StackRadar

CVE-2023-29491

High

Advisory

Published 14 Apr 2023In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.009
58th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
854
of 17,787 indexed, latest versions
Container images
810
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: ncurses security update

Carried by container images the latest versions of 854 of 17,787 indexed charts deploy, on 810 images.

Affected packageAffected versionsFixed inImages
ncursesdeb5.9+20140118-1ubuntu1, 6.0+20160213-1ubuntu1, 6.1-1ubuntu1, 6.1-1ubuntu1.18.04+2 more5.9+20140118-1ubuntu1+esm3, 6.0+20160213-1ubuntu1+esm3, 6.1-1ubuntu1.18.04.1, 6.2-0ubuntu2.1+1 more443
ncursesapk6.3_p20211120-r0, 6.3_p20211120-r1, 6.3_p20220423-r0, 6.3_p20220521-r0+1 more6.3_p20211120-r2, 6.3_p20220521-r1, 6.3_p20221119-r1206
ncursesrpm6.1-7.20180224.el8, 6.1-9.20180224.el8, 6.1-9.20180224.el8_6.1, 6.1-150000.5.12.1+1 more0:6.1-9.20180224.el8_8.1, 0:6.2-10.20210508.el9, 6.1-150000.5.15.1161
OSV records
ALPINE-CVE-2023-29491RHSA-2023:5249RHSA-2023:6698UBUNTU-CVE-2023-29491SUSE-SU-2023:2111-1
Also known as
RHSA-2023:7361, RHSA-2024:0416, USN-6099-1

Charts affected

854 by stars
ChartLatestAffected imagesRadar Score
zahori-serverzahoriVerified publisher1.0.11 of 2See more

zahori-server zahori 1.0.1

1 of the 2 container images this version deploys carry CVE-2023-29491.

Container imageDigestPackageFixed in
flyway/flyway:9.14.1-alpine80f12c80502b
ncurses@6.3_p20221119-r0
6.3_p20221119-r1

Open the chart page →

5,847
keycloakxzaks2.2.01 of 1See more

keycloakx zaks 2.2.0

1 of the 1 container images this version deploys carry CVE-2023-29491.

Container imageDigestPackageFixed in
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1

Open the chart page →

6,016
posthogzeet0.23.21 of 9See more

posthog zeet 0.23.2

1 of the 9 container images this version deploys carry CVE-2023-29491.

Container imageDigestPackageFixed in
altinity/clickhouse-operator:0.19.07a85f522c5bc
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1

Open the chart page →

3,697
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2023-29491.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
ncurses@6.1-1ubuntu1.18.04
6.1-1ubuntu1.18.04.1
yandex/clickhouse-server:21.3.204eccfffb01d7
ncurses@6.2-0ubuntu2
6.2-0ubuntu2.1

Open the chart page →

9,250

Container images carrying it

810 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/fiware/apollo:0.0.1055330b1b60c1
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/fiware/orion-ld:1.0.1ea838e5b4051
ncurses@6.1-7.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/fiware/trusted-issuers-registry:0.11.1a8a9ec461034
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
ncurses@6.3-2
6.3-2ubuntu0.1
1
quay.io/flomesh/flomesh-console-ubi8:0.70.0-30ce6938ff6709
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/flomesh/fsm-bootstrap-ubi8:0.1.8-ubi.6e6d7afb1a4bf
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/flomesh/fsm-ingress-pipy-ubi8:0.1.8-ubi.6fce990dece01
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/flomesh/fsm-manager-ubi8:0.1.8-ubi.63590af73f65a
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/flomesh/osm-edge-bootstrap-ubi8:1.2.1e048bc7a17c2
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/flomesh/osm-edge-controller-ubi8:1.2.1674f45865af1
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/flomesh/osm-edge-crds-ubi8:1.2.1c3bc5e7a70e6
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/flomesh/osm-edge-injector-ubi8:1.2.18e9c39c34e89
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/flomesh/osm-edge-preinstall-ubi8:1.2.1f94282a9cfec
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/flomesh/pipy-repo-ubi8:0.70.0-469912fdf6c183
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/flomesh/pipy-ubi8:0.50.0-8824352dca6672
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/flomesh/pipy-ubi8:0.70.0-4635d87a381432
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
ncurses@6.1-7.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/keycloak/keycloak:14.0.03029dc0f1d38
ncurses@6.1-7.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/keycloak/keycloak:20.0.18830f76112b6
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/keycloak/keycloak:20.0.3b8f2a453a17a
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/keycloak/keycloak-operator:19.0.3-legacy09d52508fee9
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/keycloak/keycloak-operator:19.0.2-legacy15fa0ed662b1
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/keycloak/keycloak-operator:18.0.0-legacy36ce77526145
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/keycloak/keycloak-operator:20.0.2b1710745fa64
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/kiwigrid/k8s-sidecar:1.15.61f025ae37b7b
ncurses@6.3_p20211120-r0
6.3_p20211120-r2
1
quay.io/kiwigrid/k8s-sidecar:1.21.0710e23b489c5
ncurses@6.3_p20220521-r0
6.3_p20220521-r1
1
quay.io/kiwigrid/k8s-sidecar:1.15.1a25886092fa4
ncurses@6.3_p20211120-r0
6.3_p20211120-r2
1
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/mcouliba/quarkus-serverless:1.0c2851757eca4
ncurses@6.1-7.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/minio/directpv:v4.0.84560083eb77d
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/minio/mc:RELEASE.2022-10-20T23-26-33Z50ee58bc9770
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/minio/mc:RELEASE.2022-09-16T09-16-47Z546a8b52d7b0
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/minio/minio:RELEASE.2022-09-17T00-09-45Zc3d20bc2ea08
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/minio/minio:RELEASE.2022-10-24T18-35-07Zd853057f2800
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
ncurses@6.0+20160213-1ubuntu1
6.0+20160213-1ubuntu1+esm3
1
quay.io/mongodb/mongodb-kubernetes-operator:0.3.0107a7c73af59
ncurses@6.1-7.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/netwarps/blockscoutbecd3e39360a
ncurses@6.3_p20211120-r0
6.3_p20211120-r2
1
quay.io/openshift/origin-cli:4.66722d5041b47
ncurses@6.1-7.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/openshift/origin-console:4.10.00bbe8b451fa3
ncurses@6.1-7.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/openshift/origin-jenkins-agent-base:latestc241c971aef8
ncurses@6.1-9.20180224.el8_6.1
0:6.1-9.20180224.el8_8.1
1
quay.io/opsmxpublic/awsgit:v2-openssh0d21ba756f44
ncurses@6.3_p20211120-r0
6.3_p20211120-r2
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
ncurses@6.0+20160213-1ubuntu1
6.0+20160213-1ubuntu1+esm3
1
quay.io/opsmxpublic/ubi8-oes-db:v3.0.089ee6493af89
ncurses@6.1-7.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/projectopenubl/searchpe:v4.1.0eefee675f9af
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/redhat-appstudio/appstudio-utils:dbbdd82734232e6289e8fbae5b4c858481a7c0577b4202c25b67
ncurses@6.2-8.20210508.el9
0:6.2-10.20210508.el9
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
ncurses@6.1-7.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/strimzi/operator:0.36.1e9e03b31007c
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
ncurses@6.1-9.20180224.el8
0:6.1-9.20180224.el8_8.1
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.