescope-notifier:3.0.455e826ef9a5d
util-linux@2.34-0.1ubuntu9.6
no fix listed
1
netrisai/controller-web-service-frontend:4.6.0-0138c5074f55ae5
util-linux@2.41.2-r0
2.41.4-r0
1
netrisai/controller-web-session-generator:0.2.0a030a31289f4
util-linux@2.34-0.1ubuntu9.3
no fix listed
1
networktocode/nautobot:3.0-py3.13ed484336b1ad
util-linux@2.41-5
2.41.3-1
1
newrelic/newrelic-agent-control-cli:0.48.01a448492b55a
util-linux@2.41-5
2.41.3-1
1
ngick8stesting/c3po-mme:mwca-mme-debug8dd6dea45be4
util-linux@2.27.1-6ubuntu3.6
no fix listed
1
nginxdemos/hello:plain-text751bf8933179
util-linux@2.41-r9
2.41.6-r0
1
nginxdemos/hello:0.4b28d1e16c676
util-linux@2.41-r9
2.41.6-r0
1
nginxinc/nginx-unprivileged:1.29.0-alpine3.2282dcf28da5a8
util-linux@2.41-r9
2.41.6-r0
1
nginxinc/nginx-unprivileged:1.29.5c5b989ebc150
util-linux@2.41-5
2.41.3-1
1
nginxinc/nginx-unprivileged:mainline-alpinee93571f3d083
util-linux@2.41.2-r0
2.41.4-r0
1
nirmalnaveen/supermario:latest8541a39162f3
util-linux@2.38.1-5+b1
no fix listed
1
nodered/node-red:4.1.2216e7403aab9
util-linux@2.41-r9
2.41.6-r0
1
nouchka/sqlite3:latestd183308f201c
util-linux@2.41-5
2.41.3-1
1
nousresearch/hermes-agent:v2026.8.27e0df6adebddf
util-linux@2.41-5
2.41.3-1
1
nvidia/dcgm-exporter:2.2.9-2.4.1-ubuntu20.0491b20b66d1cd
util-linux@2.34-0.1ubuntu9.1
no fix listed
1
nvidia/k8s-device-plugin:v0.9.0964847cc3fd8
util-linux@2.27.1-6ubuntu3.10
no fix listed
1
offchainlabs/nitro-node:v3.7.6-c0fe95e9f779fa84b7b
util-linux@2.38.1-5+deb12u3
no fix listed
1
offchainlabs/nitro-node:v3.1.0-7d1d84ce95865866129
util-linux@2.38.1-5+deb12u1
no fix listed
1
oled01/automx2:2025.1.105d3e398e675
util-linux@2.38.1-5+deb12u3
no fix listed
1
omecproject/c3po-hss:master-latest638671ef4842
util-linux@2.27.1-6ubuntu3.10
no fix listed
1
omecproject/c3po-hssdb:master-latest28a90cc26716
util-linux@2.34-0.1ubuntu9.1
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.