StackRadar

CVE-2022-4645

Medium

Advisory

Published 3 Mar 2023In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.6
base score, highest
EPSS
0.004
36th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
84
of 17,781 indexed, latest versions
Container images
88
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: libtiff security update

Carried by container images the latest versions of 84 of 17,781 indexed charts deploy, on 88 images.

Affected packageAffected versionsFixed inImages
libtiffrpm4.0.9-17.el8, 4.0.9-18.el8, 4.0.9-28.el8_8, 4.0.9-29.el8_80:4.0.9-31.el813
tiffdeb4.0.3-7ubuntu0.9, 4.0.6-1ubuntu0.2, 4.0.6-1ubuntu0.4, 4.0.6-1ubuntu0.5+13 more4.0.3-7ubuntu0.11+esm5, 4.0.6-1ubuntu0.8+esm7, 4.0.9-5ubuntu0.8, 4.1.0+git191117-2ubuntu0.20.04.6+1 more72
tiffapk4.4.0-r14.4.0-r23
OSV records
ALPINE-CVE-2022-4645RHSA-2024:3059UBUNTU-CVE-2022-4645

Charts affected

84 by stars
ChartLatestAffected imagesRadar Score
openkmgeek-cookbookVerified publisher4.2.01 of 1See more

openkm geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
openkm/openkm-ce:6.3.113bc465a7461b
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

27,949
photoprismgeek-cookbookVerified publisher7.2.01 of 1See more

photoprism geek-cookbook 7.2.0

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
photoprism/photoprism:220629-jammy2954334adbda
tiff@4.3.0-6
4.3.0-6ubuntu0.2

Open the chart page →

19,503
puppeteergeek-cookbookVerified publisher1.2.21 of 1See more

puppeteer geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
tiff@4.1.0+git191117-2ubuntu0.20.04.2
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

15,730
seafilegeek-cookbookVerified publisher3.2.01 of 1See more

seafile geek-cookbook 3.2.0

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

24,293
teedygeek-cookbookVerified publisher6.2.01 of 1See more

teedy geek-cookbook 6.2.0

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
sismics/docs:v1.10f4b0ef019cf1
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.8

Open the chart page →

26,944
xtevegeek-cookbookVerified publisher8.4.21 of 1See more

xteve geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

17,929
itm-servicesintelVerified publisher2.0.01 of 8See more

itm-services intel 2.0.0

1 of the 8 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

18,066
multimodal-data-visualizationintelVerified publisher3.0.01 of 2See more

multimodal-data-visualization intel 3.0.0

1 of the 2 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
intel/multimodal-data-visualization-streaming:3.01a89327e499b
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

11,069
nexusjenkins-x0.1.371 of 1See more

nexus jenkins-x 0.1.37

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
libtiff@4.0.9-17.el8
0:4.0.9-31.el8

Open the chart page →

12,856
elastictranscoderluiscajl0.46.02 of 4See more

elastictranscoder luiscajl 0.46.0

2 of the 4 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
elastictranscoder/transcoder:627e21dcb4a0327029e6
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.8
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.8

Open the chart page →

58,160
xteveluiscajl0.1.61 of 1See more

xteve luiscajl 0.1.6

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
dnsforge/xteve:latest4d9a685c8c28
tiff@4.4.0-r1
4.4.0-r2

Open the chart page →

4,314
cameramedia-streaming-meshVerified publisher0.2.52 of 3See more

camera media-streaming-mesh 0.2.5

2 of the 3 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
tiff@4.1.0+git191117-2ubuntu0.20.04.5
4.1.0+git191117-2ubuntu0.20.04.6
ciscolabs/rtsp-server:latestb59fc10bb821
tiff@4.1.0+git191117-2ubuntu0.20.04.5
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

18,608
msm-rtspmedia-streaming-meshVerified publisher0.0.22 of 2See more

msm-rtsp media-streaming-mesh 0.0.2

2 of the 2 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
tiff@4.1.0+git191117-2ubuntu0.20.04.5
4.1.0+git191117-2ubuntu0.20.04.6
ciscolabs/rtsp-server:latestb59fc10bb821
tiff@4.1.0+git191117-2ubuntu0.20.04.5
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

18,608
rtspmedia-streaming-meshVerified publisher0.0.142 of 2See more

rtsp media-streaming-mesh 0.0.14

2 of the 2 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
tiff@4.1.0+git191117-2ubuntu0.20.04.5
4.1.0+git191117-2ubuntu0.20.04.6
ciscolabs/rtsp-server:latestb59fc10bb821
tiff@4.1.0+git191117-2ubuntu0.20.04.5
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

18,608
nominatimnominatim-chart1.3.01 of 3See more

nominatim nominatim-chart 1.3.0

1 of the 3 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
mediagis/nominatim:3.7c15e941485ef
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

22,658
splashntppoolVerified publisher1.0.41 of 1See more

splash ntppool 1.0.4

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
scrapinghub/splash:3.4.1a5f89bc84606
tiff@4.0.9-5ubuntu0.3
4.0.9-5ubuntu0.8

Open the chart page →

27,633
cdn-remoteopencord0.2.42 of 3See more

cdn-remote opencord 0.2.4

2 of the 3 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
tiff@4.0.9-5ubuntu0.2
4.0.9-5ubuntu0.8
omecproject/cdn-video-repo:1.0.0d59ccb138ffb
tiff@4.0.6-1ubuntu0.5
4.0.6-1ubuntu0.8+esm7

Open the chart page →

63,223
mcord-cdn-remoteopencord0.1.61 of 2See more

mcord-cdn-remote opencord 0.1.6

1 of the 2 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
tiff@4.0.6-1ubuntu0.5
4.0.6-1ubuntu0.8+esm7

Open the chart page →

42,614
mcord-cdn-remote-freeopencord0.1.31 of 1See more

mcord-cdn-remote-free opencord 0.1.3

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
tiff@4.0.6-1ubuntu0.5
4.0.6-1ubuntu0.8+esm7

Open the chart page →

29,124
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
libtiff@4.0.9-29.el8_8
0:4.0.9-31.el8

Open the chart page →

13,607
smsf-dispatcheropenshift1.0.41 of 1See more

smsf-dispatcher openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
libtiff@4.0.9-29.el8_8
0:4.0.9-31.el8

Open the chart page →

11,738
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
libtiff@4.0.9-29.el8_8
0:4.0.9-31.el8

Open the chart page →

13,568
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
libtiff@4.0.9-29.el8_8
0:4.0.9-31.el8

Open the chart page →

13,551
ussigw-configurationopenshift1.0.41 of 1See more

ussigw-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
libtiff@4.0.9-29.el8_8
0:4.0.9-31.el8

Open the chart page →

13,455
ussigw-coreopenshift1.0.41 of 1See more

ussigw-core openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
gurolakman/ussigw-core:1.0.48739565c3ea2
libtiff@4.0.9-29.el8_8
0:4.0.9-31.el8

Open the chart page →

13,100
issuegenopsmxVerified publisher1.0.21 of 1See more

issuegen opsmx 1.0.2

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
opsmx11/issuegen:v2.1.05c50ca123d88
tiff@4.0.3-7ubuntu0.9
4.0.3-7ubuntu0.11+esm5

Open the chart page →

26,339
seafilephybros-helm-charts4.0.11 of 1See more

seafile phybros-helm-charts 4.0.1

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:9.0.97ac833196f60
tiff@4.1.0+git191117-2ubuntu0.20.04.4
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

22,084
podnat-state-storepodnat-controller0.3.21 of 1See more

podnat-state-store podnat-controller 0.3.2

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
dgraziotin/nginx-webdav-nononsense:1.23.138f2de42bed0
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

9,167
javareact-java0.1.01 of 1See more

java react-java 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
project2team4/react:latest3ff031a08887
tiff@4.1.0+git191117-2ubuntu0.20.04.2
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

15,520
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
libtiff@4.0.9-18.el8
0:4.0.9-31.el8

Open the chart page →

29,227
seldon-deployseldon1.4.01 of 2See more

seldon-deploy seldon 1.4.0

1 of the 2 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
seldonio/seldon-request-logger:1.11.24e985d2006a8
libtiff@4.0.9-18.el8
0:4.0.9-31.el8

Open the chart page →

21,997
testing-multitoolsomeblackmagic0.1.21 of 1See more

testing-multitool someblackmagic 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

30,687
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
libtiff@4.0.9-18.el8
0:4.0.9-31.el8

Open the chart page →

28,165
tensor_apptensor-app0.2.22 of 3See more

tensor_app tensor-app 0.2.2

2 of the 3 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
xeladock/mysql_dns:latest4baf531453f1
tiff@4.3.0-6
4.3.0-6ubuntu0.2
xeladock/nginx2:latestc259a67b1dff
tiff@4.3.0-6
4.3.0-6ubuntu0.2

Open the chart page →

17,461

Container images carrying it

88 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.6
1
seldonio/seldon-request-logger:1.11.24e985d2006a8
libtiff@4.0.9-18.el8
0:4.0.9-31.el8
1
sismics/docs:v1.10f4b0ef019cf1
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.8
1
snipe/snipe-it:v6.0.1455fb7636a98c
tiff@4.1.0+git191117-2ubuntu0.20.04.5
4.1.0+git191117-2ubuntu0.20.04.6
1
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6
1
stashapp/stash:latest24dbd7607174
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.6
1
tensorflow/tensorflow:1.6.0-devel1e3172090703
tiff@4.0.6-1ubuntu0.2
4.0.6-1ubuntu0.8+esm7
1
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
tiff@4.3.0-6
4.3.0-6ubuntu0.2
1
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
tiff@4.0.6-1ubuntu0.2
4.0.6-1ubuntu0.8+esm7
1
xeladock/mysql_dns:latest4baf531453f1
tiff@4.3.0-6
4.3.0-6ubuntu0.2
1
xeladock/nginx2:latestc259a67b1dff
tiff@4.3.0-6
4.3.0-6ubuntu0.2
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
tiff@4.1.0+git191117-2ubuntu0.20.04.2
4.1.0+git191117-2ubuntu0.20.04.6
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-6.0.899e9a090b516
tiff@4.3.0-6
4.3.0-6ubuntu0.2
1
zabbix/zabbix-web-service:ubuntu-6.0.8ee4baa872280
tiff@4.3.0-6
4.3.0-6ubuntu0.2
1
ghcr.io/daocloud/dao-2048:v1.4.121275bc02f75
tiff@4.4.0-r1
4.4.0-r2
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6
1
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
libtiff@4.0.9-17.el8
0:4.0.9-31.el8
1
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
tiff@4.1.0+git191117-2ubuntu0.20.04.2
4.1.0+git191117-2ubuntu0.20.04.6
1
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
tiff@4.1.0+git191117-2ubuntu0.20.04.2
4.1.0+git191117-2ubuntu0.20.04.6
1
ghcr.io/k8s-at-home/lidarr:v1.0.0.225554ebc1f90963
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.6
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
tiff@4.3.0-6
4.3.0-6ubuntu0.2
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6
1
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
tiff@4.1.0+git191117-2ubuntu0.20.04.2
4.1.0+git191117-2ubuntu0.20.04.6
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.6
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.6
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.6
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.6
1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.6
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.8
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
tiff@4.1.0+git191117-2ubuntu0.20.04.5
4.1.0+git191117-2ubuntu0.20.04.6
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
tiff@4.1.0+git191117-2ubuntu0.20.04.5
4.1.0+git191117-2ubuntu0.20.04.6
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6
1
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
libtiff@4.0.9-28.el8_8
0:4.0.9-31.el8
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
libtiff@4.0.9-18.el8
0:4.0.9-31.el8
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
libtiff@4.0.9-17.el8
0:4.0.9-31.el8
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
tiff@4.0.6-1ubuntu0.6
4.0.6-1ubuntu0.8+esm7
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
libtiff@4.0.9-18.el8
0:4.0.9-31.el8
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.