StackRadar

CVE-2025-6141

Medium

Advisory

Published 16 Jun 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.8
base score, highest
EPSS
0.002
10th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,405
of 17,832 indexed, latest versions
Container images
2,403
deployed by those charts
Fix available
2 of 2
affected packages

CVE-2025-6141 affecting package ncurses for versions less than 6.4-3

Carried by container images the latest versions of 2,405 of 17,832 indexed charts deploy, on 2,403 images.

Affected packageAffected versionsFixed inImages
ncursesdeb5.9+20140118-1ubuntu1, 6.0+20160213-1ubuntu1, 6.1-1ubuntu1, 6.1-1ubuntu1.18.04+12 more5.9+20140118-1ubuntu1+esm7, 6.0+20160213-1ubuntu1+esm7, 6.1-1ubuntu1.18.04.1+esm4, 6.2-0ubuntu2.1+esm2+2 more2,402
ncursesrpm6.4-2.azl36.4-31
OSV records
DEBIAN-CVE-2025-6141UBUNTU-CVE-2025-6141AZL-64139
Also known as
USN-8709-1

Charts affected

2,405 by stars
ChartLatestAffected imagesRadar Score
changedetection-iozekker6Verified publisher1.102.01 of 1See more

changedetection-io zekker6 1.102.0

1 of the 1 container images this version deploys carry CVE-2025-6141.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.60.7096dae27b5d6
ncurses@6.4-4
no fix listed

Open the chart page →

2,751
NEW_APPzekker6Verified publisher0.0.01 of 1See more

NEW_APP zekker6 0.0.0

1 of the 1 container images this version deploys carry CVE-2025-6141.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
ncurses@6.5+20250216-2
no fix listed

Open the chart page →

1,623
sockpuppetbrowserzekker6Verified publisher0.1.01 of 1See more

sockpuppetbrowser zekker6 0.1.0

1 of the 1 container images this version deploys carry CVE-2025-6141.

Container imageDigestPackageFixed in
dgtlmoon/sockpuppetbrowser:latest1d8f72d2ce20
ncurses@6.4-4
no fix listed

Open the chart page →

4,628
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2025-6141.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1+esm4
yandex/clickhouse-server:21.3.204eccfffb01d7
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1+esm2

Open the chart page →

9,357
zoo-project-druzoo-projectOfficialVerified publisher0.10.41 of 6See more

zoo-project-dru zoo-project 0.10.4

1 of the 6 container images this version deploys carry CVE-2025-6141.

Container imageDigestPackageFixed in
zooproject/zoo-project:dru-19f3c4eed7c9ec9d1f0375bbe59f9d204a42bd3a9a507cb7e2dd
ncurses@6.3-2ubuntu0.2
6.3-2ubuntu0.3

Open the chart page →

8,128

Container images carrying it

2,403 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
bitnamilegacy/kubectl:1.29.3f5fc0d561d9e
ncurses@6.4-4
no fix listed
1
bitnamilegacy/kube-state-metrics:204a3044b384b
ncurses@6.4-4
no fix listed
1
bitnamilegacy/mariadb:11.3.2-debian-12-r9320c70dfd914
ncurses@6.4-4
no fix listed
1
bitnamilegacy/mariadb:11.2.6-debian-12-r0373c3c260571
ncurses@6.4-4
no fix listed
1
bitnamilegacy/mariadb:11.4.3-debian-12-r08b3778160e34
ncurses@6.4-4
no fix listed
1
bitnamilegacy/mariadb:11.4.5-debian-12-r128bc50a0961a7
ncurses@6.4-4
no fix listed
1
bitnamilegacy/mariadb:11.4.7-debian-12-r290dc6acb7b2e
ncurses@6.4-4
no fix listed
1
bitnamilegacy/mariadb:latestbbd4e17f1ef8
ncurses@6.4-4
no fix listed
1
bitnamilegacy/mariadb-galera:11.3.2-debian-12-r9aee9c668098f
ncurses@6.4-4
no fix listed
1
bitnamilegacy/mariadb-galera:11.4.3-debian-12-r0cb8beb6dbb58
ncurses@6.4-4
no fix listed
1
bitnamilegacy/matomo:5.3.2-debian-12-r13f02c000c54b1
ncurses@6.4-4
no fix listed
1
bitnamilegacy/memcached:1.6.24-debian-12-r01d80b6a96f00
ncurses@6.4-4
no fix listed
1
bitnamilegacy/memcached:1.6.29-debian-12-r4ff0e7239c17c
ncurses@6.4-4
no fix listed
1
bitnamilegacy/minio:2024.8.3-debian-12-r15501c419f42e
ncurses@6.4-4
no fix listed
1
bitnamilegacy/minio:2025.7.23-debian-12-r56dabb4a2088c
ncurses@6.4-4
no fix listed
1
bitnamilegacy/minio:2025.7.23-debian-12-r08935e75fa5d1
ncurses@6.4-4
no fix listed
1
bitnamilegacy/minio:2024.7.4-debian-12-r0952f86d1116c
ncurses@6.4-4
no fix listed
1
bitnamilegacy/minio:2025.3.12-debian-12-r0ba9f3b4b0b00
ncurses@6.4-4
no fix listed
1
bitnamilegacy/minio:2024.12.18-debian-12-r1c0ede65eb88e
ncurses@6.4-4
no fix listed
1
bitnamilegacy/minio:2024.12.18-debian-12-r0cce234b4381a
ncurses@6.4-4
no fix listed
1
bitnamilegacy/minio:2025.4.22-debian-12-r1d7cd0e172c4c
ncurses@6.4-4
no fix listed
1
bitnamilegacy/mongodb:7.0.14-debian-12-r321e8f8baa432
ncurses@6.4-4
no fix listed
1
bitnamilegacy/mongodb:8.0.13-debian-12-r02579e968033e
ncurses@6.4-4
no fix listed
1
bitnamilegacy/mongodb:7.0.8-debian-12-r23163c3842bfd
ncurses@6.4-4
no fix listed
1
bitnamilegacy/mongodb:latestb0652af9c8d0
ncurses@6.4-4
no fix listed
1
bitnamilegacy/mysql:8.4.5-debian-12-r07089d796fc9b
ncurses@6.4-4
no fix listed
1
bitnamilegacy/mysqld-exporter:0.15.1-debian-12-r2611a5f0b79e79
ncurses@6.4-4
no fix listed
1
bitnamilegacy/nginx:1.27.1934d1acd5ca8
ncurses@6.4-4
no fix listed
1
bitnamilegacy/nginx:1.28.0-debian-12-r0eaf9066e86f6
ncurses@6.4-4
no fix listed
1
bitnamilegacy/openldap:2.6.8-debian-12-r16e412c178ef9
ncurses@6.4-4
no fix listed
1
bitnamilegacy/opensearch:2.18.0-debian-12-r0d8440eb6b290
ncurses@6.4-4
no fix listed
1
bitnamilegacy/os-shell:12-debian-12-r3217444b4b2c96
ncurses@6.4-4
no fix listed
1
bitnamilegacy/os-shell:12-debian-12-r439ba5d16f9c64
ncurses@6.4-4
no fix listed
1
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
ncurses@6.4-4
no fix listed
1
bitnamilegacy/os-shell:12-debian-12-r50e328cff6e450
ncurses@6.4-4
no fix listed
1
bitnamilegacy/pgbouncer:1.23.192356da09704
ncurses@6.4-4
no fix listed
1
bitnamilegacy/postgres-exporter:0.17.1-debian-12-r20cca9d93a617
ncurses@6.4-4
no fix listed
1
bitnamilegacy/postgres-exporter:0.15.0-debian-12-r44e7e1b3a90682
ncurses@6.4-4
no fix listed
1
bitnamilegacy/postgresql:16.4.0-debian-12-r1102e2f47a405e
ncurses@6.4-4
no fix listed
1
bitnamilegacy/postgresql:16.3.0-debian-12-r43332e81afb4f
ncurses@6.4-4
no fix listed
1
bitnamilegacy/postgresql:16.4.03ba6e6f11388
ncurses@6.4-4
no fix listed
1
bitnamilegacy/postgresql:17.5.0-debian-12-r16687034f33da6
ncurses@6.4-4
no fix listed
1
bitnamilegacy/postgresql:17.5.0-debian-12-r1285198aae0aed
ncurses@6.4-4
no fix listed
1
bitnamilegacy/postgresql:16.2.0-debian-12-r890fda44bfa42
ncurses@6.4-4
no fix listed
1
bitnamilegacy/postgresql:16.3.0-debian-12-r14cc55da2fa366
ncurses@6.4-4
no fix listed
1
bitnamilegacy/postgresql:17.2.0-debian-12-r5cf63048c9209
ncurses@6.4-4
no fix listed
1
bitnamilegacy/postgresql:17.0.0-debian-12-r9d885ac277163
ncurses@6.4-4
no fix listed
1
bitnamilegacy/postgresql:17.2.0-debian-12-r2e6fa49bb0347
ncurses@6.4-4
no fix listed
1
bitnamilegacy/postgresql:16.2.0-debian-12-r6ea55532b6f75
ncurses@6.4-4
no fix listed
1
bitnamilegacy/postgresql:17.4.0-debian-12-r11fb3806e823c2
ncurses@6.4-4
no fix listed
1

syft 1.42.1 · advisories as of 23 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.