{"id":"CGA-qmc7-4w6j-fq6r","modified":"2026-01-28T03:31:22.325692Z","published":"2025-12-10T19:58:44.314717Z","withdrawn":"2026-01-28T03:31:22.325692Z","related":["CGA-qmc7-4w6j-fq6r","CVE-2025-67499","GHSA-jv3w-x3r3-g6rm"],"affected":[{"package":{"name":"rootlesskit-fips","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/rootlesskit-fips"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.3.5-r7"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-qmc7-4w6j-fq6r.json"}},{"package":{"name":"rootlesskit-config-nonroot-fips","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/rootlesskit-config-nonroot-fips"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.3.5-r7"}]}],"database_specific":{"source":"https://packages.cgr.dev/chainguard/osv/CGA-qmc7-4w6j-fq6r.json"}}],"schema_version":"1.7.3"}