StackRadar

CVE-2025-5278

Medium

Advisory

Published 27 May 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.4
base score, highest
EPSS
0.003
22nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,519
of 17,821 indexed, latest versions
Container images
2,564
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: coreutils security update

Carried by container images the latest versions of 2,519 of 17,821 indexed charts deploy, on 2,564 images.

Affected packageAffected versionsFixed inImages
coreutilsdeb8.21-1ubuntu5, 8.21-1ubuntu5.1, 8.21-1ubuntu5.4, 8.25-2ubuntu2+17 more8.32-4.1ubuntu1.4, 9.4-3ubuntu6.3, 9.7-3ubuntu2.12,394
coreutilsrpm8.29-lp151.3.3, 8.29-lp152.4.7, 8.32-32.el9, 8.32-34.el9+7 more0:8.32-41.el9_8, 0:9.5-8.el10_2, 8.32-150400.9.9.1, 9.4-7+1 more154
coreutils-fromdeb9.5-1ubuntu2+0.0.0~ubuntu24, 9.5-1ubuntu2+0.0.0~ubuntu259.7-3ubuntu2.175
OSV records
DEBIAN-CVE-2025-5278RHSA-2026:28911RHSA-2026:33124RLSA-2026:28911UBUNTU-CVE-2025-5278AZL-93060openSUSE-SU-2025:15327-1SUSE-SU-2025:02362-1
Also known as
USN-8697-1

Charts affected

2,519 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

2,564 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
onosproject/onos:2.2.144914a8d4b3f
coreutils@8.28-1ubuntu1
no fix listed
1
onyxdotapp/onyx-backend:latest473fdffe4e67
coreutils@9.7-3
no fix listed
1
oomk8s/ubuntu-init:1.0.03adf3d21ad3b
coreutils@8.25-2ubuntu2
no fix listed
1
opea/asr:1.025dd26d9cd09
coreutils@9.1-1
no fix listed
1
opea/chatqna:1.038c51b791efa
coreutils@9.1-1
no fix listed
1
opea/codegen:1.058f91683892d
coreutils@9.1-1
no fix listed
1
opea/codegen-ui:1.02bee4eb66f3e
coreutils@9.1-1
no fix listed
1
opea/codetrans:1.0e2436483b73d
coreutils@9.1-1
no fix listed
1
opea/codetrans-ui:1.03ef121f34610
coreutils@9.1-1
no fix listed
1
opea/docsum:1.03eaa91849512
coreutils@9.1-1
no fix listed
1
opea/docsum-ui:1.07f854e9bffaf
coreutils@9.1-1
no fix listed
1
opea/guardrails-tgi:1.0262c6048aab8
coreutils@9.1-1
no fix listed
1
opea/guardrails-tgi:latestf68bec6a1271
coreutils@9.1-1
no fix listed
1
opea/llm-docsum-tgi:1.002f9e8fa5d71
coreutils@9.1-1
no fix listed
1
opea/speecht5:1.0249afad3d268
coreutils@9.1-1
no fix listed
1
opea/tts:1.0257ae94709e9
coreutils@9.1-1
no fix listed
1
opea/web-retriever-chroma:1.0fe08165d7770
coreutils@9.1-1
no fix listed
1
openbas/caldera-server:5.1.0a277796d9724
coreutils@9.1-1
no fix listed
1
openbas/platform:2.0.5d986d80b0a75
coreutils@9.4-3ubuntu6.1
9.4-3ubuntu6.3
1
opencsghq/agenticflow:ee-v0.6.5-241cba9c366f1
coreutils@9.1-1
no fix listed
1
opencsghq/csgbot:v0.6.9-ee7d0271e26521
coreutils@9.7-3
no fix listed
1
opencsghq/csghub-portal:v2.5.0-ee1cb36b49151e
coreutils@9.1-1
no fix listed
1
opencsghq/csghub-server:v2.5.0-ee587046575c2c
coreutils@9.1-1
no fix listed
1
opencsghq/csghub-xnet:v2.5.0-ee86ea22f495c7
coreutils@9.1-1
no fix listed
1
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
coreutils@9.1-1
no fix listed
1
opencsghq/gitlab-shell:v19.2.580a65ac370da
coreutils@9.1-1
no fix listed
1
opendatacube/explorer:latest120457ffcd69
coreutils@9.4-3ubuntu6.1
9.4-3ubuntu6.3
1
opendatacube/pipelines:wofs-1.225d810e8504b8
coreutils@8.28-1ubuntu1
no fix listed
1
opendatacube/restcube:latest91870111837c
coreutils@8.28-1ubuntu1
no fix listed
1
opendatacube/wms:latest1b90cdf68831
coreutils@8.28-1ubuntu1
no fix listed
1
opendatacube/wps:latest80df355a660b
coreutils@8.32-4.1ubuntu1.2
8.32-4.1ubuntu1.4
1
openebs/rawfile-localpv:v0.15.396fd7987ea79
coreutils@9.7-3
no fix listed
1
openelevation/open-elevation:latest82fb21612e86
coreutils@8.30-3ubuntu2
no fix listed
1
openhab/openhab:5.2.1bfd4a60e90da
coreutils@9.7-3
no fix listed
1
openkm/openkm-ce:6.3.113bc465a7461b
coreutils@8.30-3ubuntu2
no fix listed
1
opennms/sentinel:36.0.288869082a14f
coreutils@9.5-7.el10
0:9.5-8.el10_2
1
opennode/waldur-mastermind:8.1.24c82b15d9042
coreutils@9.7-3
no fix listed
1
openproject/hocuspocus:release-338001b288dc1359dfb5
coreutils@9.1-1
no fix listed
1
openproject/openproject:17.8.0-slim48952034215d
coreutils@9.7-3
no fix listed
1
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
coreutils@8.30-3ubuntu2
no fix listed
1
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
coreutils@8.30-3ubuntu2
no fix listed
1
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
coreutils@8.30-3ubuntu2
no fix listed
1
openthread/border-router:v2026.09.07616b9d514de
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3
1
openvino/model_server:2025.2.11e7cd1d70cc1
coreutils@9.4-3ubuntu6
9.4-3ubuntu6.3
1
openvpn/openvpn-as:latest2253c10ec652
coreutils@9.4-3ubuntu6.2
9.4-3ubuntu6.3
1
openwhisk/ow-utils:1.0.0c80dba0de3aa
coreutils@8.28-1ubuntu1
no fix listed
1
opsmx11/issuegen:v2.1.05c50ca123d88
coreutils@8.21-1ubuntu5.4
no fix listed
1
otwld/velero-ui:0.10.31c228d9ef71b
coreutils@9.1-1
no fix listed
1
outlinewiki/outline:0.82.0494dfb9249a6
coreutils@9.1-1
no fix listed
1
outlinewiki/outline:1.10.1832051f039b4
coreutils@9.7-3
no fix listed
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.