StackRadar

CVE-2025-4802

High

Advisory

Published 16 May 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.006
45th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,764
of 17,797 indexed, latest versions
Container images
2,025
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: glibc security update

Carried by container images the latest versions of 1,764 of 17,797 indexed charts deploy, on 2,025 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.27-3ubuntu1, 2.27-3ubuntu1.2, 2.27-3ubuntu1.4, 2.27-3ubuntu1.5+41 more2.27-3ubuntu1.6+esm5, 2.31-0ubuntu9.18, 2.31-13+deb11u13, 2.35-0ubuntu3.10+1 more1,723
glibcrpm2.17-260.el7_6.4, 2.17-260.el7_6.6, 2.17-292.el7, 2.17-307.el7.1+45 more0:2.17-326.el7_9.5, 0:2.28-251.el8_10.22, 0:2.34-168.el9_6.19, 2.31-150300.95.1302
OSV records
DEBIAN-CVE-2025-4802RHSA-2025:10219RHSA-2025:8655RHSA-2025:8686RLSA-2025:8655RLSA-2025:8686UBUNTU-CVE-2025-4802DLA-4181-1SUSE-SU-2025:01784-1
Also known as
RHSA-2025:10220, RHSA-2025:9336, USN-7541-1

Charts affected

1,764 by stars
ChartLatestAffected imagesRadar Score
marge-botwiremindVerified publisher1.4.41 of 1See more

marge-bot wiremind 1.4.4

1 of the 1 container images this version deploys carry CVE-2025-4802.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.14.0dcffb926e563
glibc@2.36-9+deb12u3
2.36-9+deb12u11

Open the chart page →

5,566
prometheus-openstack-exporterwiremindVerified publisher0.5.01 of 1See more

prometheus-openstack-exporter wiremind 0.5.0

1 of the 1 container images this version deploys carry CVE-2025-4802.

Container imageDigestPackageFixed in
ghcr.io/openstack-exporter/openstack-exporter:1.7.0e5146a7dd515
glibc@2.31-13+deb11u8
2.31-13+deb11u13

Open the chart page →

1,480
vaultwardenwitcom-gmbh0.2.01 of 2See more

vaultwarden witcom-gmbh 0.2.0

1 of the 2 container images this version deploys carry CVE-2025-4802.

Container imageDigestPackageFixed in
vaultwarden/server:1.25.239f34c5159a2
glibc@2.31-13+deb11u3
2.31-13+deb11u13

Open the chart page →

1,586
wp-gats-helmwordpress-gatsby0.0.11 of 3See more

wp-gats-helm wordpress-gatsby 0.0.1

1 of the 3 container images this version deploys carry CVE-2025-4802.

Container imageDigestPackageFixed in
library/wordpress:6.0.0-php8.0-apache277c6c25980f
glibc@2.31-13+deb11u3
2.31-13+deb11u13

Open the chart page →

2,022
playwright-synthetic-monitoringwork-adventure1.0.11 of 1See more

playwright-synthetic-monitoring work-adventure 1.0.1

1 of the 1 container images this version deploys carry CVE-2025-4802.

Container imageDigestPackageFixed in
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
glibc@2.35-0ubuntu3.8
2.35-0ubuntu3.10

Open the chart page →

14,218
workshop-pipelinesworkshop-pipelines0.1.62 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

2 of the 2 container images this version deploys carry CVE-2025-4802.

Container imageDigestPackageFixed in
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
glibc@2.36-9+deb12u9
2.36-9+deb12u11
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
glibc@2.28-164.el8_5.3
0:2.28-251.el8_10.22

Open the chart page →

11,622
tabbyxdVerified publisher1.0.61 of 2See more

tabby xd 1.0.6

1 of the 2 container images this version deploys carry CVE-2025-4802.

Container imageDigestPackageFixed in
library/nginx:1.25a484819eb602
glibc@2.36-9+deb12u7
2.36-9+deb12u11

Open the chart page →

7,714
xkopsxkops0.1.03 of 5See more

xkops xkops 0.1.0

3 of the 5 container images this version deploys carry CVE-2025-4802.

Container imageDigestPackageFixed in
hamzaarshad10/querybackend:1.6.22c1c3b86a8e7
glibc@2.36-9+deb12u8
2.36-9+deb12u11
hamzaarshad10/querypodpy:1.7154f38e8668e
glibc@2.36-9+deb12u8
2.36-9+deb12u11
murtazashah46/helmfile:latest4d11726cf803
glibc@2.36-9+deb12u8
2.36-9+deb12u11

Open the chart page →

13,813
api-snapyoukadevVerified publisher0.1.11 of 1See more

api-snap youkadev 0.1.1

1 of the 1 container images this version deploys carry CVE-2025-4802.

Container imageDigestPackageFixed in
youkadev/api-snap:0.1.14db0f9428e67
glibc@2.36-9+deb12u4
2.36-9+deb12u11

Open the chart page →

2,692
zahori-schedulerzahoriVerified publisher1.0.11 of 1See more

zahori-scheduler zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2025-4802.

Container imageDigestPackageFixed in
zahoriaut/zahori-scheduler:1.0.047d0979b1184
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm5

Open the chart page →

2,474
keycloakxzaks2.2.01 of 1See more

keycloakx zaks 2.2.0

1 of the 1 container images this version deploys carry CVE-2025-4802.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
glibc@2.28-211.el8
0:2.28-251.el8_10.22

Open the chart page →

6,017
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2025-4802.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
glibc@2.31-13+deb11u5
2.31-13+deb11u13

Open the chart page →

1,838
posthogzeet0.23.21 of 9See more

posthog zeet 0.23.2

1 of the 9 container images this version deploys carry CVE-2025-4802.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.19.07a85f522c5bc
glibc@2.28-211.el8
0:2.28-251.el8_10.22

Open the chart page →

3,697
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2025-4802.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm5
yandex/clickhouse-server:21.3.204eccfffb01d7
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.18

Open the chart page →

9,272

Container images carrying it

2,025 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
public.ecr.aws/zinclabs/openobserve:v0.8.127f8de509169
glibc@2.36-9+deb12u4
2.36-9+deb12u11
1
quay.io/aerokube/jumphost:1.0.170fd7c00418d
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.10
1
quay.io/aerokube/keygen:1.0.1578934444f04
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.10
1
quay.io/ai-lab/llamacpp_python:latest70d138997acd
glibc@2.34-100.el9_4.3
0:2.34-168.el9_6.19
1
quay.io/ansible/awx-operator:2.19.17302e0c8e5a7
glibc@2.28-236.el8.7
0:2.28-251.el8_10.22
1
quay.io/apicurio/apicurio-registry-mem:2.5.8.Final3b036692d546
glibc@2.28-236.el8.7
0:2.28-251.el8_10.22
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.10
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
glibc@2.35-0ubuntu3.4
2.35-0ubuntu3.10
1
quay.io/backube/scribe:0.2.0cdefc81c6b2e
glibc@2.28-151.el8
0:2.28-251.el8_10.22
1
quay.io/bentoml/yatai:0.4.614b482c1f1b8
glibc@2.31-13+deb11u3
2.31-13+deb11u13
1
quay.io/cilium/cilium:v1.15.1351d6685dc6f
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.10
1
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
glibc@2.28-225.el8
0:2.28-251.el8_10.22
1
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
glibc@2.36-9+deb12u9
2.36-9+deb12u11
1
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
glibc@2.36-9+deb12u10
2.36-9+deb12u11
1
quay.io/ctrontesting/iofog-controller:latest10df27bc5560
glibc@2.28-151.el8
0:2.28-251.el8_10.22
1
quay.io/eclipse/che-operator:7.122.0d752a1c2a7b7
glibc@2.28-251.el8_10.5
0:2.28-251.el8_10.22
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
glibc@2.28-151.el8
0:2.28-251.el8_10.22
1
quay.io/everythingascode/apishift-backend:v0.3.014ff275b2e61
glibc@2.34-125.el9_5.3
0:2.34-168.el9_6.19
1
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm5
1
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.10
1
quay.io/fiware/apollo:0.0.1055330b1b60c1
glibc@2.28-189.1.el8
0:2.28-251.el8_10.22
1
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
glibc@2.28-164.el8
0:2.28-251.el8_10.22
1
quay.io/fiware/contract-management:3.3.122bcfcf874451
glibc@2.28-251.el8_10.5
0:2.28-251.el8_10.22
1
quay.io/fiware/credentials-config-service:3.4.3f2fbced76da8
glibc@2.28-251.el8_10.5
0:2.28-251.el8_10.22
1
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
glibc@2.28-189.1.el8
0:2.28-251.el8_10.22
1
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
glibc@2.28-151.el8
0:2.28-251.el8_10.22
1
quay.io/fiware/trusted-issuers-registry:0.11.1a8a9ec461034
glibc@2.28-189.1.el8
0:2.28-251.el8_10.22
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.10
1
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
glibc@2.28-211.el8
0:2.28-251.el8_10.22
1
quay.io/flomesh/fsm-bootstrap-ubi8:0.1.8-ubi.6e6d7afb1a4bf
glibc@2.28-211.el8
0:2.28-251.el8_10.22
1
quay.io/flomesh/fsm-ingress-pipy-ubi8:0.1.8-ubi.6fce990dece01
glibc@2.28-211.el8
0:2.28-251.el8_10.22
1
quay.io/flomesh/fsm-manager-ubi8:0.1.8-ubi.63590af73f65a
glibc@2.28-211.el8
0:2.28-251.el8_10.22
1
quay.io/flomesh/osm-edge-bootstrap-ubi8:1.2.1e048bc7a17c2
glibc@2.28-211.el8
0:2.28-251.el8_10.22
1
quay.io/flomesh/osm-edge-controller-ubi8:1.2.1674f45865af1
glibc@2.28-211.el8
0:2.28-251.el8_10.22
1
quay.io/flomesh/osm-edge-crds-ubi8:1.2.1c3bc5e7a70e6
glibc@2.28-211.el8
0:2.28-251.el8_10.22
1
quay.io/flomesh/osm-edge-injector-ubi8:1.2.18e9c39c34e89
glibc@2.28-211.el8
0:2.28-251.el8_10.22
1
quay.io/flomesh/osm-edge-preinstall-ubi8:1.2.1f94282a9cfec
glibc@2.28-211.el8
0:2.28-251.el8_10.22
1
quay.io/flomesh/pipy-repo-ubi8:0.70.0-469912fdf6c183
glibc@2.28-211.el8
0:2.28-251.el8_10.22
1
quay.io/flomesh/pipy-ubi8:0.50.0-8824352dca6672
glibc@2.28-211.el8
0:2.28-251.el8_10.22
1
quay.io/flomesh/pipy-ubi8:0.70.0-4635d87a381432
glibc@2.28-211.el8
0:2.28-251.el8_10.22
1
quay.io/flomesh/toolbox-ubi8:1.2.01f5e3161cb84
glibc@2.28-251.el8_10.2
0:2.28-251.el8_10.22
1
quay.io/fluentd_elasticsearch/fluentd:v4.2.399079df58561
glibc@2.31-13+deb11u5
2.31-13+deb11u13
1
quay.io/fossa/postgres:17.2-15af45ac79f38
glibc@2.31-13+deb11u11
2.31-13+deb11u13
1
quay.io/galexrt/dellhw_exporter:v2.0.0-rc.18a1361fa38c1
glibc@2.34-100.el9_4.4
0:2.34-168.el9_6.19
1
quay.io/hpestorage/cosi-driver:v2.0.0a4d2667f2b6e
glibc@2.34-125.el9_5.3
0:2.34-168.el9_6.19
1
quay.io/hpestorage/filex-csi-init:2.6.42d867eefb233
glibc@2.34-125.el9_5.1
0:2.34-168.el9_6.19
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
glibc@2.28-101.el8
0:2.28-251.el8_10.22
1
quay.io/icdh/core-dump-handler:v9.0.0cc79b9e2a1c8
glibc@2.28-251.el8_10.5
0:2.28-251.el8_10.22
1
quay.io/jupyterhub/k8s-hub:3.2.12528c6e57587
glibc@2.31-13+deb11u7
2.31-13+deb11u13
1
quay.io/keycloak/keycloak:26.009a381c715ab
glibc@2.34-125.el9_5.1
0:2.34-168.el9_6.19
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.