StackRadar

CVE-2023-29491

High

Advisory

Published 14 Apr 2023In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.009
58th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
854
of 17,787 indexed, latest versions
Container images
810
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: ncurses security update

Carried by container images the latest versions of 854 of 17,787 indexed charts deploy, on 810 images.

Affected packageAffected versionsFixed inImages
ncursesdeb5.9+20140118-1ubuntu1, 6.0+20160213-1ubuntu1, 6.1-1ubuntu1, 6.1-1ubuntu1.18.04+2 more5.9+20140118-1ubuntu1+esm3, 6.0+20160213-1ubuntu1+esm3, 6.1-1ubuntu1.18.04.1, 6.2-0ubuntu2.1+1 more443
ncursesapk6.3_p20211120-r0, 6.3_p20211120-r1, 6.3_p20220423-r0, 6.3_p20220521-r0+1 more6.3_p20211120-r2, 6.3_p20220521-r1, 6.3_p20221119-r1206
ncursesrpm6.1-7.20180224.el8, 6.1-9.20180224.el8, 6.1-9.20180224.el8_6.1, 6.1-150000.5.12.1+1 more0:6.1-9.20180224.el8_8.1, 0:6.2-10.20210508.el9, 6.1-150000.5.15.1161
OSV records
ALPINE-CVE-2023-29491RHSA-2023:5249RHSA-2023:6698UBUNTU-CVE-2023-29491SUSE-SU-2023:2111-1
Also known as
RHSA-2023:7361, RHSA-2024:0416, USN-6099-1

Charts affected

854 by stars
ChartLatestAffected imagesRadar Score
zahori-serverzahoriVerified publisher1.0.11 of 2See more

zahori-server zahori 1.0.1

1 of the 2 container images this version deploys carry CVE-2023-29491.

Container imageDigestPackageFixed in
flyway/flyway:9.14.1-alpine80f12c80502b
ncurses@6.3_p20221119-r0
6.3_p20221119-r1

Open the chart page →

5,847
keycloakxzaks2.2.01 of 1See more

keycloakx zaks 2.2.0

1 of the 1 container images this version deploys carry CVE-2023-29491.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1

Open the chart page →

6,016
posthogzeet0.23.21 of 9See more

posthog zeet 0.23.2

1 of the 9 container images this version deploys carry CVE-2023-29491.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.19.07a85f522c5bc
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1

Open the chart page →

3,697
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2023-29491.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1
yandex/clickhouse-server:21.3.204eccfffb01d7
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1

Open the chart page →

9,250

Container images carrying it

810 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
platform9community/api-gateway:latest40a4970de568
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1
1
platform9community/customers-service:latest2089811e5cc6
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1
1
platform9community/vets-service:latestd1165c94dfb3
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1
1
platform9community/visits-service:latest8d11b50368c6
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1
1
plexinc/pms-docker:1.25.4.5487-648a8f9f946ea59b96f2b
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1
1
plexinc/pms-docker:1.19.5.3112-b23ab3896b598abb134ad
ncurses@6.0+20160213-1ubuntu1
6.0+20160213-1ubuntu1+esm3
1
pnnlmiscscripts/k8s-node-image:1.20.15-nginx-18bbc7a777f9f7
ncurses@6.3_p20220521-r0
6.3_p20220521-r1
1
polonel/trudesk:1.2.60cf6513f6fe3
ncurses@6.3_p20211120-r1
6.3_p20211120-r2
1
postgis/postgis:10-3.2-alpine7e3e68a36d53
ncurses@6.3_p20220521-r0
6.3_p20220521-r1
1
pozetroninc/keydb:v6.0.1653ae64f29da8
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1
1
pposkrobko/risk-advisor:v1.0.0eaf260341dba
ncurses@6.0+20160213-1ubuntu1
6.0+20160213-1ubuntu1+esm3
1
prefapp/nginx-proxified:latestf4d026fd9a26
ncurses@6.3_p20220521-r0
6.3_p20220521-r1
1
prodrigestivill/postgres-backup-local:12-alpine-8d72d2d6ed2afadc326
ncurses@6.3_p20221119-r0
6.3_p20221119-r1
1
project2team4/react:latest3ff031a08887
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1
1
pryorda/vmware_exporter:v0.18.479925e63e59f
ncurses@6.3_p20220521-r0
6.3_p20220521-r1
1
pryorda/vmware_exporter:v0.18.3e0f5ba8b7856
ncurses@6.3_p20211120-r0
6.3_p20211120-r2
1
psorab/elibrary:latest53b68896c4ce
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1
1
ptthanh1511/freeradius-server:3.0.26-netdebug5741cbde85ab
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1
1
puppet/puppet-agent:7.14.00b6fd9a6b7da
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1
1
pysga1996/python-redis-web:latestfdeec30ad482
ncurses@6.3_p20221119-r0
6.3_p20221119-r1
1
qumine/minecraft-server:v0.1.15c0b650d51132
ncurses@6.3-2
6.3-2ubuntu0.1
1
radondb/clickhouse-server:v21.1.3.32-stable4732df471073
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1
1
rancher/local-path-provisioner:v0.0.5e66f32d19eb9
ncurses@6.0+20160213-1ubuntu1
6.0+20160213-1ubuntu1+esm3
1
redis/redis-stack-server:6.2.6-v251a58f32d412
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1
1
reportportal/migrations:5.7.0da5d8e1395fe
ncurses@6.3_p20211120-r0
6.3_p20211120-r2
1
reportportal/service-ui:5.7.20a08784eb901
ncurses@6.3_p20220521-r0
6.3_p20220521-r1
1
resouer/redis-slave:v2e2f198b49ba7
ncurses@5.9+20140118-1ubuntu1
5.9+20140118-1ubuntu1+esm3
1
restic/restic:0.15.2579e4e6a4931
ncurses@6.3_p20221119-r0
6.3_p20221119-r1
1
rm3l/dev-feed-api:latest9a7f732245a3
ncurses@6.2-8.20210508.el9
0:6.2-10.20210508.el9
1
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1
1
robotshop/rs-mongodb:latest119b545823cd
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1
1
rundeck/rundeck:3.2.74d64fe56f767
ncurses@6.0+20160213-1ubuntu1
6.0+20160213-1ubuntu1+esm3
1
rundeck/rundeck:3.0.16b13e8059ad72
ncurses@6.0+20160213-1ubuntu1
6.0+20160213-1ubuntu1+esm3
1
sarwansharma/minio:v359d1da9385d1
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
scrapinghub/splash:3.4.1a5f89bc84606
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1
1
seafileltd/seafile-mc:9.0.106693911bcc40
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1
1
seafileltd/seafile-mc:9.0.97ac833196f60
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1
1
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1
1
seldonio/locust-core:0.81d0da98a2d76
ncurses@6.0+20160213-1ubuntu1
6.0+20160213-1ubuntu1+esm3
1
seldonio/seldon-request-logger:1.11.24e985d2006a8
ncurses@6.1-7.20180224.el8
0:6.1-9.20180224.el8_8.1
1
shenxn/protonmail-bridge:1.8.7-1acf31af7c111
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1
1
sigma2as/minio:20240306-3a2e4f5c284ead9ec3e
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
sigp/lighthouse:v2.1.2ad501f02cfef
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1
1
sismics/docs:v1.10f4b0ef019cf1
ncurses@6.1-1ubuntu1
6.1-1ubuntu1.18.04.1
1
slagattollas/weatherservice-practica:latest68e7f56393fc
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1
1
smailkoz/torrserver:1.0.1117b52d15de8f0
ncurses@6.3_p20211120-r0
6.3_p20211120-r2
1
snipe/snipe-it:v6.0.1455fb7636a98c
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1
1
socialmediamacroscope/collect_reddit_comment:0.1.219d3d26d53ee
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1
1
socialmediamacroscope/image_crawler:0.1.2f508216be63c
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1
1
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.