StackRadar

CVE-2025-14104

Medium

Advisory

Published 5 Dec 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
6.1
base score, highest
EPSS
0.002
9th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,884
of 17,790 indexed, latest versions
Container images
2,046
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: util-linux security update

Carried by container images the latest versions of 1,884 of 17,790 indexed charts deploy, on 2,046 images.

Affected packageAffected versionsFixed inImages
util-linuxdeb1:2.27.1-6ubuntu3.3, 1:2.38.1-5+deb12u1, 1:4.16.0-2+really2.41-5, 2.20.1-5.1ubuntu20.2+31 more2.41.3-1, 2.41.5-0+deb13u1+e11,630
util-linuxrpm2.32.1-8.el8, 2.32.1-17.el8, 2.32.1-22.el8, 2.32.1-24.el8+18 more0:2.32.1-48.el8_10, 0:2.37.4-21.el9, 0:2.37.4-21.el9_7, 2.40.4-150700.4.3.1+1 more313
util-linuxapk2.41-r9, 2.41.2-r02.41.4-r0, 2.41.6-r0103
OSV records
ALPINE-CVE-2025-14104DEBIAN-CVE-2025-14104RHSA-2026:1852RHSA-2026:1913RLSA-2026:1852RLSA-2026:1913UBUNTU-CVE-2025-14104ECHO-2993-d712-59ceopenSUSE-SU-2026:10072-1SUSE-SU-2026:0230-1

Charts affected

1,884 by stars
ChartLatestAffected imagesRadar Score
oesopsmxVerified publisher4.0.328 of 25See more

oes opsmx 4.0.32

8 of the 25 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
util-linux@2.27.1-6ubuntu3.6
no fix listed
quay.io/opsmxpublic/ubi8-gate:isd-spin-2025.10.01-5c720954-2025112608102b3554029737
util-linux@2.32.1-46.el8
0:2.32.1-48.el8_10
quay.io/opsmxpublic/ubi8-oes-audit-client:isd-spin-2025.10.01-cb1bfce-20251126103732a5b1887eab
util-linux@2.32.1-46.el8
0:2.32.1-48.el8_10
quay.io/opsmxpublic/ubi8-oes-autopilot:isd-spin-2025.10.01-af26a30d4-20251126105458bd0bcf72f9
util-linux@2.32.1-46.el8
0:2.32.1-48.el8_10
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
util-linux@2.41-5
2.41.3-1
quay.io/opsmxpublic/ubi8-oes-db:v3.0.089ee6493af89
util-linux@2.32.1-27.el8
0:2.32.1-48.el8_10
quay.io/opsmxpublic/ubi8-oes-platform:isd-spin-2025.10.01-a7c191ec-2025112611228ed603ab7417
util-linux@2.32.1-46.el8
0:2.32.1-48.el8_10
quay.io/opsmxpublic/ubi8-oes-ui:isd-spin-2025.10.01-e6f6f01-2025121006405d934bb66884
util-linux@2.32.1-46.el8
0:2.32.1-48.el8_10

Open the chart page →

108,315
part-dbpart-dbVerified publisher0.1.21 of 1See more

part-db part-db 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
jbtronics/part-db1:latest5db71f6db59d
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

3,344
redispascaliskeVerified publisher2.1.01 of 1See more

redis pascaliske 2.1.0

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
library/redis:8.0.3be0a135f1955
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

1,869
ipmi-exporterpnnl-miscscripts0.1.151 of 1See more

ipmi-exporter pnnl-miscscripts 0.1.15

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
pnnlmiscscripts/ipmi-exporter:1.2.0-181e18992d8e3
util-linux@2.32.1-43.el8
0:2.32.1-48.el8_10

Open the chart page →

2,994
prometheus-prefect-exporterprefectVerified publisher2026.8.71410241 of 1See more

prometheus-prefect-exporter prefect 2026.8.7141024

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
prefecthq/prometheus-prefect-exporter:4.0.050d527a190ae
util-linux@2.41-5
2.41.3-1

Open the chart page →

1,022
qgis-serverqgis-serverVerified publisher0.1.101 of 3See more

qgis-server qgis-server 0.1.10

1 of the 3 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
library/nginx:1.27.409369da6b103
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

5,465
repoflowrepoflow-helm-public0.9.12 of 8See more

repoflow repoflow-helm-public 0.9.1

2 of the 8 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
library/elasticsearch:8.15.0310b9fc03b06
util-linux@2.34-0.1ubuntu9.6
no fix listed
library/postgres:16.24aea012537ed
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

13,647
nominatimrobjuz6.4.11 of 4See more

nominatim robjuz 6.4.1

1 of the 4 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

8,783
rocketmq-clusterrocketmq12.6.01 of 2See more

rocketmq-cluster rocketmq 12.6.0

1 of the 2 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
apacherocketmq/rocketmq-dashboard:2.1.0ce78506bd6fe
util-linux@2.37.4-21.el9
0:2.37.4-21.el9_7

Open the chart page →

6,400
browserless-chromesagikazarmarkVerified publisher0.0.51 of 1See more

browserless-chrome sagikazarmark 0.0.5

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
util-linux@2.34-0.1ubuntu9.1
no fix listed

Open the chart page →

24,566
seldon-core-operatorseldon1.19.01 of 1See more

seldon-core-operator seldon 1.19.0

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
seldonio/seldon-core-operator:1.19.0544e3bf71bd1
util-linux@2.37.4-21.el9
0:2.37.4-21.el9_7

Open the chart page →

860
lldapself-hosters-by-nightVerified publisher0.5.21 of 2See more

lldap self-hosters-by-night 0.5.2

1 of the 2 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
library/postgres:18.11090bc3a8ccf
util-linux@2.41-5
2.41.3-1

Open the chart page →

3,423
skypilotskypilotOfficialVerified publisher0.13.01 of 3See more

skypilot skypilot 0.13.0

1 of the 3 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
berkeleyskypilot/skypilot:0.13.03bc8bf8f4d83
util-linux@2.41-5
2.41.3-1

Open the chart page →

5,926
kafka-chartsoldevelo-kafka-chart32.4.41 of 1See more

kafka-chart soldevelo-kafka-chart 32.4.4

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
soldevelo/kafka:4.0.0-debian-12-r0cfdc08c2f577
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

2,377
sn-platformstreamnative1.11.441 of 9See more

sn-platform streamnative 1.11.44

1 of the 9 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
util-linux@2.34-0.1ubuntu9.6
no fix listed

Open the chart page →

15,564
repmanszpadel-chartsVerified publisher3.52.171 of 3See more

repman szpadel-charts 3.52.17

1 of the 3 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
library/nginx:1.27.3fb197595ebe7
util-linux@2.38.1-5+deb12u2
no fix listed

Open the chart page →

7,075
pretixtechwolf12Verified publisher2026.7.03 of 3See more

pretix techwolf12 2026.7.0

3 of the 3 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
library/postgres:18.4a02db8cac496
util-linux@2.41-5
2.41.3-1
pretix/standalone:2026.7.05df3b7aa852e
util-linux@2.41-5
2.41.3-1
valkey/valkey:9.1.08e8d64b405ce
util-linux@2.41-5
2.41.3-1

Open the chart page →

9,894
mealieth-chartsVerified publisher0.5.11 of 1See more

mealie th-charts 0.5.1

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v3.7.0bb2939094eed
util-linux@2.41-5
2.41.3-1

Open the chart page →

3,827
huginnutkuozdemirVerified publisher2.2.11 of 4See more

huginn utkuozdemir 2.2.1

1 of the 4 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
util-linux@2.31.1-0.4ubuntu3.7
no fix listed

Open the chart page →

18,177
wasmcloud-chartwasmcloud-chartVerified publisher0.7.21 of 2See more

wasmcloud-chart wasmcloud-chart 0.7.2

1 of the 2 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
wasmcloud/wasmcloud:0.81.05c7acfe7e8e1
util-linux@2.38.1-5+b1
no fix listed

Open the chart page →

3,478
minio-operatorwenerme4.3.71 of 2See more

minio-operator wenerme 4.3.7

1 of the 2 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
minio/operator:v4.3.754393e03f3b2
util-linux@2.32.1-28.el8
0:2.32.1-48.el8_10

Open the chart page →

6,085
wgerwgerOfficialVerified publisher1.0.03 of 8See more

wger wger 1.0.0

3 of the 8 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
journeyapps/powersync-service:latestbf46f66e5dcc
util-linux@2.41-5
2.41.3-1
library/postgres:15.186eb0add3b77c
util-linux@2.41-5
2.41.3-1
library/redis:8.8.0234c902a2db4
util-linux@2.41-5
2.41.3-1

Open the chart page →

8,634
keycloak-operatorwiremindVerified publisher0.0.141 of 1See more

keycloak-operator wiremind 0.0.14

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak-operator:18.0.0-legacy36ce77526145
util-linux@2.32.1-28.el8
0:2.32.1-48.el8_10

Open the chart page →

4,713
paperlesszekker6Verified publisher11.8.01 of 1See more

paperless zekker6 11.8.0

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
util-linux@2.41-5
2.41.3-1

Open the chart page →

4,651
kubernetes-etcd-backupadfinisVerified publisher1.6.21 of 1See more

kubernetes-etcd-backup adfinis 1.6.2

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
ghcr.io/adfinis/kubernetes-etcd-backup:v1.4.68ec6c4812a7e
util-linux@2.37.4-21.el9
0:2.37.4-21.el9_7

Open the chart page →

1,851
paperless-ngxadnoctemVerified publisher0.4.22 of 5See more

paperless-ngx adnoctem 0.4.2

2 of the 5 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
gotenberg/gotenberg:8.36.087c16b9f3642
util-linux@2.41-5
2.41.3-1
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
util-linux@2.41-5
2.41.3-1

Open the chart page →

19,828
github-actions-runneradwerx0.10.31 of 1See more

github-actions-runner adwerx 0.10.3

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
adwerx/github-actions-runner:2.276.1-20.04-1840d2b078682
util-linux@2.34-0.1ubuntu9.1
no fix listed

Open the chart page →

13,671
agentareaagentareaVerified publisher0.0.184 of 16See more

agentarea agentarea 0.0.18

4 of the 16 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
agentarea/agentarea-api:latest9e15e16fa758
util-linux@2.41-5
2.41.3-1
agentarea/agentarea-mcp-runner:latestd3c209a5d531
util-linux@2.38.1-5+deb12u3
no fix listed
agentarea/agentarea-worker:latest1e5cb68ee77a
util-linux@2.41-5
2.41.3-1
valkey/valkey:9.0.1546304417fea
util-linux@2.41-5
2.41.3-1

Open the chart page →

15,049
jellyfinalekcVerified publisher0.9.01 of 1See more

jellyfin alekc 0.9.0

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
util-linux@2.41-5
2.41.3-1

Open the chart page →

2,626
paperless-ngxalexmorbo-paperless-ngxVerified publisher0.2.02 of 2See more

paperless-ngx alexmorbo-paperless-ngx 0.2.0

2 of the 2 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
valkey/valkey:9.0.2930b41430fb7
util-linux@2.41-5
2.41.3-1
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
util-linux@2.41-5
2.41.3-1

Open the chart page →

12,092
clearml-agentallegroaiVerified publisher5.3.31 of 1See more

clearml-agent allegroai 5.3.3

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
util-linux@2.31.1-0.4ubuntu3.7
no fix listed

Open the chart page →

12,081
hermes-agentankra-chartsVerified publisher0.3.11 of 1See more

hermes-agent ankra-charts 0.3.1

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
nousresearch/hermes-agent:v2026.8.27e0df6adebddf
util-linux@2.41-5
2.41.3-1

Open the chart page →

5,971
alazanteonVerified publisher0.12.01 of 1See more

alaz anteon 0.12.0

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
ddosify/alaz:v0.12.0ea602056d9ce
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

3,395
anteonanteonVerified publisher2.6.42 of 13See more

anteon anteon 2.6.4

2 of the 13 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
ddosify/selfhosted_backend:3.2.93c11e3182652
util-linux@2.38.1-5+b1
no fix listed
ddosify/selfhosted_hammermanager:2.0.2b796b8c73011
util-linux@2.38.1-5+b1
no fix listed

Open the chart page →

22,304
argocd-backup-s3argocd-backup-s3Verified publisher0.9.51 of 1See more

argocd-backup-s3 argocd-backup-s3 0.9.5

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/argocd-backup-s3:latestb61c750ade19
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

5,249
s3dartur9010Verified publisher1.0.11 of 1See more

s3d artur9010 1.0.1

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
ghcr.io/siafoundation/s3d:bf33bf3b3fcc85f7282
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

1,736
arvancloud-webhookarvancloud-webhookVerified publisher1.0.01 of 1See more

arvancloud-webhook arvancloud-webhook 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
ghcr.io/parmincloud/arvancloud-certmanager-issuer:v1.0.00b97452674a3
util-linux@2.41-5
2.41.3-1

Open the chart page →

2,327
soarv113assist-iot-cybersecurity-monitoring-soar0.1.31 of 5See more

soarv113 assist-iot-cybersecurity-monitoring-soar 0.1.3

1 of the 5 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
assistiot/cybersecurity-monitoring_ir-cas:latest6a107f224c34
util-linux@2.34-0.1ubuntu9.4
no fix listed

Open the chart page →

17,951
dltbrokerassist-iot-distributed-broker0.2.02 of 9See more

dltbroker assist-iot-distributed-broker 0.2.0

2 of the 9 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
util-linux@2.27.1-6ubuntu3.4
no fix listed
hyperledger/fabric-couchdb:0.4.15f6c724592abf
util-linux@2.27.1-6ubuntu3.6
no fix listed

Open the chart page →

77,883
dltloggingassist-iot-logging-auditing0.2.02 of 9See more

dltlogging assist-iot-logging-auditing 0.2.0

2 of the 9 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
util-linux@2.27.1-6ubuntu3.4
no fix listed
hyperledger/fabric-couchdb:0.4.15f6c724592abf
util-linux@2.27.1-6ubuntu3.6
no fix listed

Open the chart page →

77,863
astradnsastradnsVerified publisher0.2.91 of 2See more

astradns astradns 0.2.9

1 of the 2 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
ghcr.io/astradns/astradns-agent:v0.2.9-unbound6ba69487f1b0
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

2,649
open-elevationbeeinventor0.1.01 of 2See more

open-elevation beeinventor 0.1.0

1 of the 2 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
openelevation/open-elevation:latest82fb21612e86
util-linux@2.34-0.1ubuntu9.1
no fix listed

Open the chart page →

13,219
prometheus-airbyte-exporterbotify-helm-chartsVerified publisher0.7.11 of 1See more

prometheus-airbyte-exporter botify-helm-charts 0.7.1

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
ghcr.io/botify-labs/airbyte_exporter:2.3.02105b1f33013
util-linux@2.38.1-5+b1
no fix listed

Open the chart page →

2,919
brightdata-exporterbrightdata-chartsVerified publisher0.2.171 of 1See more

brightdata-exporter brightdata-charts 0.2.17

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
ghcr.io/danielgines/brightdata-exporter:0.2.176920d17cf6ff
util-linux@2.41-5
2.41.3-1

Open the chart page →

1,306
pgvectorcagriekinVerified publisher2.1.01 of 3See more

pgvector cagriekin 2.1.0

1 of the 3 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
pgvector/pgvector:0.8.5-pg18-trixie9d2e61c7352b
util-linux@2.41-5
2.41.3-1

Open the chart page →

4,056
geoserver-cloudcamptocamp20.0.56 of 11See more

geoserver-cloud camptocamp2 0.0.5

6 of the 11 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
util-linux@2.34-0.1ubuntu9.1
no fix listed
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
util-linux@2.34-0.1ubuntu9.1
no fix listed
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
util-linux@2.34-0.1ubuntu9.1
no fix listed
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
util-linux@2.34-0.1ubuntu9.1
no fix listed
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
util-linux@2.34-0.1ubuntu9.1
no fix listed
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
util-linux@2.34-0.1ubuntu9.1
no fix listed

Open the chart page →

84,710
geoserverCloudcamptocamp20.0.66 of 11See more

geoserverCloud camptocamp2 0.0.6

6 of the 11 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
util-linux@2.34-0.1ubuntu9.1
no fix listed
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
util-linux@2.34-0.1ubuntu9.1
no fix listed
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
util-linux@2.34-0.1ubuntu9.1
no fix listed
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
util-linux@2.34-0.1ubuntu9.1
no fix listed
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
util-linux@2.34-0.1ubuntu9.1
no fix listed
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
util-linux@2.34-0.1ubuntu9.1
no fix listed

Open the chart page →

84,710
carbone-eecarboneOfficialVerified publisher1.0.61 of 1See more

carbone-ee carbone 1.0.6

1 of the 1 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
carbone/carbone-ee:full-5.11.0518172cbad49
util-linux@2.41-5
2.41.3-1

Open the chart page →

1,641
cert-vaultcert-vaultOfficialVerified publisher2.12.04 of 7See more

cert-vault cert-vault 2.12.0

4 of the 7 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
bitnamilegacy/postgres-exporter:0.17.1-debian-12-r20cca9d93a617
util-linux@2.38.1-5+deb12u3
no fix listed
bitnamilegacy/postgresql:17.4.0-debian-12-r11fb3806e823c2
util-linux@2.38.1-5+deb12u3
no fix listed
bitnamilegacy/redis:7.4.2-debian-12-r66a5b1d0b5942
util-linux@2.38.1-5+deb12u3
no fix listed
bitnamilegacy/redis-exporter:1.69.0-debian-12-r1a006df1fd47e
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

16,056
home-assistant-matter-servercharts-derwitt-devVerified publisher4.2.11 of 2See more

home-assistant-matter-server charts-derwitt-dev 4.2.1

1 of the 2 container images this version deploys carry CVE-2025-14104.

Container imageDigestPackageFixed in
ghcr.io/matter-js/matterjs-server:1.4.054232d0d3e7d
util-linux@2.41-5
2.41.3-1

Open the chart page →

2,383

Container images carrying it

2,046 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/esphome/esphome:2026.4.078a82d810709
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/ethpandaops/benchmarkoor-ui:latestd090bb2060d9
util-linux@2.41.2-r0
2.41.4-r0
1
ghcr.io/ethpandaops/dispatchoor-web:latest18e30413dac2
util-linux@2.41.2-r0
2.41.4-r0
1
ghcr.io/ferama/rospo:v0.12.0ab40c1745534
util-linux@2.38.1-5+b1
no fix listed
1
ghcr.io/ferama/vipien:v0.5.3923a3f704b21
util-linux@2.34-0.1ubuntu9.3
no fix listed
1
ghcr.io/ferriskey/ferriskey-api:0.7.228b6adba10f8
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/firecrawl/firecrawl:2.11.340529f38bab2c3
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/firecrawl/nuq-postgres:latestf9388bd25ae2
util-linux@2.41-5
2.41.3-1
1
ghcr.io/firecrawl/playwright-service:latest1f6eba640320
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/flanksource/mission-control-ai-assistant:1.0.1229a635cbeeb5
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/flanksource/postgres:17.6-497383cebcf66281fc1
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/flaresolverr/flaresolverr:v3.4.0ab535d1fef5d
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/fluent/fluentd-aggregator-docker-image:2.1.0ad25916eebbb
util-linux@2.41-5
2.41.3-1
1
ghcr.io/formancehq/console:console-on.v1.1.1a4d32c2f68b3
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/getsentry/sentry:26.7.27c5052aa4e3c
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/getsentry/snuba:26.7.210f8d164109b
util-linux@2.41-5
2.41.3-1
1
ghcr.io/getsentry/taskbroker:26.7.264d0da74a578
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/gla-rad/mc-mms-edgerouter:latest3620d5680775
util-linux@2.41-5
2.41.3-1
1
ghcr.io/gla-rad/mc-mms-router:latest032e977d9adf
util-linux@2.41-5
2.41.3-1
1
ghcr.io/glassflow/glassflow-notifier:v1.0.3d1b0ce10b513
util-linux@2.41-5
2.41.3-1
1
ghcr.io/goauthentik/server:2026.2.146a71d75dfd3
util-linux@2.41-5
2.41.3-1
1
ghcr.io/goauthentik/server:2026.5.6ed120caf710c
util-linux@2.41-5
2.41.3-1
1
ghcr.io/grafana/alloy-operator:1.3.02088dcb22aaa
util-linux@2.37.4-21.el9
0:2.37.4-21.el9_7
1
ghcr.io/grafana/alloy-operator:1.7.02ce23f948e02
util-linux@2.37.4-21.el9
0:2.37.4-21.el9_7
1
ghcr.io/graphprotocol/availability-oracle:sha-28312fd472a25038957
util-linux@2.38.1-5+deb12u1
no fix listed
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
util-linux@2.34-0.1ubuntu9.3
no fix listed
1
ghcr.io/hemslo/chat-search:latest39d48995a5bd
util-linux@2.38.1-5+deb12u1
no fix listed
1
ghcr.io/home-assistant/home-assistant:2025.12.59a5a3eb4a213
util-linux@2.41-r9
2.41.6-r0
1
ghcr.io/home-operations/beets:2.3.1cc4975f1a0be
util-linux@2.41-r9
2.41.6-r0
1
ghcr.io/home-operations/home-assistant:2026.3.1067e54e2e107
util-linux@2.41.2-r0
2.41.4-r0
1
ghcr.io/home-operations/lidarr:3.1.29df1e14c8e09
util-linux@2.41.2-r0
2.41.4-r0
1
ghcr.io/home-operations/lidarr:3.1.2.4902dab0e07502a3
util-linux@2.41.2-r0
2.41.4-r0
1
ghcr.io/home-operations/qbittorrent:5.1.4bb82ad6668f8
util-linux@2.41.2-r0
2.41.4-r0
1
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
util-linux@2.41-5
2.41.3-1
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.666db77d7856c
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.9.3ad950d30878e
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/huscker/townsquare-backend:2.15.2e106681e7673
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/hypolia/kanri:0.1.2-rc4fa7d5cc7fb7d
util-linux@2.38.1-5+deb12u2
no fix listed
1
ghcr.io/icegatetech/icegate-ingest:0.1.1bae3c441894a
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/icegatetech/icegate-maintain:0.1.193e85b2b76ee
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/icegatetech/icegate-query:0.1.17542b4e7fff2
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/ignisda/ryot:v10.5.0a752b6aee537
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/iisas/domino-frontend:k8s8e53861be292
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/iisas/domino-rest:latest3009350bfc11
util-linux@2.41-5
2.41.3-1
1
ghcr.io/immich-app/immich-machine-learning:v2.3.1379e31b8c751
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/immich-app/immich-machine-learning:v3.1.05a0839dc5303
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/immich-app/immich-server:v3.2.12ab6a6273755
util-linux@2.41-5
2.41.3-1
1
ghcr.io/immich-app/immich-server:v3.1.0b434cb9287ee
util-linux@2.41-5
2.41.3-1
1
ghcr.io/immich-app/immich-server:v2.3.1f8d06a32b1b2
util-linux@2.41-5
2.41.3-1
1
ghcr.io/invergent-ai/surogate-hub:latest6d4106724d56
util-linux@2.38.1-5+deb12u3
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.