home / Couchdb / couchdb:3.5.2.1-nouveau docker pull couchdb:3.5.2.1-nouveau click to select
Image metadata PULL COUNT
206.5M
repository-level (not per-tag)
RUNS AS
root
image config.User
LAST PUSHED
4d ago
2026-10-06 03:34:02
MANIFEST DIGEST
sha256:fa1a4c4126f9…
from registry manifest
Latest scan 2026-10-09 23:46:30 UTC · today OPEN CVES BY SEVERITY
Grype DB 2026-10-09T06:32:32.000Z
· rubric cerodeo-v1
RUBRIC BREAKDOWN (6 signals that moved the score) -100 · High CVEs (fixable) -39 · Medium CVEs (fixable) -192 · High CVEs (no fix) +10 · Rebuilt in last 90 days +2 · Multi-arch +2 · readme_has_example
Raw data
Every signal above decomposes to arithmetic from inputs you can verify. Nothing in these downloads is derived or
massaged — they're the raw grype matches and the raw snapshot history exactly as our scanner wrote them.
Reproduce this score yourself
We don't use judgement to score — every signal is deterministic from the image, the manifest, and a pinned CVE DB.
Run the script below on any host with skopeo, syft,
grype, cosign, and jq installed — it fetches the versioned rubric spec, computes the same breakdown, and prints the same grade. Pin the Grype DB with --grype-db to reproduce bit-for-bit identical results.
curl -fsSLO https://ce.rodeo/verify-score.sh && chmod +x verify-score.sh
./verify-score.sh couchdb:3.5.2.1-nouveau \
--rubric cerodeo-v1 \
--grype-db 2026-10-09T06:32:32.000Z
All open CVEs (254) sorted by severity, then CVSS score CVE ID SEV CVSS PACKAGE FIX
CVE-2026-76642 HIGH 8.5 login 1:4.16.0-2+really2.41.5-0+deb13u1 no fix available CVE-2026-76642 HIGH 8.5 libsmartcols1 2.41.5-0+deb13u1 no fix available CVE-2026-76642 HIGH 8.5 liblastlog2-2 2.41.5-0+deb13u1 no fix available CVE-2026-85091 HIGH 8.3 zlib1g 1:1.3.dfsg+really1.3.1-1+b1 no fix available CVE-2026-78408 HIGH 7.9 liblastlog2-2 2.41.5-0+deb13u1 no fix available CVE-2026-78408 HIGH 7.9 libsmartcols1 2.41.5-0+deb13u1 no fix available CVE-2026-78408 HIGH 7.9 login 1:4.16.0-2+really2.41.5-0+deb13u1 no fix available CVE-2026-24882 HIGH 7.8 gpg-agent 2.4.7-21+deb13u1+b5 no fix available CVE-2026-78410 HIGH 7.8 liblastlog2-2 2.41.5-0+deb13u1 no fix available CVE-2026-78410 HIGH 7.8 login 1:4.16.0-2+really2.41.5-0+deb13u1 no fix available CVE-2026-78410 HIGH 7.8 libsmartcols1 2.41.5-0+deb13u1 no fix available CVE-2026-107161 HIGH 7.5 libsasl2-modules-db 2.1.28+dfsg1-9 no fix available CVE-2026-9538 HIGH 7.5 perl-base 5.40.1-6+deb13u1 no fix available CVE-2026-78409 HIGH 7.0 liblastlog2-2 2.41.5-0+deb13u1 no fix available CVE-2026-78409 HIGH 7.0 login 1:4.16.0-2+really2.41.5-0+deb13u1 no fix available CVE-2026-78409 HIGH 7.0 libsmartcols1 2.41.5-0+deb13u1 no fix available CVE-2026-16742 MEDIUM 6.7 libsystemd0 257.13-1~deb13u1 no fix available CVE-2026-16742 MEDIUM 6.7 libsystemd-shared 257.13-1~deb13u1 no fix available CVE-2026-6791 MEDIUM 6.6 libc-bin 2.41-12+deb13u4 no fix available CVE-2026-6238 MEDIUM 6.5 libc-bin 2.41-12+deb13u4 no fix available CVE-2026-15059 MEDIUM 5.5 libsystemd-shared 257.13-1~deb13u1 no fix available CVE-2026-15059 MEDIUM 5.5 libsystemd0 257.13-1~deb13u1 no fix available CVE-2026-27171 MEDIUM 5.5 zlib1g 1:1.3.dfsg+really1.3.1-1+b1 no fix available CVE-2026-50812 MEDIUM 5.5 libsqlite3-0 3.46.1-7+deb13u2 no fix available CVE-2026-50813 MEDIUM 5.5 libsqlite3-0 3.46.1-7+deb13u2 no fix available CVE-2026-3184 MEDIUM 5.3 libsmartcols1 2.41.5-0+deb13u1 no fix available CVE-2026-3184 MEDIUM 5.3 bsdutils 1:2.41.5-0+deb13u1 no fix available CVE-2026-3184 MEDIUM 5.3 libblkid1 2.41.5-0+deb13u1 no fix available CVE-2026-3184 MEDIUM 5.3 liblastlog2-2 2.41.5-0+deb13u1 no fix available CVE-2026-3184 MEDIUM 5.3 libmount1 2.41.5-0+deb13u1 no fix available CVE-2026-3184 MEDIUM 5.3 libuuid1 2.41.5-0+deb13u1 no fix available CVE-2026-3184 MEDIUM 5.3 login 1:4.16.0-2+really2.41.5-0+deb13u1 no fix available CVE-2026-3184 MEDIUM 5.3 util-linux 2.41.5-0+deb13u1 no fix available CVE-2026-8674 MEDIUM 5.3 libc-bin 2.41-12+deb13u4 no fix available CVE-2025-6141 MEDIUM 4.8 ncurses-bin 6.5+20250216-2 no fix available CVE-2025-6141 MEDIUM 4.8 ncurses-base 6.5+20250216-2 no fix available CVE-2025-6141 MEDIUM 4.8 libtinfo6 6.5+20250216-2 no fix available CVE-2025-6141 MEDIUM 4.8 libncursesw6 6.5+20250216-2 no fix available CVE-2025-68972 MEDIUM 4.7 gnupg-l10n 2.4.7-21+deb13u1 no fix available CVE-2025-68972 MEDIUM 4.7 gpgconf 2.4.7-21+deb13u1+b5 no fix available CVE-2025-68972 MEDIUM 4.7 gpg-agent 2.4.7-21+deb13u1+b5 no fix available CVE-2025-68972 MEDIUM 4.7 dirmngr 2.4.7-21+deb13u1+b5 no fix available CVE-2026-40228 LOW 3.3 libsystemd-shared 257.13-1~deb13u1 no fix available CVE-2007-5686 NEGLIGIBLE — login.defs 1:4.17.4-2 no fix available CVE-2010-4756 NEGLIGIBLE — libc-bin 2.41-12+deb13u4 no fix available CVE-2010-4756 NEGLIGIBLE — libc6 2.41-12+deb13u4 no fix available CVE-2011-3374 NEGLIGIBLE — apt-transport-https 3.0.3 no fix available CVE-2011-3389 NEGLIGIBLE — libgnutls30t64 3.8.9-3+deb13u4 no fix available CVE-2011-4116 NEGLIGIBLE — perl-base 5.40.1-6+deb13u1 no fix available CVE-2013-4392 NEGLIGIBLE — libsystemd0 257.13-1~deb13u1 no fix available CVE-2013-4392 NEGLIGIBLE — systemd 257.13-1~deb13u1 no fix available CVE-2013-4392 NEGLIGIBLE — libsystemd-shared 257.13-1~deb13u1 no fix available CVE-2013-4392 NEGLIGIBLE — libudev1 257.13-1~deb13u1 no fix available CVE-2015-3276 NEGLIGIBLE — libldap2 2.6.10+dfsg-1 no fix available CVE-2017-11695 NEGLIGIBLE — libnss3 2:3.110-1+deb13u4 no fix available CVE-2017-11696 NEGLIGIBLE — libnss3 2:3.110-1+deb13u4 no fix available CVE-2017-11697 NEGLIGIBLE — libnss3 2:3.110-1+deb13u4 no fix available CVE-2017-11698 NEGLIGIBLE — libnss3 2:3.110-1+deb13u4 no fix available
Scan history 1 total · first today SCANNED AT GRADE SCORE CRIT HIGH MED GRYPE DB
today F 0 0 74 75 2026-10-09T06:32:32.000Z
Methodology:
This image is re-matched against the fresh Grype vulnerability DB every hour. Snapshot rows marked
(same SBOM) reuse the prior scan's content via a pointer — about
90% of hourly cycles do. New CVE disclosures land in a new content row and bump the grade on the next match.
Full rubric at /about/grades ; for publishers wanting to
raise their grade, see /about/for-publishers .