StackRadar

CVE-2022-4645

Medium

Advisory

Published 3 Mar 2023In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.6
base score, highest
EPSS
0.004
36th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
84
of 17,781 indexed, latest versions
Container images
88
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: libtiff security update

Carried by container images the latest versions of 84 of 17,781 indexed charts deploy, on 88 images.

Affected packageAffected versionsFixed inImages
libtiffrpm4.0.9-17.el8, 4.0.9-18.el8, 4.0.9-28.el8_8, 4.0.9-29.el8_80:4.0.9-31.el813
tiffdeb4.0.3-7ubuntu0.9, 4.0.6-1ubuntu0.2, 4.0.6-1ubuntu0.4, 4.0.6-1ubuntu0.5+13 more4.0.3-7ubuntu0.11+esm5, 4.0.6-1ubuntu0.8+esm7, 4.0.9-5ubuntu0.8, 4.1.0+git191117-2ubuntu0.20.04.6+1 more72
tiffapk4.4.0-r14.4.0-r23
OSV records
ALPINE-CVE-2022-4645RHSA-2024:3059UBUNTU-CVE-2022-4645

Charts affected

84 by stars
ChartLatestAffected imagesRadar Score
openkmgeek-cookbookVerified publisher4.2.01 of 1See more

openkm geek-cookbook 4.2.0

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
openkm/openkm-ce:6.3.113bc465a7461b
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

27,949
photoprismgeek-cookbookVerified publisher7.2.01 of 1See more

photoprism geek-cookbook 7.2.0

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
photoprism/photoprism:220629-jammy2954334adbda
tiff@4.3.0-6
4.3.0-6ubuntu0.2

Open the chart page →

19,503
puppeteergeek-cookbookVerified publisher1.2.21 of 1See more

puppeteer geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
tiff@4.1.0+git191117-2ubuntu0.20.04.2
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

15,730
seafilegeek-cookbookVerified publisher3.2.01 of 1See more

seafile geek-cookbook 3.2.0

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

24,293
teedygeek-cookbookVerified publisher6.2.01 of 1See more

teedy geek-cookbook 6.2.0

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
sismics/docs:v1.10f4b0ef019cf1
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.8

Open the chart page →

26,944
xtevegeek-cookbookVerified publisher8.4.21 of 1See more

xteve geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

17,929
itm-servicesintelVerified publisher2.0.01 of 8See more

itm-services intel 2.0.0

1 of the 8 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

18,066
multimodal-data-visualizationintelVerified publisher3.0.01 of 2See more

multimodal-data-visualization intel 3.0.0

1 of the 2 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
intel/multimodal-data-visualization-streaming:3.01a89327e499b
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

11,069
nexusjenkins-x0.1.371 of 1See more

nexus jenkins-x 0.1.37

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
libtiff@4.0.9-17.el8
0:4.0.9-31.el8

Open the chart page →

12,856
elastictranscoderluiscajl0.46.02 of 4See more

elastictranscoder luiscajl 0.46.0

2 of the 4 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
elastictranscoder/transcoder:627e21dcb4a0327029e6
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.8
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.8

Open the chart page →

58,160
xteveluiscajl0.1.61 of 1See more

xteve luiscajl 0.1.6

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
dnsforge/xteve:latest4d9a685c8c28
tiff@4.4.0-r1
4.4.0-r2

Open the chart page →

4,314
cameramedia-streaming-meshVerified publisher0.2.52 of 3See more

camera media-streaming-mesh 0.2.5

2 of the 3 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
tiff@4.1.0+git191117-2ubuntu0.20.04.5
4.1.0+git191117-2ubuntu0.20.04.6
ciscolabs/rtsp-server:latestb59fc10bb821
tiff@4.1.0+git191117-2ubuntu0.20.04.5
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

18,608
msm-rtspmedia-streaming-meshVerified publisher0.0.22 of 2See more

msm-rtsp media-streaming-mesh 0.0.2

2 of the 2 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
tiff@4.1.0+git191117-2ubuntu0.20.04.5
4.1.0+git191117-2ubuntu0.20.04.6
ciscolabs/rtsp-server:latestb59fc10bb821
tiff@4.1.0+git191117-2ubuntu0.20.04.5
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

18,608
rtspmedia-streaming-meshVerified publisher0.0.142 of 2See more

rtsp media-streaming-mesh 0.0.14

2 of the 2 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
ciscolabs/rtsp-client:latesta7b60ec88285
tiff@4.1.0+git191117-2ubuntu0.20.04.5
4.1.0+git191117-2ubuntu0.20.04.6
ciscolabs/rtsp-server:latestb59fc10bb821
tiff@4.1.0+git191117-2ubuntu0.20.04.5
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

18,608
nominatimnominatim-chart1.3.01 of 3See more

nominatim nominatim-chart 1.3.0

1 of the 3 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
mediagis/nominatim:3.7c15e941485ef
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

22,658
splashntppoolVerified publisher1.0.41 of 1See more

splash ntppool 1.0.4

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
scrapinghub/splash:3.4.1a5f89bc84606
tiff@4.0.9-5ubuntu0.3
4.0.9-5ubuntu0.8

Open the chart page →

27,633
cdn-remoteopencord0.2.42 of 3See more

cdn-remote opencord 0.2.4

2 of the 3 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
tiff@4.0.9-5ubuntu0.2
4.0.9-5ubuntu0.8
omecproject/cdn-video-repo:1.0.0d59ccb138ffb
tiff@4.0.6-1ubuntu0.5
4.0.6-1ubuntu0.8+esm7

Open the chart page →

63,223
mcord-cdn-remoteopencord0.1.61 of 2See more

mcord-cdn-remote opencord 0.1.6

1 of the 2 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
tiff@4.0.6-1ubuntu0.5
4.0.6-1ubuntu0.8+esm7

Open the chart page →

42,614
mcord-cdn-remote-freeopencord0.1.31 of 1See more

mcord-cdn-remote-free opencord 0.1.3

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
tiff@4.0.6-1ubuntu0.5
4.0.6-1ubuntu0.8+esm7

Open the chart page →

29,124
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
libtiff@4.0.9-29.el8_8
0:4.0.9-31.el8

Open the chart page →

13,607
smsf-dispatcheropenshift1.0.41 of 1See more

smsf-dispatcher openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
libtiff@4.0.9-29.el8_8
0:4.0.9-31.el8

Open the chart page →

11,738
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
libtiff@4.0.9-29.el8_8
0:4.0.9-31.el8

Open the chart page →

13,568
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
libtiff@4.0.9-29.el8_8
0:4.0.9-31.el8

Open the chart page →

13,551
ussigw-configurationopenshift1.0.41 of 1See more

ussigw-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
libtiff@4.0.9-29.el8_8
0:4.0.9-31.el8

Open the chart page →

13,455
ussigw-coreopenshift1.0.41 of 1See more

ussigw-core openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
gurolakman/ussigw-core:1.0.48739565c3ea2
libtiff@4.0.9-29.el8_8
0:4.0.9-31.el8

Open the chart page →

13,100
issuegenopsmxVerified publisher1.0.21 of 1See more

issuegen opsmx 1.0.2

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
opsmx11/issuegen:v2.1.05c50ca123d88
tiff@4.0.3-7ubuntu0.9
4.0.3-7ubuntu0.11+esm5

Open the chart page →

26,339
seafilephybros-helm-charts4.0.11 of 1See more

seafile phybros-helm-charts 4.0.1

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:9.0.97ac833196f60
tiff@4.1.0+git191117-2ubuntu0.20.04.4
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

22,084
podnat-state-storepodnat-controller0.3.21 of 1See more

podnat-state-store podnat-controller 0.3.2

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
dgraziotin/nginx-webdav-nononsense:1.23.138f2de42bed0
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

9,167
javareact-java0.1.01 of 1See more

java react-java 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
project2team4/react:latest3ff031a08887
tiff@4.1.0+git191117-2ubuntu0.20.04.2
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

15,520
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
libtiff@4.0.9-18.el8
0:4.0.9-31.el8

Open the chart page →

29,227
seldon-deployseldon1.4.01 of 2See more

seldon-deploy seldon 1.4.0

1 of the 2 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
seldonio/seldon-request-logger:1.11.24e985d2006a8
libtiff@4.0.9-18.el8
0:4.0.9-31.el8

Open the chart page →

21,997
testing-multitoolsomeblackmagic0.1.21 of 1See more

testing-multitool someblackmagic 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6

Open the chart page →

30,687
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
libtiff@4.0.9-18.el8
0:4.0.9-31.el8

Open the chart page →

28,165
tensor_apptensor-app0.2.22 of 3See more

tensor_app tensor-app 0.2.2

2 of the 3 container images this version deploys carry CVE-2022-4645.

Container imageDigestPackageFixed in
xeladock/mysql_dns:latest4baf531453f1
tiff@4.3.0-6
4.3.0-6ubuntu0.2
xeladock/nginx2:latestc259a67b1dff
tiff@4.3.0-6
4.3.0-6ubuntu0.2

Open the chart page →

17,461

Container images carrying it

88 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
tiff@4.0.6-1ubuntu0.4
4.0.6-1ubuntu0.8+esm7
4
hyperledger/fabric-couchdb:0.4.15f6c724592abf
tiff@4.0.6-1ubuntu0.6
4.0.6-1ubuntu0.8+esm7
4
ciscolabs/rtsp-client:latesta7b60ec88285
tiff@4.1.0+git191117-2ubuntu0.20.04.5
4.1.0+git191117-2ubuntu0.20.04.6
3
ciscolabs/rtsp-server:latestb59fc10bb821
tiff@4.1.0+git191117-2ubuntu0.20.04.5
4.1.0+git191117-2ubuntu0.20.04.6
3
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
tiff@4.0.6-1ubuntu0.5
4.0.6-1ubuntu0.8+esm7
3
ghcr.io/codingducksrl/laravel:8.15be52524664c
tiff@4.3.0-6ubuntu0.1
4.3.0-6ubuntu0.2
2
ghcr.io/games-on-whales/retroarch:1.0.0103fbcec2314
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.6
2
ghcr.io/games-on-whales/steam:1.0.09b6105be7ad0
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.6
2
airsonicadvanced/airsonic-advanced:latestf7cbafac2806
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.6
1
blakeblackshear/frigate:0.10.0-amd64ae269270ad9e
tiff@4.1.0+git191117-2ubuntu0.20.04.2
4.1.0+git191117-2ubuntu0.20.04.6
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.6
1
cheyang/distributed-tf:1.6.046cc34755493
tiff@4.0.6-1ubuntu0.2
4.0.6-1ubuntu0.8+esm7
1
daskdev/dask-notebook:1.1.0052630f5ca04
tiff@4.0.9-5ubuntu0.1
4.0.9-5ubuntu0.8
1
dgraziotin/nginx-webdav-nononsense:1.23.138f2de42bed0
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6
1
dnsforge/xteve:latest4d9a685c8c28
tiff@4.4.0-r1
4.4.0-r2
1
elastictranscoder/transcoder:627e21dcb4a0327029e6
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.8
1
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.8
1
felipecs8/qrcode-generator:v1d5f4f17cb066
tiff@4.4.0-r1
4.4.0-r2
1
galaxy/galaxy-stable:v18.018e577a626dfd
tiff@4.0.3-7ubuntu0.9
4.0.3-7ubuntu0.11+esm5
1
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
tiff@4.0.9-5ubuntu0.3
4.0.9-5ubuntu0.8
1
gurolakman/smsf-configuration:1.0.49abb3882bcbd
libtiff@4.0.9-29.el8_8
0:4.0.9-31.el8
1
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
libtiff@4.0.9-29.el8_8
0:4.0.9-31.el8
1
gurolakman/smsf-momt:1.0.4ce23b20a8a17
libtiff@4.0.9-29.el8_8
0:4.0.9-31.el8
1
gurolakman/smsf-registration:1.0.4b22e746edd5d
libtiff@4.0.9-29.el8_8
0:4.0.9-31.el8
1
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
libtiff@4.0.9-29.el8_8
0:4.0.9-31.el8
1
gurolakman/ussigw-core:1.0.48739565c3ea2
libtiff@4.0.9-29.el8_8
0:4.0.9-31.el8
1
haveagitgat/tdarr:2.00.181256348872ce
tiff@4.1.0+git191117-2ubuntu0.20.04.2
4.1.0+git191117-2ubuntu0.20.04.6
1
haveagitgat/tdarr_node:2.00.101e3f9328327d
tiff@4.1.0+git191117-2build1
4.1.0+git191117-2ubuntu0.20.04.6
1
hazelcast/management-center:5.3.2f9d34300d330
libtiff@4.0.9-28.el8_8
0:4.0.9-31.el8
1
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
tiff@4.0.9-5ubuntu0.3
4.0.9-5ubuntu0.8
1
hyperledger/fabric-couchdb:0.4.10c65891b6c237
tiff@4.0.6-1ubuntu0.4
4.0.6-1ubuntu0.8+esm7
1
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6
1
intel/multimodal-data-visualization-streaming:3.01a89327e499b
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6
1
linuxserver/calibre:version-v5.21.0a847b5b2d860
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.8
1
linuxserver/calibre-web:version-0.6.12938810eca3d3
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.6
1
linuxserver/deluge:18.04.10ac871624394
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.8
1
linuxserver/deluge:version-2.0.3-2201906121747ubuntu18.04.12ce561a95e7b
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.8
1
linuxserver/lazylibrarian:version-1152df82f93d2560e233
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.8
1
mediagis/nominatim:3.7c15e941485ef
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6
1
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
tiff@4.0.9-5ubuntu0.2
4.0.9-5ubuntu0.8
1
opendatacube/pipelines:wofs-1.225d810e8504b8
tiff@4.0.9-5ubuntu0.2
4.0.9-5ubuntu0.8
1
opendatacube/restcube:latest91870111837c
tiff@4.0.9-5ubuntu0.2
4.0.9-5ubuntu0.8
1
opendatacube/wms:latest1b90cdf68831
tiff@4.0.9-5ubuntu0.2
4.0.9-5ubuntu0.8
1
openelevation/open-elevation:latest82fb21612e86
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.6
1
openkm/openkm-ce:6.3.113bc465a7461b
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.6
1
opsmx11/issuegen:v2.1.05c50ca123d88
tiff@4.0.3-7ubuntu0.9
4.0.3-7ubuntu0.11+esm5
1
photoprism/photoprism:220629-jammy2954334adbda
tiff@4.3.0-6
4.3.0-6ubuntu0.2
1
project2team4/react:latest3ff031a08887
tiff@4.1.0+git191117-2ubuntu0.20.04.2
4.1.0+git191117-2ubuntu0.20.04.6
1
scrapinghub/splash:3.4.1a5f89bc84606
tiff@4.0.9-5ubuntu0.3
4.0.9-5ubuntu0.8
1
seafileltd/seafile-mc:9.0.97ac833196f60
tiff@4.1.0+git191117-2ubuntu0.20.04.4
4.1.0+git191117-2ubuntu0.20.04.6
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.