CVE-2025-7345
HighAdvisory
Published 8 Jul 2025In the index since 6 Sept 2026
- Severity
- High
- worst across findings
- CVSS
- 7.5
- base score, highest
- EPSS
- 0.012
- 65th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 207
- of 17,781 indexed, latest versions
- Container images
- 221
- deployed by those charts
- Fix available
- 2 of 2
- affected packages
Red Hat Security Advisory: gdk-pixbuf2 security update
Carried by container images the latest versions of 207 of 17,781 indexed charts deploy, on 221 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| gdk-pixbufdeb | 2.32.2-1ubuntu1.4, 2.32.2-1ubuntu1.5, 2.32.2-1ubuntu1.6, 2.36.11-2+15 more | 2.32.2-1ubuntu1.6+esm2, 2.36.11-2ubuntu0.1~esm2, 2.40.0+dfsg-3ubuntu0.5+esm1, 2.42.2+dfsg-1+deb11u4+3 more | 206 |
| gdk-pixbuf2rpm | 2.36.12-3.el7, 2.36.12-5.el8, 2.36.12-6.el8_10, 2.42.6-4.el9_4 | 0:2.36.12-4.el7_9, 0:2.36.12-7.el8_10, 0:2.42.6-6.el9_6 | 15 |
- OSV records
- DEBIAN-CVE-2025-7345RHSA-2025:12841RHSA-2025:13315RHSA-2025:14683UBUNTU-CVE-2025-7345DLA-4344-1
- Also known as
- RHSA-2025:14574, RHSA-2025:14585, RHSA-2025:14618, RHSA-2025:14647, USN-7662-1
Charts affected
207 by stars
| Chart | Latest | Affected images | Radar Score |
|---|---|---|---|
| demo-backendv2flyVerified publisher | 0.0.3 | 1 of 1See more | 14,358 |
| maybe-financevicsuferVerified publisher | 0.2.7 | 1 of 3See more | 10,795 |
| vinyl-lib-chartvinyl-libVerified publisher | 0.1.0 | 1 of 1See more | 3,392 |
| apiwbstack | 0.36.0 | 1 of 1See more | 2,019 |
| mediawikiwbstack | 0.14.0 | 1 of 1See more | 2,132 |
| playwright-synthetic-monitoringwork-adventure | 1.0.1 | 1 of 1See more | 14,100 |
| enterprise-gatewayzeet | 3.2.2 | 1 of 2See more | 1,838 |
Container images carrying it
221 by charts deploying them
A fixed version is listed for 2 of the 2 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| ghcr.io/ | aa59fe2c4f6a | gdk-pixbuf | 2.42.2+dfsg-1+deb11u4 | 1 |
| ghcr.io/ | 43b23d55e4be | gdk-pixbuf | 2.42.2+dfsg-1+deb11u4 | 1 |
| ghcr.io/ | 31be4bf87070 | gdk-pixbuf | 2.42.2+dfsg-1+deb11u4 | 1 |
| ghcr.io/ | 9e08148e1055 | gdk-pixbuf | 2.42.2+dfsg-1+deb11u4 | 1 |
| ghcr.io/ | ed07e7ca098d | gdk-pixbuf | 2.42.10+dfsg-1+deb12u3 | 1 |
| ghcr.io/ | 5ecb16015aa8 | gdk-pixbuf | 2.40.0+dfsg-3ubuntu0.5+esm1 | 1 |
| ghcr.io/ | 1dcca70c6446 | gdk-pixbuf | 2.40.0+dfsg-3ubuntu0.5+esm1 | 1 |
| ghcr.io/ | eee94f9f7a53 | gdk-pixbuf | 2.42.2+dfsg-1+deb11u4 | 1 |
| ghcr.io/ | c3012c8a34b4 | gdk-pixbuf | 2.42.2+dfsg-1+deb11u4 | 1 |
| ghcr.io/ | dbaa8527bf4c | gdk-pixbuf | 2.42.10+dfsg-1+deb12u3 | 1 |
| ghcr.io/ | d19d886d5090 | gdk-pixbuf | 2.42.10+dfsg-1+deb12u3 | 1 |
| ghcr.io/ | fbba58ddb1a6 | gdk-pixbuf | 2.42.10+dfsg-1+deb12u3 | 1 |
| ghcr.io/ | 7dc0ee57b628 | gdk-pixbuf | 2.42.10+dfsg-1+deb12u3 | 1 |
| public.ecr.aws/ | b1493760c716 | gdk-pixbuf | 2.42.10+dfsg-1+deb12u3 | 1 |
| public.ecr.aws/ | 5cd62142d6ed | gdk-pixbuf | 2.42.10+dfsg-1+deb12u3 | 1 |
| public.ecr.aws/ | 046ef5c9ed50 | gdk-pixbuf | 2.42.10+dfsg-1+deb12u3 | 1 |
| public.ecr.aws/ | f74851ce31f5 | gdk-pixbuf | 2.42.10+dfsg-1+deb12u3 | 1 |
| quay.io/ | a3b9a07648b6 | gdk-pixbuf2 | 0:2.36.12-7.el8_10 | 1 |
| quay.io/ | c6a934439421 | gdk-pixbuf | 2.32.2-1ubuntu1.6+esm2 | 1 |
| quay.io/ | 6ba82beff18e | gdk-pixbuf2 | 0:2.36.12-7.el8_10 | 1 |
| quay.io/ | e0d9b93dbf2b | gdk-pixbuf | 2.42.10+dfsg-1+deb12u3 | 1 |