StackRadar

CVE-2022-48281

Medium

Advisory

Published 23 Jan 2023In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.004
37th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
224
of 17,781 indexed, latest versions
Container images
183
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: libtiff security update

Carried by container images the latest versions of 224 of 17,781 indexed charts deploy, on 183 images.

Affected packageAffected versionsFixed inImages
tiffdeb4.0.3-7ubuntu0.9, 4.0.6-1ubuntu0.2, 4.0.6-1ubuntu0.4, 4.0.6-1ubuntu0.5+23 more4.0.3-7ubuntu0.11+esm6, 4.0.6-1ubuntu0.8+esm9, 4.0.9-5ubuntu0.10+esm2, 4.1.0+git191117-2~deb10u6+2 more175
libtiffrpm4.0.9-17.el8, 4.0.9-18.el80:4.0.9-28.el8_85
tiffapk4.4.0-r14.4.0-r23
OSV records
ALPINE-CVE-2022-48281RHSA-2023:3827UBUNTU-CVE-2022-48281DLA-3297-1
Also known as
USN-5841-1, USN-6290-1

Charts affected

224 by stars
ChartLatestAffected imagesRadar Score
myfirstchartstacksimplify-helm-charts-repo-vp0.2.01 of 1See more

myfirstchart stacksimplify-helm-charts-repo-vp 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6

Open the chart page →

1,138
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
libtiff@4.0.9-18.el8
0:4.0.9-28.el8_8

Open the chart page →

28,165
nordmart-reviewstakaterVerified publisher0.0.61 of 3See more

nordmart-review stakater 0.0.6

1 of the 3 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
tiff@4.1.0+git191117-2~deb10u4
4.1.0+git191117-2~deb10u6

Open the chart page →

11,554
nordmart-review-instancestakaterVerified publisher1.0.01 of 3See more

nordmart-review-instance stakater 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
tiff@4.1.0+git191117-2~deb10u4
4.1.0+git191117-2~deb10u6

Open the chart page →

11,554
myfirstchartstarlingappsVerified publisher0.2.01 of 1See more

myfirstchart starlingapps 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6

Open the chart page →

1,138
mybbsudermanjr0.1.01 of 3See more

mybb sudermanjr 0.1.0

1 of the 3 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
library/nginx:1.176fff55753e3b
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6

Open the chart page →

2,157
bisc-taalhuizentaalhuisen-frontend0.1.21 of 1See more

bisc-taalhuizen taalhuisen-frontend 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/bisc-frontend:latestd8a0334cddfc
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6

Open the chart page →

1,537
taalhuizen-servicetaalhuizen-service1.0.01 of 3See more

taalhuizen-service taalhuizen-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/taalhuizen-service-nginx:latest0bbaa7487c63
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6

Open the chart page →

7,480
tensor_apptensor-app0.2.22 of 3See more

tensor_app tensor-app 0.2.2

2 of the 3 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
xeladock/mysql_dns:latest4baf531453f1
tiff@4.3.0-6
4.3.0-6ubuntu0.5
xeladock/nginx2:latestc259a67b1dff
tiff@4.3.0-6
4.3.0-6ubuntu0.5

Open the chart page →

17,461
custom-charttesting-chartVerified publisher0.1.01 of 1See more

custom-chart testing-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
library/nginx:1.176fff55753e3b
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6

Open the chart page →

1,138
vehicle-dashboardtest-vehi-dash0.1.02 of 7See more

vehicle-dashboard test-vehi-dash 0.1.0

2 of the 7 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
samajh/alprbackend:latestea742b4372ad
tiff@4.1.0+git191117-2~deb10u4
4.1.0+git191117-2~deb10u6
samajh/alprfrontend:latest05ef4fddbb75
tiff@4.1.0+git191117-2~deb10u4
4.1.0+git191117-2~deb10u6

Open the chart page →

20,270
myfirstchartthegaurangk0.1.01 of 1See more

myfirstchart thegaurangk 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginx:0.1.0205961b09a80
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6

Open the chart page →

1,138
myfirstchartthelastnig-helm-charts-repo0.2.01 of 1See more

myfirstchart thelastnig-helm-charts-repo 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6

Open the chart page →

1,138
myfirstcharttimk70-helm-charts-repository0.2.01 of 1See more

myfirstchart timk70-helm-charts-repository 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6

Open the chart page →

1,138
pock-helm-charttinote-chart0.1.01 of 3See more

pock-helm-chart tinote-chart 0.1.0

1 of the 3 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
nginx/nginx-ingress:1.11.1eb5b4fd73325
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6

Open the chart page →

6,881
trouw-servicetrouw-service1.0.01 of 3See more

trouw-service trouw-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/trouw-service-nginx:latest86fe293b99a2
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6

Open the chart page →

7,510
verhuis-serviceverhuis-service1.0.01 of 3See more

verhuis-service verhuis-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verhuis-service-nginx:latest4473ce50435e
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6

Open the chart page →

7,510
verzoekconversieserviceverzoekconversieservice1.0.01 of 3See more

verzoekconversieservice verzoekconversieservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekconversieservice-nginx:latestf449b82ce9d6
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6

Open the chart page →

7,528
verzoekregistratiecomponentverzoekregistratiecomponent1.1.01 of 4See more

verzoekregistratiecomponent verzoekregistratiecomponent 1.1.0

1 of the 4 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekregistratiecomponent-nginx:lateste0c5f8a95098
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6

Open the chart page →

7,429
verzoektypecatalogusverzoektypecatalogus1.1.01 of 4See more

verzoektypecatalogus verzoektypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoektypecatalogus-nginx:latest42c75ea8082c
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6

Open the chart page →

7,429
genievhdirkVerified publisher0.1.31 of 1See more

genie vhdirk 0.1.3

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
stanfordoval/almond-server:latest1a63cdccedaf
tiff@4.1.0+git191117-2~deb10u4
4.1.0+git191117-2~deb10u6

Open the chart page →

3,129
weather-chartweather-web-app0.1.01 of 1See more

weather-chart weather-web-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
zohardocker12/weather_app_flask:latestb86d60dbb68d
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6

Open the chart page →

2,670
myfirstchartww-helm-charts-repo0.1.01 of 1See more

myfirstchart ww-helm-charts-repo 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginx:0.1.0205961b09a80
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6

Open the chart page →

1,138
myfirstchartzikilabVerified publisher0.2.01 of 1See more

myfirstchart zikilab 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6

Open the chart page →

1,138

Container images carrying it

183 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
seafileltd/seafile-mc:9.0.97ac833196f60
tiff@4.1.0+git191117-2ubuntu0.20.04.4
4.1.0+git191117-2ubuntu0.20.04.9
1
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.9
1
seldonio/seldon-request-logger:1.11.24e985d2006a8
libtiff@4.0.9-18.el8
0:4.0.9-28.el8_8
1
shinobisystems/shinobi:dev3ca746937856
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
shinobisystems/shinobi:latestc2f5ce2e1067
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
sismics/docs:v1.10f4b0ef019cf1
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.10+esm2
1
snipe/snipe-it:v6.0.1455fb7636a98c
tiff@4.1.0+git191117-2ubuntu0.20.04.5
4.1.0+git191117-2ubuntu0.20.04.9
1
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.9
1
stacksimplify/kube-nginxapp1:1.0.0ead648280067
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6
1
stacksimplify/kube-nginxapp2:1.0.0ce2b15139aca
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6
1
stanfordoval/almond-server:latest1a63cdccedaf
tiff@4.1.0+git191117-2~deb10u4
4.1.0+git191117-2~deb10u6
1
stashapp/stash:latest24dbd7607174
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.9
1
tensorflow/tensorflow:1.6.0-devel1e3172090703
tiff@4.0.6-1ubuntu0.2
4.0.6-1ubuntu0.8+esm9
1
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
tiff@4.3.0-6ubuntu0.4
4.3.0-6ubuntu0.5
1
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
tiff@4.3.0-6ubuntu0.3
4.3.0-6ubuntu0.5
1
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
tiff@4.3.0-6
4.3.0-6ubuntu0.5
1
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
tiff@4.0.6-1ubuntu0.2
4.0.6-1ubuntu0.8+esm9
1
tooljet/tooljet-ce:v1.18.0c85a4720e42e
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
vikunja/frontend:0.17.0863a426a8e49
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
vinanrra/7dtd-server:v0.4.4f9534490bd2b
tiff@4.0.9-5ubuntu0.9
4.0.9-5ubuntu0.10+esm2
1
weblate/weblate:3.11.3-182848df56ecd
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6
1
xeladock/mysql_dns:latest4baf531453f1
tiff@4.3.0-6
4.3.0-6ubuntu0.5
1
xeladock/nginx2:latestc259a67b1dff
tiff@4.3.0-6
4.3.0-6ubuntu0.5
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
tiff@4.1.0+git191117-2ubuntu0.20.04.2
4.1.0+git191117-2ubuntu0.20.04.9
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-6.0.899e9a090b516
tiff@4.3.0-6
4.3.0-6ubuntu0.5
1
zabbix/zabbix-web-service:ubuntu-6.0.8ee4baa872280
tiff@4.3.0-6
4.3.0-6ubuntu0.5
1
zammad/zammad-docker-compose:zammad-4.1.0-312808e2dfa810
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
zohardocker12/weather_app_flask:latestb86d60dbb68d
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/chaos-mesh/chaos-daemon:v2.5.1cf78fdf7403a
tiff@4.1.0+git191117-2~deb10u4
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/adresservice-nginx:latest849af80ab017
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/authorization-component-nginx:latest02d0644aa99b
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/bisc-frontend:latestd8a0334cddfc
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/brpservice-nginx:latest4db9b77c4425
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/eherkenning-ui-nginx:latestfcd2100d863f
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/grafregistratiecomponent-nginx:latestd0daf48dec68
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/instemmingservice-nginx:latesteeeb4e9f0485
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/landelijketabellencatalogus-nginx:lateste7076242888a
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/loggingcomponent-nginx:latestcee37e9cef09
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/logicservice-nginx:latest7c8ee08c591c
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/memo-component-nginx:latestfd28182f7ecf
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/notification-component-nginx:latestd53bda41ee3b
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/ocatiecatalogus-nginx:latestc46374fc8f32
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/orderregistratiecomponent-nginx:latest42acee4ab31c
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/procestypecatalogus-nginx:latestca6fc575a3ba
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/productenendienstencatalogus-nginx:latest4095e7207822
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/proto-component-commonground-nginx:latest5b1384e29b7d
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/review-component-nginx:latest5df5f92870a5
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/taalhuizen-service-nginx:latest0bbaa7487c63
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/trouw-service-nginx:latest86fe293b99a2
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/verhuis-service-nginx:latest4473ce50435e
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.