StackRadar

CVE-2025-68973

High

Advisory

Published 28 Dec 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,054
of 17,828 indexed, latest versions
Container images
2,332
deployed by those charts
Fix available
5 of 5
affected packages

Red Hat Security Advisory: gnupg2 security update

Carried by container images the latest versions of 2,054 of 17,828 indexed charts deploy, on 2,332 images.

Affected packageAffected versionsFixed inImages
gnupg2deb2.1.11-6ubuntu2.1, 2.2.4-1ubuntu1, 2.2.4-1ubuntu1.1, 2.2.4-1ubuntu1.2+23 more2.1.11-6ubuntu2.1+esm3, 2.2.4-1ubuntu1.6+esm2, 2.2.19-3ubuntu2.5+esm1, 2.2.27-2+deb11u3+5 more1,898
gnupg2rpm2.0.22-5.el7_5, 2.2.9-1.el8, 2.2.20-2.el8, 2.2.20-3.el8_6+2 more0:2.0.22-5.el7_9.1, 0:2.2.20-4.el8_10, 0:2.3.3-5.el9_7335
gnupgdeb1.4.16-1ubuntu2.1, 1.4.16-1ubuntu2.4, 1.4.16-1ubuntu2.6, 1.4.20-1ubuntu3.1+2 more1.4.16-1ubuntu2.6+esm2, 1.4.20-1ubuntu3.3+esm376
gnupgapk2.4.5-r0, 2.4.7-r02.4.9-r015
gpg2rpm2.2.5-lp151.6.3.1, 2.2.5-lp152.8.8, 2.4.4-150600.3.9.12.4.4-150600.3.12.1, 2.5.16-1.19
OSV records
ALPINE-CVE-2025-68973DEBIAN-CVE-2025-68973RHSA-2026:0719RHSA-2026:0728RHSA-2026:1677RLSA-2026:0719RLSA-2026:0728UBUNTU-CVE-2025-68973DLA-4437-1openSUSE-SU-2026:10001-1SUSE-SU-2026:0215-1
Also known as
RHSA-2026:0935, RHSA-2026:0974, RHSA-2026:1014, RHSA-2026:1229, RHSA-2026:1230, RHSA-2026:1468, RHSA-2026:1705, USN-7946-1, USN-7946-2

Charts affected

2,054 by stars
ChartLatestAffected imagesRadar Score
keycloakxzaks2.2.01 of 1See more

keycloakx zaks 2.2.0

1 of the 1 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
gnupg2@2.2.20-3.el8_6
0:2.2.20-4.el8_10

Open the chart page →

6,027
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3

Open the chart page →

1,839
posthogzeet0.23.21 of 9See more

posthog zeet 0.23.2

1 of the 9 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.19.07a85f522c5bc
gnupg2@2.2.20-3.el8_6
0:2.2.20-4.el8_10

Open the chart page →

3,702
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
gnupg2@2.2.4-1ubuntu1.4
2.2.4-1ubuntu1.6+esm2
yandex/clickhouse-server:21.3.204eccfffb01d7
gnupg2@2.2.19-3ubuntu2.1
2.2.19-3ubuntu2.5+esm1

Open the chart page →

9,340

Container images carrying it

2,332 by charts deploying them

A fixed version is listed for 5 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
dellcloud/pages:1.04d2eb25b9225
gnupg2@2.2.19-3ubuntu2
2.2.19-3ubuntu2.5+esm1
1
dellemc/csm-application-mobility-controller:v0.1.0148ada9060a9
gnupg2@2.2.20-3.el8_6
0:2.2.20-4.el8_10
1
dellemc/csm-application-mobility-velero-plugin:v0.1.0660cabd6d929
gnupg2@2.2.20-3.el8_6
0:2.2.20-4.el8_10
1
devopsgoofy/k8s-platform:latestad865312099f
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
devopshq/artifactory-cleanup:1.0.1830e093bffa91
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
dgraph/dgraph:v24.1.4b57fa31f9b7f
gnupg2@2.4.4-2ubuntu17.3
2.4.4-2ubuntu17.4
1
dgraziotin/nginx-webdav-nononsense:1.23.138f2de42bed0
gnupg2@2.2.19-3ubuntu2.2
2.2.19-3ubuntu2.5+esm1
1
diygod/rsshub:2025-11-097a6312cac0d5
gnupg2@2.2.40-1.1+deb12u1
2.2.40-1.1+deb12u2
1
djjudas21/alertify:0.1.0ba22be670c37
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
dniel/api-posts:master45a667852f2a
gnupg2@2.2.4-1ubuntu1.2
2.2.4-1ubuntu1.6+esm2
1
dobtc/bitcoin:25.1a870f7cb1105
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
domainmod/domainmod:4.23.04017bfe4c597
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
dongjiang1989/lxcfs:v6.0.34bf9ae391948
gnupg2@2.2.19-3ubuntu2.5
2.2.19-3ubuntu2.5+esm1
1
douz/helpdesk:latest4384103d0219
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
1
dragonflyoss/client:v0.1.82edf3e921f4e0
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
dremio/dremio-oss:24.1.080ed2e3b7c43
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5
1
drorivry4/rego:lateste035d49b15ca
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
drpcorg/dshackle:0.54.08858fae1859d
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5
1
dserio83/velero-api:0.3.16b3d9115fee2
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
dserio83/velero-watchdog:0.1.8d5deae589229
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
duck1123/astral:latestf4d5b6526c2a
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
1
duck1123/cert-downloader:latest0e29f19fa67c
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5
1
duck1123/lnd-fileserver:latest9d6fb247b714
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5
1
duck1123/me.untethr.nostr-relay:0.2.1119fc5d4cbfb
gnupg2@2.2.27-2+deb11u1
2.2.27-2+deb11u3
1
dzikoysk/reposilite:3.5.264128c2d7a6ba
gnupg2@2.4.4-2ubuntu17.3
2.4.4-2ubuntu17.4
1
easypi/openrefine:3.7.0d2950a36a576
gnupg2@2.2.27-2+deb11u1
2.2.27-2+deb11u3
1
easysoft/quickon-zentao:18.5592ad5df1f8b
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
1
eclipseaerios/iota-messages-api:lateste7f5ba0bc64d
gnupg2@2.4.7-21+b3
2.4.7-21+deb13u1
1
eclipseaerios/openldap:2.6.30208743f315e
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
1
eclipseaerios/self-awareness-power-consumption:1.3.3c8af377c709f
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
1
eclipseaerios/self-orchestrator:1.2.08b123bec5679
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
egorz/netology-diploma-web-app:4.05627a54bd1ad
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
elastic/apm-server:7.17.6c7a1c63257d0
gnupg2@2.2.19-3ubuntu2.1
2.2.19-3ubuntu2.5+esm1
1
elastictranscoder/media:627e21dc963ab3858c6b
gnupg2@2.2.4-1ubuntu1.3
2.2.4-1ubuntu1.6+esm2
1
elastictranscoder/media-storage:f6d861a026208b8c2359
gnupg2@2.2.4-1ubuntu1.3
2.2.4-1ubuntu1.6+esm2
1
elastictranscoder/transcoder:627e21dcb4a0327029e6
gnupg2@2.2.4-1ubuntu1.4
2.2.4-1ubuntu1.6+esm2
1
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
gnupg2@2.2.4-1ubuntu1.4
2.2.4-1ubuntu1.6+esm2
1
elyra/kernel-image-puller:3.2.2c922f1f1646a
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
1
emberstack/sftp:5.1.711d81a5df909b
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
1
empathyco/elasticsearch:7.17.2-memlock03e724e41eeb
gnupg2@2.2.19-3ubuntu2.1
2.2.19-3ubuntu2.5+esm1
1
emqx/ecp-ui:2.5.1e33e9816f147
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
enclavenetworks/enclave:latest0a99759300d1
gnupg2@2.2.19-3ubuntu2.4
2.2.19-3ubuntu2.5+esm1
1
engrmth/bnkr:2.1.06d8464e6f0e8
gnupg2@2.2.19-3ubuntu2.1
2.2.19-3ubuntu2.5+esm1
1
enix/san-iscsi-csi:v4.0.2f963da81ecf7
gnupg2@2.2.4-1ubuntu1.4
2.2.4-1ubuntu1.6+esm2
1
envoyproxy/envoy:v1.30.92956bd9de830
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5
1
envoyproxy/envoy:v1.33.056da5afd7df3
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5
1
envoyproxy/envoy:v1.31-latestcaa5b411be16
gnupg2@2.2.27-3ubuntu2.4
2.2.27-3ubuntu2.5
1
envoyproxy/envoy:v1.30.1e596fda6a0ce
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5
1
envoyproxy/envoy:v1.18.2e8b37c1d7578
gnupg2@2.2.4-1ubuntu1.4
2.2.4-1ubuntu1.6+esm2
1
eqalpha/keydb:x86_64_v6.3.2fd9351ce27a7
gnupg2@2.2.4-1ubuntu1.6
2.2.4-1ubuntu1.6+esm2
1

syft 1.42.1 · advisories as of 22 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.