StackRadar

CVE-2023-29483

High

Advisory

Published 11 Apr 2024In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.0
base score, highest
EPSS
0.019
78th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
64
of 17,781 indexed, latest versions
Container images
72
deployed by those charts
Fix available
2 of 3
affected packages

Potential DoS via the Tudoor mechanism in eventlet and dnspython

Carried by container images the latest versions of 64 of 17,781 indexed charts deploy, on 72 images.

Affected packageAffected versionsFixed inImages
dnspythondeb1.16.0-1build1, 2.1.0-1ubuntu1no fix listed11
dnspythonpypi1.15.0, 1.16.0, 2.0.0, 2.1.0+5 more2.6.170
eventletpypi0.20.0, 0.24.1, 0.25.0, 0.25.1+7 more0.35.233
OSV records
UBUNTU-CVE-2023-29483GHSA-3rq5-2g8h-59hc
Also known as
PYSEC-2026-1307, PYSEC-2026-2472

Charts affected

64 by stars
ChartLatestAffected imagesRadar Score
chirpstackmosquitto-helm-chart0.5.01 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

1 of the 8 container images this version deploys carry CVE-2023-29483.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.9.0d056c89b7131
dnspython@1.16.0-1build1
dnspython@1.16.0
eventlet@0.25.1
no fix listed
2.6.1
0.35.2

Open the chart page →

25,933
pulsarmosquitto-helm-chart0.2.01 of 1See more

pulsar mosquitto-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-29483.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.10.03b262ab7a7d9
dnspython@1.16.0-1build1
dnspython@1.16.0
eventlet@0.25.1
no fix listed
2.6.1
0.35.2

Open the chart page →

15,675
elasticsearch2ncsaVerified publisher0.2.21 of 2See more

elasticsearch2 ncsa 0.2.2

1 of the 2 container images this version deploys carry CVE-2023-29483.

Container imageDigestPackageFixed in
elastichq/elasticsearch-hq:latestbb3bd22c2b87
dnspython@1.16.0
eventlet@0.25.0
2.6.1
0.35.2

Open the chart page →

4,911
polyglotncsaVerified publisher0.1.11 of 18See more

polyglot ncsa 0.1.1

1 of the 18 container images this version deploys carry CVE-2023-29483.

Container imageDigestPackageFixed in
ncsapolyglot/converters-ebook-convert:latest438d82cdbdb5
dnspython@1.15.0
2.6.1

Open the chart page →

55,726
pulsarolehrgfVerified publisher0.0.51 of 2See more

pulsar olehrgf 0.0.5

1 of the 2 container images this version deploys carry CVE-2023-29483.

Container imageDigestPackageFixed in
apachepulsar/pulsar:3.1.016f9fdab3fa6
dnspython@2.1.0-1ubuntu1
dnspython@2.1.0
eventlet@0.30.2
no fix listed
2.6.1
0.35.2

Open the chart page →

9,005
comacopencord1.0.02 of 9See more

comac opencord 1.0.0

2 of the 9 container images this version deploys carry CVE-2023-29483.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
dnspython@1.15.0
eventlet@0.24.1
2.6.1
0.35.2
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
dnspython@1.15.0
eventlet@0.24.1
2.6.1
0.35.2

Open the chart page →

88,546
comac-platformopencord0.0.171 of 11See more

comac-platform opencord 0.0.17

1 of the 11 container images this version deploys carry CVE-2023-29483.

Container imageDigestPackageFixed in
omecproject/mcord-synchronizer:comac-1.0.0cfdb566dd949
dnspython@1.15.0
eventlet@0.24.1
2.6.1
0.35.2

Open the chart page →

26,211
iparedhat-cop1.3.91 of 1See more

ipa redhat-cop 1.3.9

1 of the 1 container images this version deploys carry CVE-2023-29483.

Container imageDigestPackageFixed in
quay.io/freeipa/freeipa-server:fedora-39-4.11.1d422ee50c2c3
dnspython@2.4.2
2.6.1

Open the chart page →

951
airflowsb-helm-charts0.3.01 of 1See more

airflow sb-helm-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2023-29483.

Container imageDigestPackageFixed in
apache/airflow:2.8.1e5560ad0b86e
dnspython@2.4.2
eventlet@0.34.3
2.6.1
0.35.2

Open the chart page →

10,209
studygovernorstudy-governorVerified publisher0.1.381 of 3See more

studygovernor study-governor 0.1.38

1 of the 3 container images this version deploys carry CVE-2023-29483.

Container imageDigestPackageFixed in
registry.gitlab.com/radiology/infrastructure/study-governor:8.0.04e7faf6f8d5f
dnspython@2.4.2
2.6.1

Open the chart page →

1,447
twenty-crmvictorlane0.0.11 of 3See more

twenty-crm victorlane 0.0.1

1 of the 3 container images this version deploys carry CVE-2023-29483.

Container imageDigestPackageFixed in
twentycrm/twenty-postgres-spilo:latest2f78405a78be
dnspython@2.1.0-1ubuntu1
dnspython@2.1.0
eventlet@0.30.2
no fix listed
2.6.1
0.35.2

Open the chart page →

13,459
supersetwbstack0.1.01 of 1See more

superset wbstack 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-29483.

Container imageDigestPackageFixed in
apache/superset:4.0.1ab9467fd712c
dnspython@2.1.0
2.6.1

Open the chart page →

7,085
sambawenerme1.0.01 of 1See more

samba wenerme 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-29483.

Container imageDigestPackageFixed in
wener/samba:4.13.39a42bae466d4
dnspython@2.1.0
2.6.1

Open the chart page →

2,555
powerdnsadminwitcom-gmbh0.3.41 of 1See more

powerdnsadmin witcom-gmbh 0.3.4

1 of the 1 container images this version deploys carry CVE-2023-29483.

Container imageDigestPackageFixed in
ngoduykhanh/powerdns-admin:v0.2.4ba36ab196d3d
dnspython@2.1.0
2.6.1

Open the chart page →

2,643

Container images carrying it

72 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
stackstorm/st2rulesengine:3.8259503496ff9
dnspython@1.16.0
eventlet@0.33.3
2.6.1
0.35.2
1
stackstorm/st2scheduler:3.8b1de2055c362
dnspython@1.16.0
eventlet@0.33.3
2.6.1
0.35.2
1
stackstorm/st2sensorcontainer:3.8b1a338f64773
dnspython@1.16.0
eventlet@0.33.3
2.6.1
0.35.2
1
stackstorm/st2stream:3.81c8904a3bf67
dnspython@1.16.0
eventlet@0.33.3
2.6.1
0.35.2
1
stackstorm/st2timersengine:3.81bf35bfaf00c
dnspython@1.16.0
eventlet@0.33.3
2.6.1
0.35.2
1
stackstorm/st2workflowengine:3.819fdfffdbba8
dnspython@1.16.0
eventlet@0.33.3
2.6.1
0.35.2
1
timescale/timescaledb-ha:pg15-latesta8e3322e1cf9
dnspython@2.1.0-1ubuntu1
dnspython@2.1.0
no fix listed
2.6.1
1
timescale/timescaledb-ha:pg14.6-ts2.9.1-p1cdb9ae118899
dnspython@2.1.0-1ubuntu1
dnspython@2.1.0
no fix listed
2.6.1
1
timescale/timescaledb-ha:pg16d7db8f1085a3
dnspython@2.1.0-1ubuntu1
dnspython@2.1.0
no fix listed
2.6.1
1
timescale/timescaledb-ha:pg17.2-ts2.18.2e8d0a9cc3db5
dnspython@2.1.0-1ubuntu1
dnspython@2.1.0
no fix listed
2.6.1
1
timescale/timescaledb-ha:pg14-ts2.6-latested719c0cd19d
dnspython@2.1.0-1ubuntu1
dnspython@2.1.0
no fix listed
2.6.1
1
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
dnspython@1.15.0
2.6.1
1
twentycrm/twenty-postgres-spilo:latest2f78405a78be
dnspython@2.1.0-1ubuntu1
dnspython@2.1.0
eventlet@0.30.2
no fix listed
2.6.1
0.35.2
1
wener/samba:4.13.39a42bae466d4
dnspython@2.1.0
2.6.1
1
witcherek7/pav:0.0.342a744f29ac0
dnspython@2.2.1
2.6.1
1
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
dnspython@1.16.0
eventlet@0.30.2
2.6.1
0.35.2
1
ghcr.io/dgtlmoon/changedetection.io:0.39.4f1ce4c56ccaa
dnspython@2.1.0
eventlet@0.33.0
2.6.1
0.35.2
1
ghcr.io/home-assistant/home-assistant:2022.5.4ec6d67fbedfa
dnspython@2.2.1
2.6.1
1
ghcr.io/home-assistant/home-assistant:2023.11.3feffc0b8227d
dnspython@2.4.2
2.6.1
1
quay.io/freeipa/freeipa-server:fedora-39-4.11.1d422ee50c2c3
dnspython@2.4.2
2.6.1
1
quay.io/mongodb/farm-intro-backend:0.11a9ce0b8fbd4
dnspython@2.0.0
2.6.1
1
registry.gitlab.com/radiology/infrastructure/study-governor:8.0.04e7faf6f8d5f
dnspython@2.4.2
2.6.1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.