CVE-2025-4638 - Vulnerability Details

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
December 28, 2025
Last Seen
December 28, 2025

CVE-2025-4638 is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 2 intelligence report mentions.

CVE-2025-4638 is a vulnerability tracked across 1 threat cluster and 2 intelligence report mentions on ThreatCluster. First observed December 28, 2025; most recent activity December 28, 2025.

Related Threat Clusters

  • Fedora 43 and 42: Critical Vulnerabilities in tkimg Package

    Fedora 43 and 42 have critical vulnerabilities in the tkimg package related to libpng and libtiff. The vulnerabilities could lead to buffer overflow issues, affecting users who utilize the Tk photo image type and…

    2 articles · Updated December 28, 2025

Recent Intelligence Reports

  • Fedora 43: tkimg Critical Libpng Libtiff Vulnerabilities 2025 — Linuxsecurity · December 28, 2025
  • Fedora 42: tkimg 2.1.0 Critical Buffer Overflow FTBFS 2025 — Linuxsecurity · December 28, 2025

Frequently asked questions

What is CVE-2025-4638?

CVE-2025-4638 is a vulnerability tracked by ThreatCluster, appearing in 1 threat cluster built from 2 intelligence report mentions.

Is CVE-2025-4638 still active?

The most recent intelligence report mentioning CVE-2025-4638 on ThreatCluster is dated December 28, 2025.

What is CVE-2025-4638 associated with?

Across ThreatCluster reporting, CVE-2025-4638 most frequently co-occurs with Fedora, CVE-2024-13978, CVE-2025-8176, CVE-2025-8177, CVE-2025-8851, among 8 tracked related entities.

What are the latest developments involving CVE-2025-4638?

The most significant recent cluster is “Fedora 43 and 42: Critical Vulnerabilities in tkimg Package” (2 articles · Updated December 28, 2025). CVE-2025-4638 appears across 1 threat cluster in total, listed above with sources.

How much reporting does ThreatCluster have on CVE-2025-4638?

CVE-2025-4638 appears in 2 intelligence report mentions across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.

CVSS v3.1 Breakdown