home / Istio / istio/proxy docker pull istio/proxy click to select
Image metadata PULL COUNT
—
repository-level (not per-tag)
RUNS AS
root
image config.User
MANIFEST DIGEST
sha256:f72445823d18…
from registry manifest
Latest scan 2026-10-06 18:42:49 UTC · 3d ago OPEN CVES BY SEVERITY
Grype DB unknown
· rubric cerodeo-v1
RUBRIC BREAKDOWN (3 signals that moved the score) -220 · High CVEs (fixable) -348 · Medium CVEs (fixable) -18 · High CVEs (no fix)
Raw data
Every signal above decomposes to arithmetic from inputs you can verify. Nothing in these downloads is derived or
massaged — they're the raw grype matches and the raw snapshot history exactly as our scanner wrote them.
All open CVEs (500) sorted by severity, then CVSS score CVE ID SEV CVSS PACKAGE FIX
CVE-2016-1252 HIGH — libapt-pkg5.0 1.1.10 fixed in 1.2.15ubuntu0.2 CVE-2016-6313 HIGH — gpgv 1.4.19-6ubuntu1 fixed in 1.4.20-1ubuntu3.1 CVE-2016-6313 HIGH — libgcrypt20 1.6.4-5 fixed in 1.6.5-2ubuntu0.2 CVE-2016-6313 HIGH — gnupg 1.4.19-6ubuntu1 fixed in 1.4.20-1ubuntu3.1 CVE-2017-9445 HIGH — systemd-sysv 228-4ubuntu1 fixed in 229-4ubuntu19 CVE-2017-9445 HIGH — libudev1 228-4ubuntu1 fixed in 229-4ubuntu19 CVE-2017-9445 HIGH — libsystemd0 228-4ubuntu1 fixed in 229-4ubuntu19 CVE-2018-16864 HIGH — systemd-sysv 228-4ubuntu1 fixed in 229-4ubuntu21.15 CVE-2018-16864 HIGH — libsystemd0 228-4ubuntu1 fixed in 229-4ubuntu21.15 CVE-2018-16865 HIGH — systemd-sysv 228-4ubuntu1 fixed in 229-4ubuntu21.15 CVE-2018-16865 HIGH — libsystemd0 228-4ubuntu1 fixed in 229-4ubuntu21.15 CVE-2019-3462 HIGH — libapt-pkg5.0 1.1.10 fixed in 1.2.29ubuntu0.1 CVE-2016-1585 MEDIUM — libapparmor1 2.10-0ubuntu11 no fix available CVE-2016-6252 MEDIUM — passwd 1:4.1.5.1-1.1ubuntu7 fixed in 1:4.2-3.1ubuntu5.2 CVE-2016-6252 MEDIUM — login 1:4.1.5.1-1.1ubuntu7 fixed in 1:4.2-3.1ubuntu5.2 CVE-2016-7543 MEDIUM — bash 4.3-14ubuntu1 fixed in 4.3-14ubuntu1.2 CVE-2016-7795 MEDIUM — libudev1 228-4ubuntu1 fixed in 229-4ubuntu10 CVE-2016-7795 MEDIUM — systemd 228-4ubuntu1 fixed in 229-4ubuntu10 CVE-2016-7795 MEDIUM — systemd-sysv 228-4ubuntu1 fixed in 229-4ubuntu10 CVE-2016-7795 MEDIUM — libsystemd0 228-4ubuntu1 fixed in 229-4ubuntu10 CVE-2016-7796 MEDIUM — libudev1 228-4ubuntu1 fixed in 229-4ubuntu11 CVE-2016-7796 MEDIUM — systemd-sysv 228-4ubuntu1 fixed in 229-4ubuntu11 CVE-2016-7796 MEDIUM — systemd 228-4ubuntu1 fixed in 229-4ubuntu11 CVE-2016-7796 MEDIUM — libsystemd0 228-4ubuntu1 fixed in 229-4ubuntu11 CVE-2017-1000366 MEDIUM — multiarch-support 2.21-0ubuntu5 fixed in 2.23-0ubuntu9 CVE-2017-10140 MEDIUM — libdb5.3 5.3.28-11 fixed in 5.3.28-11ubuntu0.1 CVE-2017-15908 MEDIUM — systemd-sysv 228-4ubuntu1 fixed in 229-4ubuntu21.1 CVE-2017-15908 MEDIUM — libsystemd0 228-4ubuntu1 fixed in 229-4ubuntu21.1 CVE-2017-15908 MEDIUM — libudev1 228-4ubuntu1 fixed in 229-4ubuntu21.1 CVE-2017-17512 MEDIUM — sensible-utils 0.0.9 fixed in 0.0.9ubuntu0.16.04.1 CVE-2017-18269 MEDIUM — libc-bin 2.21-0ubuntu5 fixed in 2.23-0ubuntu11.2 CVE-2017-18269 MEDIUM — multiarch-support 2.21-0ubuntu5 fixed in 2.23-0ubuntu11.2 CVE-2017-6507 MEDIUM — libapparmor1 2.10-0ubuntu11 fixed in 2.10.95-0ubuntu2.6 CVE-2017-7526 MEDIUM — libgcrypt20 1.6.4-5 fixed in 1.6.5-2ubuntu0.3 CVE-2017-7526 MEDIUM — gpgv 1.4.19-6ubuntu1 fixed in 1.4.20-1ubuntu3.3 CVE-2017-7526 MEDIUM — gnupg 1.4.19-6ubuntu1 fixed in 1.4.20-1ubuntu3.3 CVE-2018-1049 MEDIUM — libudev1 228-4ubuntu1 fixed in 229-4ubuntu21.1 CVE-2018-1049 MEDIUM — libsystemd0 228-4ubuntu1 fixed in 229-4ubuntu21.1 CVE-2018-1049 MEDIUM — systemd 228-4ubuntu1 fixed in 229-4ubuntu21.1 CVE-2018-1049 MEDIUM — systemd-sysv 228-4ubuntu1 fixed in 229-4ubuntu21.1 CVE-2018-1122 MEDIUM — procps 2:3.3.10-4ubuntu2 fixed in 2:3.3.10-4ubuntu2.4 CVE-2018-1122 MEDIUM — libprocps4 2:3.3.10-4ubuntu2 fixed in 2:3.3.10-4ubuntu2.4 CVE-2018-1123 MEDIUM — procps 2:3.3.10-4ubuntu2 fixed in 2:3.3.10-4ubuntu2.4 CVE-2018-1123 MEDIUM — libprocps4 2:3.3.10-4ubuntu2 fixed in 2:3.3.10-4ubuntu2.4 CVE-2018-11236 MEDIUM — multiarch-support 2.21-0ubuntu5 fixed in 2.23-0ubuntu11.2 CVE-2018-11236 MEDIUM — libc-bin 2.21-0ubuntu5 fixed in 2.23-0ubuntu11.2 CVE-2018-11237 MEDIUM — multiarch-support 2.21-0ubuntu5 fixed in 2.23-0ubuntu11.2 CVE-2018-11237 MEDIUM — libc-bin 2.21-0ubuntu5 fixed in 2.23-0ubuntu11.2 CVE-2018-1124 MEDIUM — libprocps4 2:3.3.10-4ubuntu2 fixed in 2:3.3.10-4ubuntu2.4 CVE-2018-1124 MEDIUM — procps 2:3.3.10-4ubuntu2 fixed in 2:3.3.10-4ubuntu2.4 CVE-2018-1125 MEDIUM — libprocps4 2:3.3.10-4ubuntu2 fixed in 2:3.3.10-4ubuntu2.4 CVE-2018-1125 MEDIUM — procps 2:3.3.10-4ubuntu2 fixed in 2:3.3.10-4ubuntu2.4 CVE-2018-1126 MEDIUM — libprocps4 2:3.3.10-4ubuntu2 fixed in 2:3.3.10-4ubuntu2.4 CVE-2018-1126 MEDIUM — procps 2:3.3.10-4ubuntu2 fixed in 2:3.3.10-4ubuntu2.4 CVE-2018-12020 MEDIUM — gpgv 1.4.19-6ubuntu1 fixed in 1.4.20-1ubuntu3.2 CVE-2018-12020 MEDIUM — gnupg 1.4.19-6ubuntu1 fixed in 1.4.20-1ubuntu3.2 CVE-2018-15686 MEDIUM — libsystemd0 228-4ubuntu1 fixed in 229-4ubuntu21.8 CVE-2018-15686 MEDIUM — systemd-sysv 228-4ubuntu1 fixed in 229-4ubuntu21.8 CVE-2018-15686 MEDIUM — libudev1 228-4ubuntu1 fixed in 229-4ubuntu21.8 CVE-2018-15687 MEDIUM — systemd-sysv 228-4ubuntu1 fixed in 229-4ubuntu21.8 CVE-2018-15687 MEDIUM — libudev1 228-4ubuntu1 fixed in 229-4ubuntu21.8 CVE-2018-15687 MEDIUM — libsystemd0 228-4ubuntu1 fixed in 229-4ubuntu21.8 CVE-2018-15688 MEDIUM — libsystemd0 228-4ubuntu1 fixed in 229-4ubuntu21.6 CVE-2018-15688 MEDIUM — systemd-sysv 228-4ubuntu1 fixed in 229-4ubuntu21.6 CVE-2018-15688 MEDIUM — libudev1 228-4ubuntu1 fixed in 229-4ubuntu21.6 CVE-2018-16866 MEDIUM — systemd-sysv 228-4ubuntu1 fixed in 229-4ubuntu21.15 CVE-2018-16866 MEDIUM — libudev1 228-4ubuntu1 fixed in 229-4ubuntu21.15 CVE-2018-16866 MEDIUM — systemd 228-4ubuntu1 fixed in 229-4ubuntu21.15 CVE-2018-16866 MEDIUM — libsystemd0 228-4ubuntu1 fixed in 229-4ubuntu21.15 CVE-2018-6485 MEDIUM — multiarch-support 2.21-0ubuntu5 fixed in 2.23-0ubuntu11.2 CVE-2018-6485 MEDIUM — libc-bin 2.21-0ubuntu5 fixed in 2.23-0ubuntu11.2 CVE-2018-6485 MEDIUM — libc6 2.21-0ubuntu5 fixed in 2.23-0ubuntu11.2 CVE-2018-6797 MEDIUM — perl-base 5.22.1-4 fixed in 5.22.1-9ubuntu0.3 CVE-2018-6798 MEDIUM — perl-base 5.22.1-4 fixed in 5.22.1-9ubuntu0.3 CVE-2018-6913 MEDIUM — perl-base 5.22.1-4 fixed in 5.22.1-9ubuntu0.3 CVE-2018-6954 MEDIUM — systemd 228-4ubuntu1 fixed in 229-4ubuntu21.15 CVE-2018-6954 MEDIUM — libsystemd0 228-4ubuntu1 fixed in 229-4ubuntu21.15 CVE-2018-6954 MEDIUM — libudev1 228-4ubuntu1 fixed in 229-4ubuntu21.15 CVE-2018-6954 MEDIUM — systemd-sysv 228-4ubuntu1 fixed in 229-4ubuntu21.15 CVE-2019-3842 MEDIUM — libsystemd0 228-4ubuntu1 fixed in 229-4ubuntu21.21 CVE-2019-3842 MEDIUM — libudev1 228-4ubuntu1 fixed in 229-4ubuntu21.21 CVE-2019-3842 MEDIUM — systemd 228-4ubuntu1 fixed in 229-4ubuntu21.21 CVE-2019-3842 MEDIUM — systemd-sysv 228-4ubuntu1 fixed in 229-4ubuntu21.21 CVE-2019-5094 MEDIUM — e2fslibs 1.42.13-1ubuntu1 fixed in 1.42.13-1ubuntu1.1 CVE-2019-5094 MEDIUM — e2fsprogs 1.42.13-1ubuntu1 fixed in 1.42.13-1ubuntu1.1 CVE-2019-5094 MEDIUM — libcomerr2 1.42.13-1ubuntu1 fixed in 1.42.13-1ubuntu1.1 CVE-2019-5094 MEDIUM — libss2 1.42.13-1ubuntu1 fixed in 1.42.13-1ubuntu1.1 CVE-2019-5188 MEDIUM — e2fsprogs 1.42.13-1ubuntu1 fixed in 1.42.13-1ubuntu1.2 CVE-2019-5188 MEDIUM — libss2 1.42.13-1ubuntu1 fixed in 1.42.13-1ubuntu1.2 CVE-2019-5188 MEDIUM — libcomerr2 1.42.13-1ubuntu1 fixed in 1.42.13-1ubuntu1.2 CVE-2019-5188 MEDIUM — e2fslibs 1.42.13-1ubuntu1 fixed in 1.42.13-1ubuntu1.2 CVE-2019-6454 MEDIUM — systemd 228-4ubuntu1 fixed in 229-4ubuntu21.16 CVE-2019-6454 MEDIUM — systemd-sysv 228-4ubuntu1 fixed in 229-4ubuntu21.16 CVE-2019-6454 MEDIUM — libsystemd0 228-4ubuntu1 fixed in 229-4ubuntu21.16 CVE-2019-6454 MEDIUM — libudev1 228-4ubuntu1 fixed in 229-4ubuntu21.16 CVE-2019-8457 MEDIUM — libdb5.3 5.3.28-11 fixed in 5.3.28-11ubuntu0.2 CVE-2019-9893 MEDIUM — libseccomp2 2.2.3-2ubuntu3 fixed in 2.4.1-0ubuntu0.16.04.2 CVE-2020-1712 MEDIUM — libsystemd0 228-4ubuntu1 fixed in 229-4ubuntu21.27 CVE-2020-1712 MEDIUM — systemd-sysv 228-4ubuntu1 fixed in 229-4ubuntu21.27 CVE-2020-1712 MEDIUM — systemd 228-4ubuntu1 fixed in 229-4ubuntu21.27 CVE-2020-1712 MEDIUM — libudev1 228-4ubuntu1 fixed in 229-4ubuntu21.27 CVE-2020-1751 MEDIUM — libc6 2.21-0ubuntu5 fixed in 2.23-0ubuntu11.2 CVE-2020-1751 MEDIUM — multiarch-support 2.21-0ubuntu5 fixed in 2.23-0ubuntu11.2 CVE-2020-1751 MEDIUM — libc-bin 2.21-0ubuntu5 fixed in 2.23-0ubuntu11.2 CVE-2020-19189 MEDIUM — libtinfo5 6.0+20151024-2ubuntu1 no fix available CVE-2020-19189 MEDIUM — ncurses-base 6.0+20151024-2ubuntu1 no fix available CVE-2020-19189 MEDIUM — ncurses-bin 6.0+20151024-2ubuntu1 no fix available CVE-2020-19189 MEDIUM — libncurses5 6.0+20151024-2ubuntu1 no fix available CVE-2020-19189 MEDIUM — libncursesw5 6.0+20151024-2ubuntu1 no fix available CVE-2020-3810 MEDIUM — libapt-pkg5.0 1.1.10 fixed in 1.2.32ubuntu0.1 CVE-2021-3997 MEDIUM — systemd-sysv 228-4ubuntu1 no fix available CVE-2021-3999 MEDIUM — multiarch-support 2.21-0ubuntu5 no fix available CVE-2022-1271 MEDIUM — liblzma5 5.1.1alpha+20120614-2ubuntu2 no fix available CVE-2022-1304 MEDIUM — libcomerr2 1.42.13-1ubuntu1 no fix available CVE-2022-1304 MEDIUM — e2fsprogs 1.42.13-1ubuntu1 no fix available CVE-2022-1304 MEDIUM — e2fslibs 1.42.13-1ubuntu1 no fix available CVE-2022-3821 MEDIUM — systemd-sysv 228-4ubuntu1 no fix available CVE-2022-4415 MEDIUM — systemd-sysv 228-4ubuntu1 no fix available CVE-2023-29491 MEDIUM — ncurses-base 6.0+20151024-2ubuntu1 no fix available CVE-2023-29491 MEDIUM — libncurses5 6.0+20151024-2ubuntu1 no fix available CVE-2023-29491 MEDIUM — libncursesw5 6.0+20151024-2ubuntu1 no fix available CVE-2023-29491 MEDIUM — libtinfo5 6.0+20151024-2ubuntu1 no fix available CVE-2023-29491 MEDIUM — ncurses-bin 6.0+20151024-2ubuntu1 no fix available CVE-2024-22365 MEDIUM — libpam-modules 1.1.8-3.1ubuntu3 no fix available CVE-2024-22365 MEDIUM — libpam-modules-bin 1.1.8-3.1ubuntu3 no fix available CVE-2024-22365 MEDIUM — libpam-runtime 1.1.8-3.1ubuntu3 no fix available CVE-2024-28085 MEDIUM — libsmartcols1 2.27.1-1ubuntu3 no fix available
Scan history 1 total · first 3d ago SCANNED AT GRADE SCORE CRIT HIGH MED GRYPE DB
3d ago F 0 0 28 395 unknown
Methodology:
This image is re-matched against the fresh Grype vulnerability DB every hour. Snapshot rows marked
(same SBOM) reuse the prior scan's content via a pointer — about
90% of hourly cycles do. New CVE disclosures land in a new content row and bump the grade on the next match.
Full rubric at /about/grades ; for publishers wanting to
raise their grade, see /about/for-publishers .