StackRadar

CVE-2025-6141

Medium

Advisory

Published 16 Jun 2025In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.8
base score, highest
EPSS
0.002
8th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,343
of 17,797 indexed, latest versions
Container images
2,308
deployed by those charts
Fix available
2 of 2
affected packages

CVE-2025-6141 affecting package ncurses for versions less than 6.4-3

Carried by container images the latest versions of 2,343 of 17,797 indexed charts deploy, on 2,308 images.

Affected packageAffected versionsFixed inImages
ncursesdeb5.9+20140118-1ubuntu1, 6.0+20160213-1ubuntu1, 6.1-1ubuntu1, 6.1-1ubuntu1.18.04+12 more5.9+20140118-1ubuntu1+esm7, 6.0+20160213-1ubuntu1+esm7, 6.1-1ubuntu1.18.04.1+esm4, 6.2-0ubuntu2.1+esm2+2 more2,307
ncursesrpm6.4-2.azl36.4-31
OSV records
DEBIAN-CVE-2025-6141UBUNTU-CVE-2025-6141AZL-64139
Also known as
USN-8709-1

Charts affected

2,343 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

2,308 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
envoyproxy/envoy:v1.30.1e596fda6a0ce
ncurses@6.3-2ubuntu0.1
6.3-2ubuntu0.3
1
envoyproxy/envoy:v1.18.2e8b37c1d7578
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1+esm4
1
eqalpha/keydb:x86_64_v6.3.2fd9351ce27a7
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1+esm4
1
erenozcan17/flask_analytics:v3.1c9b6f0dfbffc
ncurses@6.5+20250216-2
no fix listed
1
erigontech/erigon:latest2252efdf9abe
ncurses@6.4-4
no fix listed
1
erigontech/erigon:v2.61.288706754b627
ncurses@6.4-4
no fix listed
1
erlangsolutions/mongooseim:6.6.0cc5bf032931f
ncurses@6.4+20240113-1ubuntu2
6.4+20240113-1ubuntu2.2
1
escaping/core-keeper-dedicated:latest87fa79255962
ncurses@6.5+20250216-2
no fix listed
1
esphome/esphome:2026.7.44866347cb5b4
ncurses@6.5+20250216-2
no fix listed
1
esphome/esphome:2026.9.09959730a04c7
ncurses@6.5+20250216-2
no fix listed
1
esphome/esphome:2024.3.09ab8cc88b28c
ncurses@6.4-4
no fix listed
1
esphome/esphome:2024.12.2b2c6322700ac
ncurses@6.4-4
no fix listed
1
esphome/esphome:2025.3.0def8b6e4f517
ncurses@6.4-4
no fix listed
1
espocrm/espocrm:9.3.101b5a24504ed9
ncurses@6.5+20250216-2
no fix listed
1
ethanbergstrom/duoauthproxy:5.5.0345c2a46c103
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1+esm2
1
ethereumex/eth-stats-dashboard:v0.0.1a7603aa8df4c
ncurses@6.0+20160213-1ubuntu1
6.0+20160213-1ubuntu1+esm7
1
ethersphere/bee:2.2.0a884fd84b72f
ncurses@6.4-4
no fix listed
1
ethersphere/beekeeper:lateste4cda693ed63
ncurses@6.4-4
no fix listed
1
ethpandaops/assertoor:latest1efa2fba6711
ncurses@6.5+20250216-2
no fix listed
1
ethpandaops/buildoor:maina51b9a1a770c
ncurses@6.5+20250216-2
no fix listed
1
ethpandaops/dora:master2381ea793a12
ncurses@6.5+20250216-2
no fix listed
1
ethpandaops/eleel:mainb8f1b707aee0
ncurses@6.4+20240113-1ubuntu2
6.4+20240113-1ubuntu2.2
1
ethpandaops/forky:debian-latestc937f4ba737c
ncurses@6.5+20250216-2
no fix listed
1
ethpandaops/observoor:masterc7e5055defcb
ncurses@6.4-4
no fix listed
1
ethpandaops/rpc-snooper:latestc0b30fcf64bc
ncurses@6.5+20250216-2
no fix listed
1
ethpandaops/spamoor:latest5f731b20ec50
ncurses@6.5+20250216-2
no fix listed
1
factoriotools/factorio:stablec6092b912bd1
ncurses@6.5+20250216-2
no fix listed
1
factoriotools/factorio:lateste9227748c507
ncurses@6.5+20250216-2
no fix listed
1
factoriotools/factorio:2.0.67-rootlessf7909f7361d6
ncurses@6.5+20250216-2
no fix listed
1
falcosecurity/event-generator:latest932956d86c99
ncurses@6.4-4
no fix listed
1
falcosecurity/falco-driver-loader:0.44.17df783d5269a
ncurses@6.4-4
no fix listed
1
federid/webhook:0.1.0fbfb7c6510a7
ncurses@6.4-4
no fix listed
1
felipecs8/app-db-connection-test:v129e06c9c6385
ncurses@6.4-4
no fix listed
1
firefart/requesttracker:5.0.40d6249906d8c
ncurses@6.4-4
no fix listed
1
fireflyiii/core:version-6.6.6ae69fdd95cde
ncurses@6.5+20250216-2
no fix listed
1
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
ncurses@6.2-0ubuntu2.1
6.2-0ubuntu2.1+esm2
1
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
ncurses@6.4-4
no fix listed
1
flanksource/apm-hub:v0.0.471dacc3195bf9
ncurses@6.3-2ubuntu0.1
6.3-2ubuntu0.3
1
flanksource/batch-runner:v1.0.44689687a7cf95
ncurses@6.4+20240113-1ubuntu2
6.4+20240113-1ubuntu2.2
1
flanksource/canary-checker-ui:v1.4.281764c84e550db
ncurses@6.4-4
no fix listed
1
flanksource/incident-manager-ui:v1.4.318891f21df54fb
ncurses@6.4-4
no fix listed
1
flashcatcloud/categraf:latest42e6ab16472e
ncurses@6.4+20240113-1ubuntu2
6.4+20240113-1ubuntu2.2
1
flashcatcloud/nightingale:8.5.1421acb36181b
ncurses@6.5+20250216-2
no fix listed
1
fluent/fluent-bit:4.0-debuge76397ef3983
ncurses@6.4-4
no fix listed
1
fluent/fluentd-kubernetes-daemonset:v1.19.3-debian-elasticsearch7-1.1de9cf5f1127a
ncurses@6.5+20250216-2
no fix listed
1
fluent/fluentd-kubernetes-daemonset:v1-debian-graylogfda93f768f98
ncurses@6.5+20250216-2
no fix listed
1
flyway/flyway:9.1545b5d7cdc75a
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1+esm2
1
fnzv/dump1090:latestb3079b95c336
ncurses@6.3-2ubuntu0.1
6.3-2ubuntu0.3
1
foldingathome/fah-gpu:latest5ef7742d1eb4
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1+esm4
1
folioci/mod-z3950:latest2493041ce880
ncurses@6.5+20250216-2
no fix listed
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.