StackRadar

CVE-2022-48281

Medium

Advisory

Published 23 Jan 2023In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.004
37th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
224
of 17,781 indexed, latest versions
Container images
183
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: libtiff security update

Carried by container images the latest versions of 224 of 17,781 indexed charts deploy, on 183 images.

Affected packageAffected versionsFixed inImages
tiffdeb4.0.3-7ubuntu0.9, 4.0.6-1ubuntu0.2, 4.0.6-1ubuntu0.4, 4.0.6-1ubuntu0.5+23 more4.0.3-7ubuntu0.11+esm6, 4.0.6-1ubuntu0.8+esm9, 4.0.9-5ubuntu0.10+esm2, 4.1.0+git191117-2~deb10u6+2 more175
libtiffrpm4.0.9-17.el8, 4.0.9-18.el80:4.0.9-28.el8_85
tiffapk4.4.0-r14.4.0-r23
OSV records
ALPINE-CVE-2022-48281RHSA-2023:3827UBUNTU-CVE-2022-48281DLA-3297-1
Also known as
USN-5841-1, USN-6290-1

Charts affected

224 by stars
ChartLatestAffected imagesRadar Score
myfirstchartstacksimplify-helm-charts-repo-vp0.2.01 of 1See more

myfirstchart stacksimplify-helm-charts-repo-vp 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6

Open the chart page →

1,138
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
libtiff@4.0.9-18.el8
0:4.0.9-28.el8_8

Open the chart page →

28,165
nordmart-reviewstakaterVerified publisher0.0.61 of 3See more

nordmart-review stakater 0.0.6

1 of the 3 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
tiff@4.1.0+git191117-2~deb10u4
4.1.0+git191117-2~deb10u6

Open the chart page →

11,554
nordmart-review-instancestakaterVerified publisher1.0.01 of 3See more

nordmart-review-instance stakater 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
stakater/stakater-nordmart-review-ui:1.0.143f4926eedc74
tiff@4.1.0+git191117-2~deb10u4
4.1.0+git191117-2~deb10u6

Open the chart page →

11,554
myfirstchartstarlingappsVerified publisher0.2.01 of 1See more

myfirstchart starlingapps 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6

Open the chart page →

1,138
mybbsudermanjr0.1.01 of 3See more

mybb sudermanjr 0.1.0

1 of the 3 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
library/nginx:1.176fff55753e3b
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6

Open the chart page →

2,157
bisc-taalhuizentaalhuisen-frontend0.1.21 of 1See more

bisc-taalhuizen taalhuisen-frontend 0.1.2

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/bisc-frontend:latestd8a0334cddfc
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6

Open the chart page →

1,537
taalhuizen-servicetaalhuizen-service1.0.01 of 3See more

taalhuizen-service taalhuizen-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/taalhuizen-service-nginx:latest0bbaa7487c63
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6

Open the chart page →

7,480
tensor_apptensor-app0.2.22 of 3See more

tensor_app tensor-app 0.2.2

2 of the 3 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
xeladock/mysql_dns:latest4baf531453f1
tiff@4.3.0-6
4.3.0-6ubuntu0.5
xeladock/nginx2:latestc259a67b1dff
tiff@4.3.0-6
4.3.0-6ubuntu0.5

Open the chart page →

17,461
custom-charttesting-chartVerified publisher0.1.01 of 1See more

custom-chart testing-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
library/nginx:1.176fff55753e3b
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6

Open the chart page →

1,138
vehicle-dashboardtest-vehi-dash0.1.02 of 7See more

vehicle-dashboard test-vehi-dash 0.1.0

2 of the 7 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
samajh/alprbackend:latestea742b4372ad
tiff@4.1.0+git191117-2~deb10u4
4.1.0+git191117-2~deb10u6
samajh/alprfrontend:latest05ef4fddbb75
tiff@4.1.0+git191117-2~deb10u4
4.1.0+git191117-2~deb10u6

Open the chart page →

20,270
myfirstchartthegaurangk0.1.01 of 1See more

myfirstchart thegaurangk 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginx:0.1.0205961b09a80
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6

Open the chart page →

1,138
myfirstchartthelastnig-helm-charts-repo0.2.01 of 1See more

myfirstchart thelastnig-helm-charts-repo 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6

Open the chart page →

1,138
myfirstcharttimk70-helm-charts-repository0.2.01 of 1See more

myfirstchart timk70-helm-charts-repository 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6

Open the chart page →

1,138
pock-helm-charttinote-chart0.1.01 of 3See more

pock-helm-chart tinote-chart 0.1.0

1 of the 3 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
nginx/nginx-ingress:1.11.1eb5b4fd73325
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6

Open the chart page →

6,881
trouw-servicetrouw-service1.0.01 of 3See more

trouw-service trouw-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/trouw-service-nginx:latest86fe293b99a2
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6

Open the chart page →

7,510
verhuis-serviceverhuis-service1.0.01 of 3See more

verhuis-service verhuis-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verhuis-service-nginx:latest4473ce50435e
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6

Open the chart page →

7,510
verzoekconversieserviceverzoekconversieservice1.0.01 of 3See more

verzoekconversieservice verzoekconversieservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekconversieservice-nginx:latestf449b82ce9d6
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6

Open the chart page →

7,528
verzoekregistratiecomponentverzoekregistratiecomponent1.1.01 of 4See more

verzoekregistratiecomponent verzoekregistratiecomponent 1.1.0

1 of the 4 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekregistratiecomponent-nginx:lateste0c5f8a95098
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6

Open the chart page →

7,429
verzoektypecatalogusverzoektypecatalogus1.1.01 of 4See more

verzoektypecatalogus verzoektypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoektypecatalogus-nginx:latest42c75ea8082c
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6

Open the chart page →

7,429
genievhdirkVerified publisher0.1.31 of 1See more

genie vhdirk 0.1.3

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
stanfordoval/almond-server:latest1a63cdccedaf
tiff@4.1.0+git191117-2~deb10u4
4.1.0+git191117-2~deb10u6

Open the chart page →

3,129
weather-chartweather-web-app0.1.01 of 1See more

weather-chart weather-web-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
zohardocker12/weather_app_flask:latestb86d60dbb68d
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6

Open the chart page →

2,670
myfirstchartww-helm-charts-repo0.1.01 of 1See more

myfirstchart ww-helm-charts-repo 0.1.0

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginx:0.1.0205961b09a80
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6

Open the chart page →

1,138
myfirstchartzikilabVerified publisher0.2.01 of 1See more

myfirstchart zikilab 0.2.0

1 of the 1 container images this version deploys carry CVE-2022-48281.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6

Open the chart page →

1,138

Container images carrying it

183 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/conductionnl/verzoekconversieservice-nginx:latestf449b82ce9d6
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/verzoekregistratiecomponent-nginx:lateste0c5f8a95098
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/verzoektypecatalogus-nginx:latest42c75ea8082c
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/waardepapieren-balie-nginx:latest2eb073ab8b83
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/conductionnl/waardepapieren-register-nginx:latest3fba727a3cc1
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
ghcr.io/daocloud/dao-2048:v1.4.121275bc02f75
tiff@4.4.0-r1
4.4.0-r2
1
ghcr.io/grofers/legend:0.1d6e901ad0ebd
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.9
1
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
libtiff@4.0.9-17.el8
0:4.0.9-28.el8_8
1
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
tiff@4.1.0+git191117-2ubuntu0.20.04.2
4.1.0+git191117-2ubuntu0.20.04.9
1
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
tiff@4.1.0+git191117-2ubuntu0.20.04.2
4.1.0+git191117-2ubuntu0.20.04.9
1
ghcr.io/k8s-at-home/lidarr:v1.0.0.225554ebc1f90963
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.9
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
tiff@4.3.0-6
4.3.0-6ubuntu0.5
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.9
1
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
tiff@4.1.0+git191117-2ubuntu0.20.04.2
4.1.0+git191117-2ubuntu0.20.04.9
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.9
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.9
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.9
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.9
1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
tiff@4.1.0+git191117-2ubuntu0.20.04.1
4.1.0+git191117-2ubuntu0.20.04.9
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
tiff@4.0.9-5ubuntu0.4
4.0.9-5ubuntu0.10+esm2
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.9
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
tiff@4.1.0+git191117-2ubuntu0.20.04.5
4.1.0+git191117-2ubuntu0.20.04.9
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
tiff@4.1.0+git191117-2ubuntu0.20.04.5
4.1.0+git191117-2ubuntu0.20.04.9
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
tiff@4.1.0+git191117-2ubuntu0.20.04.3
4.1.0+git191117-2ubuntu0.20.04.9
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
libtiff@4.0.9-18.el8
0:4.0.9-28.el8_8
1
quay.io/fairwinds/yelb-appserver:v0.6.0fae21f06131f
tiff@4.1.0+git191117-2~deb10u3
4.1.0+git191117-2~deb10u6
1
quay.io/fairwinds/yelb-ui:v0.1.05ac114e567ed
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
libtiff@4.0.9-17.el8
0:4.0.9-28.el8_8
1
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
tiff@4.1.0+git191117-2~deb10u2
4.1.0+git191117-2~deb10u6
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
tiff@4.0.6-1ubuntu0.6
4.0.6-1ubuntu0.8+esm9
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
libtiff@4.0.9-18.el8
0:4.0.9-28.el8_8
1
registry.gitlab.com/open-forms/design-catalogue:latestf21f19346b29
tiff@4.1.0+git191117-2~deb10u1
4.1.0+git191117-2~deb10u6
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.