/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CGA-555h-fmqh-wjg7

Published

Last updated

https://images.chainguard.dev/security/CGA-555h-fmqh-wjg7
Package

rekor

RepositoryWolfi
Latest Update
Fixed
Fixed Version

1.3.10-r2

Aliases
  • CVE-2025-22874
  • GHSA-6f52-wpx2-hvf2

Severity

Unknown

References

  • https://nvd.nist.gov/vuln/detail/CVE-2025-22874

Updates

Status

Fixed

Fixed version

1.3.10-r2

Status

Affected

Impact

Govulncheck found vulnerable symbols in Go binaries at the following locations: in rekor-backfill-index-1.3.10-r1.apk, at usr/bin/backfill-index, usr/bin/backfill-index; in rekor-cli-1.3.10-r1.apk, at usr/bin/rekor-cli, usr/bin/rekor-cli; in rekor-server-1.3.10-r1.apk, at usr/bin/rekor-server, usr/bin/rekor-server.

Status

Under investigation


Safe Source for Open Sourceâ„¢
Contact us
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing