StackRadar

CVE-2025-68973

High

Advisory

Published 28 Dec 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,054
of 17,828 indexed, latest versions
Container images
2,332
deployed by those charts
Fix available
5 of 5
affected packages

Red Hat Security Advisory: gnupg2 security update

Carried by container images the latest versions of 2,054 of 17,828 indexed charts deploy, on 2,332 images.

Affected packageAffected versionsFixed inImages
gnupg2deb2.1.11-6ubuntu2.1, 2.2.4-1ubuntu1, 2.2.4-1ubuntu1.1, 2.2.4-1ubuntu1.2+23 more2.1.11-6ubuntu2.1+esm3, 2.2.4-1ubuntu1.6+esm2, 2.2.19-3ubuntu2.5+esm1, 2.2.27-2+deb11u3+5 more1,898
gnupg2rpm2.0.22-5.el7_5, 2.2.9-1.el8, 2.2.20-2.el8, 2.2.20-3.el8_6+2 more0:2.0.22-5.el7_9.1, 0:2.2.20-4.el8_10, 0:2.3.3-5.el9_7335
gnupgdeb1.4.16-1ubuntu2.1, 1.4.16-1ubuntu2.4, 1.4.16-1ubuntu2.6, 1.4.20-1ubuntu3.1+2 more1.4.16-1ubuntu2.6+esm2, 1.4.20-1ubuntu3.3+esm376
gnupgapk2.4.5-r0, 2.4.7-r02.4.9-r015
gpg2rpm2.2.5-lp151.6.3.1, 2.2.5-lp152.8.8, 2.4.4-150600.3.9.12.4.4-150600.3.12.1, 2.5.16-1.19
OSV records
ALPINE-CVE-2025-68973DEBIAN-CVE-2025-68973RHSA-2026:0719RHSA-2026:0728RHSA-2026:1677RLSA-2026:0719RLSA-2026:0728UBUNTU-CVE-2025-68973DLA-4437-1openSUSE-SU-2026:10001-1SUSE-SU-2026:0215-1
Also known as
RHSA-2026:0935, RHSA-2026:0974, RHSA-2026:1014, RHSA-2026:1229, RHSA-2026:1230, RHSA-2026:1468, RHSA-2026:1705, USN-7946-1, USN-7946-2

Charts affected

2,054 by stars
ChartLatestAffected imagesRadar Score
keycloakxzaks2.2.01 of 1See more

keycloakx zaks 2.2.0

1 of the 1 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
gnupg2@2.2.20-3.el8_6
0:2.2.20-4.el8_10

Open the chart page →

6,027
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3

Open the chart page →

1,839
posthogzeet0.23.21 of 9See more

posthog zeet 0.23.2

1 of the 9 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.19.07a85f522c5bc
gnupg2@2.2.20-3.el8_6
0:2.2.20-4.el8_10

Open the chart page →

3,702
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
gnupg2@2.2.4-1ubuntu1.4
2.2.4-1ubuntu1.6+esm2
yandex/clickhouse-server:21.3.204eccfffb01d7
gnupg2@2.2.19-3ubuntu2.1
2.2.19-3ubuntu2.5+esm1

Open the chart page →

9,340

Container images carrying it

2,332 by charts deploying them

A fixed version is listed for 5 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
microslac/teams:latest0f75997fcbe5
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
microslac/users:latest216ea6832a56
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
middlewareeng/middleware:0.3.1747d880812f1
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
mide/minecraft-overviewer:latest4eee0dcb715f
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
1
milvusdb/etcd:3.5.5-r2102aac62827b
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
1
milvusdb/etcd:3.5.25-r1fededb2f2d63
gnupg2@2.2.27-3ubuntu2.4
2.2.27-3ubuntu2.5
1
milvusdb/milvus:v2.2.13a3a55e1c1497
gnupg2@2.2.19-3ubuntu2.1
2.2.19-3ubuntu2.5+esm1
1
minio/mc:RELEASE.2021-02-14T04-28-06Z2a374c124d44
gnupg2@2.2.20-2.el8
0:2.2.20-4.el8_10
1
minio/mc:RELEASE.2022-05-09T04-08-26Z4b415310d8d0
gnupg2@2.2.20-2.el8
0:2.2.20-4.el8_10
1
minio/minio:RELEASE.2022-01-04T07-41-07Z1484c87239ea
gnupg2@2.2.20-2.el8
0:2.2.20-4.el8_10
1
minio/minio:RELEASE.2021-02-14T04-01-33Zbd11edda91f3
gnupg2@2.2.20-2.el8
0:2.2.20-4.el8_10
1
minio/minio:RELEASE.2023-01-12T02-06-16Zfc6bedc99355
gnupg2@2.2.20-3.el8_6
0:2.2.20-4.el8_10
1
minio/operator:v5.0.9170b154d2c61
gnupg2@2.2.20-3.el8_6
0:2.2.20-4.el8_10
1
minio/operator:v4.1.02adc5be088f5
gnupg2@2.2.20-2.el8
0:2.2.20-4.el8_10
1
mintproject/graphql-engine:305c0dbeba1878eafe348f21fc300fbfc017d9dc83aade2c1855
gnupg2@2.2.19-3ubuntu2.1
2.2.19-3ubuntu2.5+esm1
1
mintproject/model-catalog-fastapi:7dd88dc5bf1fe6a6d4703ea0a077afee45cb256102260d20a21f
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
miqm/session-scaler:0.1.0c5c211717d9b
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
mishtinetwork/operator:latestbb3fe67a5f7c
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
1
mlikiowa/napcat-docker:latest2cc70b45244a
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5
1
mnaggar3396/python-app:latest371d8ed84b15
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
1
molynx/planner:v1441c9f52f092
gnupg2@2.2.27-2+deb11u1
2.2.27-2+deb11u3
1
mondata/mlflow:v2.3.0.s3.gc6f94c6caf8bf
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
1
moreillon/api-proxy:latestd7d4a5463525
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
moreillon/camera-viewer:lateste418cc694bd5
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
moreillon/face-recognition-fastapi:x86bacb2ddd8394
gnupg2@2.2.27-2
2.2.27-2+deb11u3
1
moreillon/food-manager:lateste8fd856e593d
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
moreillon/mqtt-logger-front:50030b8bfc4d12db1d3e
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
1
moreillon/user-manager-front:v5.1.06597e6b98d21
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
moreillon/user-manager-mongoose:v5.0.1d2ee0423b797
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
mozilla/syncstorage-rs:0.15.893752877dced
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
1
mshanley80/httpbin2022:latest5b189a70c0fb
gnupg2@2.2.19-3ubuntu2.2
2.2.19-3ubuntu2.5+esm1
1
muhammedgamal/fp23:latest74b4cd69b6fa
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
muluder/prograncontrollermcord:0.1.843b597a93da7
gnupg@1.4.20-1ubuntu3.1
1.4.20-1ubuntu3.3+esm3
1
murtazashah46/helmfile:latest4d11726cf803
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
mvance/unbound:1.20.04bf67b567f39
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
mvance/unbound:1.22.076906da36d18
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
1
n22107670/sample-app:0.4.08f3072db7aeb
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
1
nathanielvarona/pritunl-slack-app:0.1.10b746a34e5597
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
1
nelssec/qualys-agent-bootstrapper:v2.1.05e471f0cdeaa
gnupg2@2.2.27-3ubuntu2.4
2.2.27-3ubuntu2.5
1
neoskop/papergirl:3.2.67f52b5949f03
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
1
netbirdio/management:0.45.10c9994b393ea
gnupg2@2.4.4-2ubuntu17.2
2.4.4-2ubuntu17.4
1
netbirdio/management:0.60.252682e5f48f9
gnupg2@2.4.4-2ubuntu17.3
2.4.4-2ubuntu17.4
1
netbirdio/management:0.46.0b0adc4ad4ec6
gnupg2@2.4.4-2ubuntu17.2
2.4.4-2ubuntu17.4
1
netboxcommunity/netbox:v3.2.83d652dca5351
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5
1
nethermind/nethermind:1.14.615517708c3b6
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5
1
nethermind/nethermind:1.31.893e57917371a
gnupg2@2.4.4-2ubuntu17.2
2.4.4-2ubuntu17.4
1
nethermind/nethermind:1.31.9aeca3b55bda5
gnupg2@2.4.4-2ubuntu17.2
2.4.4-2ubuntu17.4
1
netrisai/controller-grpc:4.6.0.00753178bf173c2
gnupg2@2.2.19-3ubuntu2.4
2.2.19-3ubuntu2.5+esm1
1
netrisai/controller-telescope:4.6.0.00414d82948a8b2
gnupg2@2.2.19-3ubuntu2.4
2.2.19-3ubuntu2.5+esm1
1
netrisai/controller-telescope-notifier:3.0.455e826ef9a5d
gnupg2@2.2.19-3ubuntu2.2
2.2.19-3ubuntu2.5+esm1
1

syft 1.42.1 · advisories as of 22 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.