StackRadar

CVE-2025-68973

High

Advisory

Published 28 Dec 2025In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.001
4th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,054
of 17,828 indexed, latest versions
Container images
2,332
deployed by those charts
Fix available
5 of 5
affected packages

Red Hat Security Advisory: gnupg2 security update

Carried by container images the latest versions of 2,054 of 17,828 indexed charts deploy, on 2,332 images.

Affected packageAffected versionsFixed inImages
gnupg2deb2.1.11-6ubuntu2.1, 2.2.4-1ubuntu1, 2.2.4-1ubuntu1.1, 2.2.4-1ubuntu1.2+23 more2.1.11-6ubuntu2.1+esm3, 2.2.4-1ubuntu1.6+esm2, 2.2.19-3ubuntu2.5+esm1, 2.2.27-2+deb11u3+5 more1,898
gnupg2rpm2.0.22-5.el7_5, 2.2.9-1.el8, 2.2.20-2.el8, 2.2.20-3.el8_6+2 more0:2.0.22-5.el7_9.1, 0:2.2.20-4.el8_10, 0:2.3.3-5.el9_7335
gnupgdeb1.4.16-1ubuntu2.1, 1.4.16-1ubuntu2.4, 1.4.16-1ubuntu2.6, 1.4.20-1ubuntu3.1+2 more1.4.16-1ubuntu2.6+esm2, 1.4.20-1ubuntu3.3+esm376
gnupgapk2.4.5-r0, 2.4.7-r02.4.9-r015
gpg2rpm2.2.5-lp151.6.3.1, 2.2.5-lp152.8.8, 2.4.4-150600.3.9.12.4.4-150600.3.12.1, 2.5.16-1.19
OSV records
ALPINE-CVE-2025-68973DEBIAN-CVE-2025-68973RHSA-2026:0719RHSA-2026:0728RHSA-2026:1677RLSA-2026:0719RLSA-2026:0728UBUNTU-CVE-2025-68973DLA-4437-1openSUSE-SU-2026:10001-1SUSE-SU-2026:0215-1
Also known as
RHSA-2026:0935, RHSA-2026:0974, RHSA-2026:1014, RHSA-2026:1229, RHSA-2026:1230, RHSA-2026:1468, RHSA-2026:1705, USN-7946-1, USN-7946-2

Charts affected

2,054 by stars
ChartLatestAffected imagesRadar Score
keycloakxzaks2.2.01 of 1See more

keycloakx zaks 2.2.0

1 of the 1 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
gnupg2@2.2.20-3.el8_6
0:2.2.20-4.el8_10

Open the chart page →

6,027
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3

Open the chart page →

1,839
posthogzeet0.23.21 of 9See more

posthog zeet 0.23.2

1 of the 9 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.19.07a85f522c5bc
gnupg2@2.2.20-3.el8_6
0:2.2.20-4.el8_10

Open the chart page →

3,702
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2025-68973.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
gnupg2@2.2.4-1ubuntu1.4
2.2.4-1ubuntu1.6+esm2
yandex/clickhouse-server:21.3.204eccfffb01d7
gnupg2@2.2.19-3ubuntu2.1
2.2.19-3ubuntu2.5+esm1

Open the chart page →

9,340

Container images carrying it

2,332 by charts deploying them

A fixed version is listed for 5 of the 5 affected packages.

Container imageDigestPackageFixed inUsed by
grafana/alloy:v1.8.17790f6f7fbd8
gnupg2@2.4.4-2ubuntu17.2
2.4.4-2ubuntu17.4
2
grafana/promtail:3.0.0d3de3da9431c
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
2
hjacobs/kube-downscaler:23.2.0-6-gc9b88e84b2147f47425
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
2
honestica/kube-iptables-tailer:master-91a393242fb939
gnupg2@2.2.19-3ubuntu2.1
2.2.19-3ubuntu2.5+esm1
2
hookiesolutions/webhookie:latest0629694246ba
gnupg2@2.2.19-3ubuntu2.1
2.2.19-3ubuntu2.5+esm1
2
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
gnupg2@2.2.19-3ubuntu2.1
2.2.19-3ubuntu2.5+esm1
2
ilum/mongodb:6.0.542b6d774c37d
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
2
interlayhq/interbtc:latesta66d0e35e70f
gnupg2@2.2.19-3ubuntu2.5
2.2.19-3ubuntu2.5+esm1
2
interlayhq/interbtc-clients:vault-masterc3e311de67da
gnupg2@2.2.19-3ubuntu2.1
2.2.19-3ubuntu2.5+esm1
2
iomesh/node-disk-exporter:1.8.0f03148764f38
gnupg2@2.2.19-3ubuntu2.1
2.2.19-3ubuntu2.5+esm1
2
istio/examples-bookinfo-reviews-v1:1.15.040e8aba77c1b
gnupg@1.4.20-1ubuntu3.3
1.4.20-1ubuntu3.3+esm3
2
istio/examples-bookinfo-reviews-v1:1.14.0ee156b8aefd6
gnupg@1.4.20-1ubuntu3.3
1.4.20-1ubuntu3.3+esm3
2
istio/examples-bookinfo-reviews-v2:1.15.0e86d247b7ac2
gnupg@1.4.20-1ubuntu3.3
1.4.20-1ubuntu3.3+esm3
2
istio/examples-bookinfo-reviews-v2:1.14.0eab80bcd2132
gnupg@1.4.20-1ubuntu3.3
1.4.20-1ubuntu3.3+esm3
2
istio/examples-bookinfo-reviews-v3:1.14.01e37fca43550
gnupg@1.4.20-1ubuntu3.3
1.4.20-1ubuntu3.3+esm3
2
istio/examples-bookinfo-reviews-v3:1.15.0e454cab754cf
gnupg@1.4.20-1ubuntu3.3
1.4.20-1ubuntu3.3+esm3
2
istio/proxyv2:1.18.0757d28c24100
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5
2
istio/proxyv2:1.10.3a78b7a165744
gnupg2@2.2.4-1ubuntu1.4
2.2.4-1ubuntu1.6+esm2
2
jenkins/jenkins:2.426.1-jdk11b470bcdc4ecd
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
2
kodekloud/examplevotingapp_vote:v13a856afb02a3
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
2
kurento/kurento-media-server:latest03c0d34d0828
gnupg2@2.4.4-2ubuntu17.3
2.4.4-2ubuntu17.4
2
langgenius/dify-sandbox:0.2.009b7e8705673
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
2
ldapaccountmanager/lam:8.0.1d46cf25d1dda
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
2
library/adminer:4.8.1-standalone34d37131366c
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
2
library/cassandra:3.11.65aa8400b4b3b
gnupg2@2.2.4-1ubuntu1.2
2.2.4-1ubuntu1.6+esm2
2
library/cassandra:4.1.37cbcec0086ac
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5
2
library/elasticsearch:7.17.35e6ac15bf6a5
gnupg2@2.2.19-3ubuntu2.1
2.2.19-3ubuntu2.5+esm1
2
library/mariadb:10.8.30abf60f81588
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5
2
library/mariadb:10.10334b315c10e5
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5
2
library/mariadb:12.0.2:12.0-noble607835cd628b
gnupg2@2.4.4-2ubuntu17.3
2.4.4-2ubuntu17.4
2
library/mariadb:11.3.2e101f9db3191
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5
2
library/mongo:5.041108d183e97
gnupg2@2.2.19-3ubuntu2.5
2.2.19-3ubuntu2.5+esm1
2
library/mongo:4.2.358b25d51baa1
gnupg2@2.2.4-1ubuntu1.2
2.2.4-1ubuntu1.6+esm2
2
library/neo4j:5.20.052d3dec8d455
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
2
library/neo4j:4.3.2-enterprise56a9453c4064
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
2
library/nginx:1.27.098f8ec75657d
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
2
library/nginx:1.24.0f6daac2445b0
gnupg2@2.2.27-2+deb11u2
2.2.27-2+deb11u3
2
library/phpmyadmin:5.2.16e75aa8f767c
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
2
library/postgres:16.109f23e02d766
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
2
library/postgres:16.24aea012537ed
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
2
library/postgres:18.06f3e42ad37de
gnupg2@2.4.7-21+b3
2.4.7-21+deb13u1
2
library/postgres:16.4e62fbf9d3e2b
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
2
library/python:3.7eedf63967cdb
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
2
library/rabbitmq:4.1.0-management935b3f84c1e4
gnupg2@2.4.4-2ubuntu17.2
2.4.4-2ubuntu17.4
2
library/rabbitmq:3.12.1-managementf020c06da226
gnupg2@2.2.27-3ubuntu2.1
2.2.27-3ubuntu2.5
2
library/redis:7.2.3a7cee7c8178f
gnupg2@2.2.40-1.1
2.2.40-1.1+deb12u2
2
library/redis:8.2.2f0957bcaa75f
gnupg2@2.2.40-1.1+deb12u1
2.2.40-1.1+deb12u2
2
library/ubuntu:16.04:xenial1f1a2d56de1d
gnupg@1.4.20-1ubuntu3.3
1.4.20-1ubuntu3.3+esm3
2
lightninglabs/lnd:v0.18.3-betaf86bbec4dfb3
gnupg@2.4.5-r0
2.4.9-r0
2
lightstep/collector:2021-01-26_23-02-36Z11c5569aaf3b
gnupg@1.4.20-1ubuntu3.3
1.4.20-1ubuntu3.3+esm3
2

syft 1.42.1 · advisories as of 22 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.