StackRadar

CVE-2025-39929

Medium

Advisory

Published 4 Oct 2025In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.003
24th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
81
of 17,813 indexed, latest versions
Container images
91
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 81 of 17,813 indexed charts deploy, on 91 images.

Affected packageAffected versionsFixed inImages
linuxdeb5.4.0-62.70, 5.4.0-65.73, 5.4.0-67.75, 5.4.0-74.83+54 more6.8.0-106.10691
OSV records
UBUNTU-CVE-2025-39929
Also known as
USN-8095-1

Charts affected

81 by stars
ChartLatestAffected imagesRadar Score
gmaintelVerified publisher0.1.01 of 1See more

gma intel 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
smartedge/generic-multi-access-network-virtualization:1.04cd63c22ce36
linux@5.4.0-131.147
no fix listed

Open the chart page →

76,149
itm-servicesintelVerified publisher2.0.01 of 8See more

itm-services intel 2.0.0

1 of the 8 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
linux@5.4.0-120.136
no fix listed

Open the chart page →

89,173
map5gintelVerified publisher1.0.01 of 1See more

map5g intel 1.0.0

1 of the 1 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
smartedge/generic-multi-access-network-virtualization:1.04cd63c22ce36
linux@5.4.0-131.147
no fix listed

Open the chart page →

76,149
multimodal-data-visualizationintelVerified publisher3.0.01 of 2See more

multimodal-data-visualization intel 3.0.0

1 of the 2 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
intel/multimodal-data-visualization-streaming:3.01a89327e499b
linux@5.4.0-122.138
no fix listed

Open the chart page →

81,916
valheim-serverk8s-chartsVerified publisher1.3.01 of 1See more

valheim-server k8s-charts 1.3.0

1 of the 1 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
mbround18/valheim:3.1.070bd4da591cd
linux@5.15.0-133.144
no fix listed

Open the chart page →

61,974
k8s-dev-podk8s-dev-pod0.3.11 of 1See more

k8s-dev-pod k8s-dev-pod 0.3.1

1 of the 1 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
linux@6.8.0-60.63
6.8.0-106.106

Open the chart page →

67,567
huekatool1.0.81 of 1See more

hue katool 1.0.8

1 of the 1 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
gethue/hue:4.11.011b649636e68
linux@5.4.0-136.153
no fix listed

Open the chart page →

83,618
kubernetes-netskope-publisherkubernetes-netskope-publisherVerified publisher1.5.01 of 2See more

kubernetes-netskope-publisher kubernetes-netskope-publisher 1.5.0

1 of the 2 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
netskopeprivateaccess/publisher_u22:latest93e2fd164a93
linux@5.15.0-186.196
no fix listed

Open the chart page →

39,912
pulsarkubesphere-stable2.7.131 of 3See more

pulsar kubesphere-stable 2.7.13

1 of the 3 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.1611bceacec8fb
linux@5.4.0-77.86
no fix listed

Open the chart page →

91,524
kusionkusionstackVerified publisher0.14.11 of 3See more

kusion kusionstack 0.14.1

1 of the 3 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
kusionstack/kusion:v0.14.0126c8f0b0976
linux@5.15.0-130.140
no fix listed

Open the chart page →

63,775
nublado2lsst-sqre0.8.51 of 2See more

nublado2 lsst-sqre 0.8.5

1 of the 2 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
lsstsqre/nublado2:2.0.1b75bf8aaafa4
linux@5.4.0-100.113
no fix listed

Open the chart page →

91,568
MINTmint8.0.21 of 15See more

MINT mint 8.0.2

1 of the 15 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
mintproject/graphql-engine:305c0dbeba1878eafe348f21fc300fbfc017d9dc83aade2c1855
linux@5.4.0-117.132
no fix listed

Open the chart page →

114,972
chirpstackmosquitto-helm-chart0.5.01 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

1 of the 8 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.9.0d056c89b7131
linux@5.4.0-90.101
no fix listed

Open the chart page →

101,376
danboorumy0nVerified publisher0.0.21 of 1See more

danbooru my0n 0.0.2

1 of the 1 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
linux@5.15.0-46.49
no fix listed

Open the chart page →

102,088
danbooru-stackmy0nVerified publisher0.0.31 of 4See more

danbooru-stack my0n 0.0.3

1 of the 4 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
linux@5.15.0-46.49
no fix listed

Open the chart page →

102,088
smilencsaVerified publisher1.1.01 of 23See more

smile ncsa 1.1.0

1 of the 23 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
socialmediamacroscope/autophrase:0.1.570fb11d4f531
linux@5.4.0-163.180
no fix listed

Open the chart page →

279,307
seafilephybros-helm-charts4.0.11 of 1See more

seafile phybros-helm-charts 4.0.1

1 of the 1 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:9.0.97ac833196f60
linux@5.4.0-125.141
no fix listed

Open the chart page →

92,617
substreams-sink-kvpinaxVerified publisher0.0.41 of 1See more

substreams-sink-kv pinax 0.0.4

1 of the 1 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/substreams-sink-kv:v2.3.026953ec68d5d
linux@5.4.0-200.220
no fix listed

Open the chart page →

58,425
substreams-sink-nooppinaxVerified publisher0.0.31 of 1See more

substreams-sink-noop pinax 0.0.3

1 of the 1 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
ghcr.io/streamingfast/substreams-sink-noop:v1.4.0d7c43c3135c6
linux@5.4.0-200.220
no fix listed

Open the chart page →

58,366
podnat-state-storepodnat-controller0.3.21 of 1See more

podnat-state-store podnat-controller 0.3.2

1 of the 1 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
dgraziotin/nginx-webdav-nononsense:1.23.138f2de42bed0
linux@5.4.0-122.138
no fix listed

Open the chart page →

79,983
snipeitschmitzis6.1.01 of 2See more

snipeit schmitzis 6.1.0

1 of the 2 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
snipe/snipe-it:v8.3.1141ebf2386fe
linux@6.8.0-79.79
6.8.0-106.106

Open the chart page →

62,871
testing-multitoolsomeblackmagic0.1.21 of 1See more

testing-multitool someblackmagic 0.1.2

1 of the 1 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
linux@5.4.0-117.132
no fix listed

Open the chart page →

101,945
ocean-network-clientspot1.1.61 of 1See more

ocean-network-client spot 1.1.6

1 of the 1 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
public.ecr.aws/spotinst/spot-network-client:1.0.1486380a01587d
linux@6.8.0-100.100
6.8.0-106.106

Open the chart page →

51,218
sn-platform-slimstreamnative1.11.441 of 6See more

sn-platform-slim streamnative 1.11.44

1 of the 6 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
streamnative/apache-pulsar-grafana-dashboard-k8s:0.1.20e6d7aa3ef32
linux@5.4.0-182.202
no fix listed

Open the chart page →

66,879
maxscalesvtech-public-helm-charts1.0.01 of 2See more

maxscale svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
svtechnmaa/svtech_maxscale:v1.0.3410a25b51f9f
linux@5.15.0-92.102
no fix listed

Open the chart page →

75,790
rundecksvtech-public-helm-charts1.0.01 of 2See more

rundeck svtech-public-helm-charts 1.0.0

1 of the 2 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
linux@5.4.0-176.196
no fix listed

Open the chart page →

76,156
tensor_apptensor-app0.2.21 of 3See more

tensor_app tensor-app 0.2.2

1 of the 3 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
xeladock/mysql_dns:latest4baf531453f1
linux@5.15.0-25.25
no fix listed

Open the chart page →

109,723
tdarrvhdirkVerified publisher5.0.52 of 2See more

tdarr vhdirk 5.0.5

2 of the 2 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
haveagitgat/tdarr_node:2.17.013ff0913202dd
linux@5.4.0-163.180
no fix listed
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
linux@5.4.0-110.124
no fix listed

Open the chart page →

159,238
unmanicvhdirkVerified publisher0.1.41 of 1See more

unmanic vhdirk 0.1.4

1 of the 1 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
josh5/unmanic:0.2.64d49c4816260
linux@5.15.0-100.110
no fix listed

Open the chart page →

77,180
twenty-crmvictorlane0.0.11 of 3See more

twenty-crm victorlane 0.0.1

1 of the 3 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
twentycrm/twenty-postgres-spilo:latest2f78405a78be
linux@5.15.0-134.145
no fix listed

Open the chart page →

69,387
kongwallarmVerified publisher4.6.31 of 7See more

kong wallarm 4.6.3

1 of the 7 container images this version deploys carry CVE-2025-39929.

Container imageDigestPackageFixed in
wallarm/kong:3.1.0-ubuntu-4.6.0ea9608c82e40
linux@5.4.0-144.161
no fix listed

Open the chart page →

74,867

Container images carrying it

91 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
seafileltd/seafile-mc:9.0.97ac833196f60
linux@5.4.0-125.141
no fix listed
1
seafileltd/seafile-mc:11.0.12d0c66e4621bd
linux@5.15.0-118.128
no fix listed
1
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
linux@5.4.0-80.90
no fix listed
1
shaowenchen/ops-controller-manager:latest35575d4f2bfe
linux@5.15.0-191.201
no fix listed
1
shaowenchen/ops-server:latest6bac5cebd125
linux@5.15.0-153.163
no fix listed
1
snipe/snipe-it:v8.3.1141ebf2386fe
linux@6.8.0-79.79
6.8.0-106.106
1
snipe/snipe-it:v6.0.1455fb7636a98c
linux@5.4.0-131.147
no fix listed
1
socialmediamacroscope/autophrase:0.1.570fb11d4f531
linux@5.4.0-163.180
no fix listed
1
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
linux@5.4.0-117.132
no fix listed
1
stackstorm/st2actionrunner:3.888235ba70cad
linux@5.4.0-169.187
no fix listed
1
stackstorm/st2api:3.86f56d239d280
linux@5.4.0-169.187
no fix listed
1
stackstorm/st2auth:3.833ecfda16608
linux@5.4.0-169.187
no fix listed
1
stackstorm/st2garbagecollector:3.84e3f8c7ca52d
linux@5.4.0-169.187
no fix listed
1
stackstorm/st2notifier:3.8f190a6212195
linux@5.4.0-169.187
no fix listed
1
stackstorm/st2rulesengine:3.8259503496ff9
linux@5.4.0-169.187
no fix listed
1
stackstorm/st2scheduler:3.8b1de2055c362
linux@5.4.0-169.187
no fix listed
1
stackstorm/st2sensorcontainer:3.8b1a338f64773
linux@5.4.0-169.187
no fix listed
1
stackstorm/st2stream:3.81c8904a3bf67
linux@5.4.0-169.187
no fix listed
1
stackstorm/st2timersengine:3.81bf35bfaf00c
linux@5.4.0-169.187
no fix listed
1
stackstorm/st2workflowengine:3.819fdfffdbba8
linux@5.4.0-169.187
no fix listed
1
statcan/ckan:2.93921305425b8
linux@5.4.0-74.83
no fix listed
1
streamnative/apache-pulsar-grafana-dashboard-k8s:0.0.1611bceacec8fb
linux@5.4.0-77.86
no fix listed
1
svtechnmaa/svtech_maxscale:v1.0.3410a25b51f9f
linux@5.15.0-92.102
no fix listed
1
svtechnmaa/svtech_rundeck:v1.2.26e368ace0977
linux@5.4.0-176.196
no fix listed
1
twentycrm/twenty-postgres-spilo:latest2f78405a78be
linux@5.15.0-134.145
no fix listed
1
wallarm/kong:3.1.0-ubuntu-4.6.0ea9608c82e40
linux@5.4.0-144.161
no fix listed
1
xeladock/mysql_dns:latest4baf531453f1
linux@5.15.0-25.25
no fix listed
1
ghcr.io/cosmicrocks/datum:v0.4.0beta76771c3cc8c3
linux@6.8.0-90.91
6.8.0-106.106
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
linux@5.4.0-110.124
no fix listed
1
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
linux@5.4.0-214.234
no fix listed
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
linux@5.4.0-80.90
no fix listed
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
linux@5.4.0-80.90
no fix listed
1
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
linux@6.8.0-57.59
6.8.0-106.106
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
linux@5.4.0-121.137
no fix listed
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
linux@5.4.0-131.147
no fix listed
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
linux@5.4.0-131.147
no fix listed
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
linux@5.4.0-131.147
no fix listed
1
ghcr.io/streamingfast/substreams-sink-kv:v2.3.026953ec68d5d
linux@5.4.0-200.220
no fix listed
1
ghcr.io/streamingfast/substreams-sink-noop:v1.4.0d7c43c3135c6
linux@5.4.0-200.220
no fix listed
1
public.ecr.aws/spotinst/spot-network-client:1.0.1486380a01587d
linux@6.8.0-100.100
6.8.0-106.106
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
linux@5.4.0-67.75
no fix listed
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.