Alpine Linux Alpine Linux Small linux distribution popular as a base image for docker containers due to its size.

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in any Alpine Linux product.

RSS Feeds for Alpine Linux security vulnerabilities

Create a CVE RSS feed including security vulnerabilities found in Alpine Linux products with stack.watch. Just hit watch, then grab your custom RSS feed url.

Products by Alpine Linux Sorted by Most Security Vulnerabilities since 2018

Alpine Linux2 vulnerabilities
A linux distribution popular for use in docker containers due to its small size.

Alpine Linux Abuild1 vulnerability

Alpine Linux Apk Tools1 vulnerability

Alpine Linux Aports1 vulnerability

By the Year

In 2026 there have been 0 vulnerabilities in Alpine Linux. Alpine Linux did not have any published security vulnerabilities last year.




Year Vulnerabilities Average Score
2026 0 0.00
2025 0 0.00
2024 0 0.00
2023 0 0.00
2022 1 9.80
2021 2 6.70
2020 0 0.00
2019 1 0.00
2018 1 8.80

It may take a day or so for new Alpine Linux vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Alpine Linux Security Vulnerabilities

CVE Date Vulnerability Products
CVE-2022-22704 Jan 06, 2022
The zabbix-agent2 package before 5.4.9-r1 for Alpine Linux sometimes allows privilege escalation to root because the design incorrectly expected The zabbix-agent2 package before 5.4.9-r1 for Alpine Linux sometimes allows privilege escalation to root because the design incorrectly expected that systemd would (in effect) determine part of the configuration.
Alpine Linux
CVE-2021-36158 Jul 05, 2021
In the xrdp package (in branches through 3.14) for Alpine Linux, RDP sessions are vulnerable to man-in-the-middle attacks In the xrdp package (in branches through 3.14) for Alpine Linux, RDP sessions are vulnerable to man-in-the-middle attacks because pre-generated RSA certificates and private keys are used.
Aports
CVE-2021-30139 Apr 21, 2021
In Alpine Linux apk-tools before 2.12.5, the tarball parser In Alpine Linux apk-tools before 2.12.5, the tarball parser allows a buffer overflow and crash.
Apk Tools
CVE-2019-12875 Jun 18, 2019
Alpine Linux abuild through 3.4.0 allows an unprivileged member of the abuild group to add an untrusted package via a --keys-dir option Alpine Linux abuild through 3.4.0 allows an unprivileged member of the abuild group to add an untrusted package via a --keys-dir option that causes acceptance of an untrusted signing key.
Abuild
CVE-2018-1000849 Dec 20, 2018
Alpine Linux version Versions prior to 2.6.10, 2.7.6, and 2.10.1 contains a Other/Unknown vulnerability in apk-tools (Alpine Linux' package manager) Alpine Linux version Versions prior to 2.6.10, 2.7.6, and 2.10.1 contains a Other/Unknown vulnerability in apk-tools (Alpine Linux' package manager) that can result in Remote Code Execution. This attack appear to be exploitable via A specially crafted APK-file can cause apk to write arbitrary data to an attacker-specified file, due to bugs in handling long link target name and the way a regular file is extracted.. This vulnerability appears to have been fixed in 2.6.10, 2.7.6, and 2.10.1.
Alpine Linux
Built by Foundeo Inc., with data from the National Vulnerability Database (NVD). Privacy Policy. Use of this site is governed by the Legal Terms
Disclaimer
CONTENT ON THIS WEBSITE IS PROVIDED ON AN "AS IS" BASIS AND DOES NOT IMPLY ANY KIND OF GUARANTEE OR WARRANTY, INCLUDING THE WARRANTIES OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR USE. YOUR USE OF THE INFORMATION ON THE DOCUMENT OR MATERIALS LINKED FROM THE DOCUMENT IS AT YOUR OWN RISK. Always check with your vendor for the most up to date, and accurate information.