CVE-2025-38257
HighAdvisory
Published 9 Jul 2025In the index since 6 Sept 2026
- Severity
- High
- worst across findings
- CVSS
- 7.8
- base score, highest
- EPSS
- 0.002
- 5th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 78
- of 17,803 indexed, latest versions
- Container images
- 87
- deployed by those charts
- Fix available
- 1 of 1
- affected package
The matching OSV records carry no description.
Carried by container images the latest versions of 78 of 17,803 indexed charts deploy, on 87 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| linuxdeb | 5.4.0-62.70, 5.4.0-65.73, 5.4.0-67.75, 5.4.0-74.83+50 more | 5.15.0-156.166, 6.8.0-100.100 | 87 |
- OSV records
- UBUNTU-CVE-2025-38257
- Also known as
- USN-7774-1, USN-8028-1
Charts affected
78 by stars
Container images carrying it
87 by charts deploying them
A fixed version is listed for 1 of the 1 affected package.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| smartedge/ | 4cd63c22ce36 | linux | no fix listed | 2 |
| streamnative/ | 0e6d7aa3ef32 | linux | no fix listed | 2 |
| ghcr.io/ | 82d0b161161d | linux | 6.8.0-100.100 | 2 |
| ghcr.io/ | 5be52524664c | linux | 5.15.0-156.166 | 2 |
| ghcr.io/ | 5f545698e907 | linux | 5.15.0-156.166 | 2 |
| ghcr.io/ | 103fbcec2314 | linux | no fix listed | 2 |
| aktosecurity/ | 213aded7adc5 | linux | 6.8.0-100.100 | 1 |
| apachepulsar/ | d056c89b7131 | linux | no fix listed | 1 |
| apachepulsar/ | d538416d5afe | linux | no fix listed | 1 |
| assistiot/ | 30812ba93555 | linux | 5.15.0-156.166 | 1 |
| assistiot/ | e5ae539ce2cb | linux | no fix listed | 1 |
| bicarus/ | b1dab0721e1c | linux | no fix listed | 1 |
| browserless/ | c81ae5585b47 | linux | no fix listed | 1 |
| chetangautamm/ | e7f7049e1544 | linux | no fix listed | 1 |
| countly/ | e3c238248f99 | linux | no fix listed | 1 |
| datamate/ | 2dd66b722464 | linux | 5.15.0-156.166 | 1 |
| dgraziotin/ | 38f2de42bed0 | linux | no fix listed | 1 |
| dongjiang1989/ | 4bf9ae391948 | linux | no fix listed | 1 |
| fiware/ | 29456835bb2c | linux | no fix listed | 1 |
| flyway/ | 45b5d7cdc75a | linux | no fix listed | 1 |
| gethue/ | 11b649636e68 | linux | no fix listed | 1 |
| gethue/ | 7d5c1b9f8a79 | linux | 5.15.0-156.166 | 1 |
| grpl/ | c00aafee6629 | linux | 6.8.0-100.100 | 1 |
| haveagitgat/ | 1256348872ce | linux | no fix listed | 1 |
| haveagitgat/ | 3ff0913202dd | linux | no fix listed | 1 |
| helicone/ | 4c69b971a7e4 | linux | no fix listed | 1 |
| intel/ | aa8f5483a2ef | linux | no fix listed | 1 |
| intel/ | 1a89327e499b | linux | no fix listed | 1 |
| ironmansoftware/ | 1943c73cce31 | linux | no fix listed | 1 |
| jakowenko/ | b858bac9e32a | linux | no fix listed | 1 |
| josh5/ | 4d49c4816260 | linux | 5.15.0-156.166 | 1 |
| jupyterhub/ | b6b4a1a34bf0 | linux | no fix listed | 1 |
| jupyterhub/ | e4770285aaf7 | linux | no fix listed | 1 |
| kong/ | a6ac46531193 | linux | 5.15.0-156.166 | 1 |
| kusionstack/ | 126c8f0b0976 | linux | 5.15.0-156.166 | 1 |
| langgenius/ | 8269050f192e | linux | 6.8.0-100.100 | 1 |
| lsstsqre/ | b75bf8aaafa4 | linux | no fix listed | 1 |
| mbround18/ | 70bd4da591cd | linux | 5.15.0-156.166 | 1 |
| milvusdb/ | a3a55e1c1497 | linux | no fix listed | 1 |
| mintproject/ | 83aade2c1855 | linux | no fix listed | 1 |
| mlikiowa/ | 1336a777f9a4 | linux | 5.15.0-156.166 | 1 |
| mshanley80/ | 5b189a70c0fb | linux | no fix listed | 1 |
| nethermind/ | 15517708c3b6 | linux | 5.15.0-156.166 | 1 |
| openelevation/ | 82fb21612e86 | linux | no fix listed | 1 |
| photoprism/ | fc6fd632ca74 | linux | 6.8.0-100.100 | 1 |
| rezachalak/ | 34f694325191 | linux | no fix listed | 1 |
| seafileltd/ | 6693911bcc40 | linux | no fix listed | 1 |
| seafileltd/ | 70628f29c663 | linux | no fix listed | 1 |
| seafileltd/ | 7ac833196f60 | linux | no fix listed | 1 |
| seafileltd/ | d0c66e4621bd | linux | 5.15.0-156.166 | 1 |