StackRadar

CVE-2023-3138

High

Advisory

Published 15 Jun 2023In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.017
75th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
462
of 17,787 indexed, latest versions
Container images
419
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: libX11 security update

Carried by container images the latest versions of 462 of 17,787 indexed charts deploy, on 419 images.

Affected packageAffected versionsFixed inImages
libx11deb2:1.6.2-1ubuntu2, 2:1.6.2-1ubuntu2.1, 2:1.6.3-1ubuntu2, 2:1.6.3-1ubuntu2.1+12 more2:1.6.2-1ubuntu2.1+esm3, 2:1.6.3-1ubuntu2.2+esm2, 2:1.6.4-3ubuntu0.4+esm1, 2:1.6.7-1+deb10u3+4 more356
libx11apk1.7.2-r0, 1.7.3.1-r0, 1.8-r0, 1.8.3-r0+2 more1.7.3.1-r1, 1.8-r1, 1.8.4-r139
libX11rpm1.6.8-3.el8, 1.6.8-4.el8, 1.6.8-5.el8, 1.7.0-7.el90:1.6.8-6.el8, 0:1.7.0-8.el924
OSV records
ALPINE-CVE-2023-3138DEBIAN-CVE-2023-3138RHSA-2023:6497RHSA-2023:7029UBUNTU-CVE-2023-3138DLA-3472-1DSA-5433-1
Also known as
RHSA-2024:1088, RHSA-2024:1417, USN-6168-1, USN-6168-2

Charts affected

462 by stars
ChartLatestAffected imagesRadar Score
vinyl-lib-chartvinyl-libVerified publisher0.1.01 of 1See more

vinyl-lib-chart vinyl-lib 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
kporwit/vinyl_lib_app:v0.1.1217de0302218
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

3,392
kongwallarmVerified publisher4.6.31 of 7See more

kong wallarm 4.6.3

1 of the 7 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
wallarm/kong:3.1.0-ubuntu-4.6.0ea9608c82e40
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5

Open the chart page →

11,405
apiwbstack0.36.01 of 1See more

api wbstack 0.36.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/wbstack/api:8x.9.11eee94f9f7a53
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

2,019
mediawikiwbstack0.14.01 of 1See more

mediawiki wbstack 0.14.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

2,132
weather-chartweather-web-app0.1.01 of 1See more

weather-chart weather-web-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
zohardocker12/weather_app_flask:latestb86d60dbb68d
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3

Open the chart page →

2,670
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-nginx:latest6de60c83128d
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

7,552
wp-gats-helmwordpress-gatsby0.0.11 of 3See more

wp-gats-helm wordpress-gatsby 0.0.1

1 of the 3 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
library/wordpress:6.0.0-php8.0-apache277c6c25980f
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

2,021
workadventureworkadventure1.1.03 of 9See more

workadventure workadventure 1.1.0

3 of the 9 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
thecodingmachine/workadventure-back:v1.17.764001369dad5
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
thecodingmachine/workadventure-play:v1.17.7d8f66979b9b4
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
thecodingmachine/workadventure-uploader:v1.17.73ccd467543b3
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3

Open the chart page →

16,083
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
libX11@1.6.8-5.el8
0:1.6.8-6.el8

Open the chart page →

11,577
myfirstchartww-helm-charts-repo0.1.01 of 1See more

myfirstchart ww-helm-charts-repo 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginx:0.1.0205961b09a80
libx11@2:1.6.7-1
2:1.6.7-1+deb10u3

Open the chart page →

1,138
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

1,838
myfirstchartzikilabVerified publisher0.2.01 of 1See more

myfirstchart zikilab 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
libx11@2:1.6.7-1
2:1.6.7-1+deb10u3

Open the chart page →

1,138

Container images carrying it

419 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
dgraziotin/nginx-webdav-nononsense:1.23.138f2de42bed0
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
dnsforge/xteve:latest4d9a685c8c28
libx11@1.8.3-r1
1.8.4-r1
1
douz/helpdesk:latest4384103d0219
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
douz/overlord:latestf2bc7fc068c1
libx11@2:1.6.7-1
2:1.6.7-1+deb10u3
1
duck1123/astral:latestf4d5b6526c2a
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
duck1123/me.untethr.nostr-relay:0.2.1119fc5d4cbfb
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
eclipseaerios/self-service-password:5.2.32f93bfa4cf0d
libx11@1.7.2-r0
1.7.3.1-r1
1
elastictranscoder/transcoder:627e21dcb4a0327029e6
libx11@2:1.6.4-3ubuntu0.4
2:1.6.4-3ubuntu0.4+esm1
1
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
libx11@2:1.6.4-3ubuntu0.4
2:1.6.4-3ubuntu0.4+esm1
1
elyra/kernel-image-puller:3.2.2c922f1f1646a
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
erlangsolutions/wombatoam:4.1.284680c990147a
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
errbotio/errbot:6.1.900ee4e0953ab
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
ethereumex/eth-stats-dashboard:v0.0.1a7603aa8df4c
libx11@2:1.6.3-1ubuntu2
2:1.6.3-1ubuntu2.2+esm2
1
evk02/mlflow:2.2.1ef6ff257ef35
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
factly/hunting:0.2.0-stagv1.2ca5bc71d1d5c
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
fanzynoodle/smeejas:0.0.15f9916c1a287
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
fedodo/fedodo.ui.home:3c69413c4d690
libx11@1.8.4-r0
1.8.4-r1
1
fedodo/fedodo.ui.micro:12b2b540081c21
libx11@1.8.4-r0
1.8.4-r1
1
felipecs8/qrcode-generator:v1d5f4f17cb066
libx11@1.8.4-r0
1.8.4-r1
1
firefart/requesttracker:nginx-nightly-202307101028236b42a0
libx11@1.8.4-r0
1.8.4-r1
1
fireflyiii/core:version-5.6.142f4283bd0cf7
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
1
fiware/mintaka:0.7.092a3c5cf43c0
libX11@1.6.8-5.el8
0:1.6.8-6.el8
1
fiware/mintaka:latestefc6793388cc
libX11@1.6.8-5.el8
0:1.6.8-6.el8
1
fluidtrendslab/platform:latestbf49de7a4100
libx11@1.8-r0
1.8-r1
1
fossology/fossology:4.2.18bd1f22ba7bb
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
1
galaxy/galaxy-init:v18.010267bad550e6
libx11@2:1.6.2-1ubuntu2
2:1.6.2-1ubuntu2.1+esm3
1
galaxy/galaxy-stable:v18.018e577a626dfd
libx11@2:1.6.2-1ubuntu2
2:1.6.2-1ubuntu2.1+esm3
1
gethue/hue:4.11.011b649636e68
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
gethue/hue:4.10.05702b2c37ff9
libx11@2:1.6.4-3ubuntu0.4
2:1.6.4-3ubuntu0.4+esm1
1
gethue/nginx:latest07f00f7c7903
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
1
gollumorg/gollum:latest7cd5305a3cf7
libx11@2:1.6.7-1+deb10u1
2:1.6.7-1+deb10u3
1
guacamole/guacd:1.1.02288530a4d1c
libx11@2:1.6.7-1
2:1.6.7-1+deb10u3
1
guacamole/guacd:1.3.049d43948140f
libx11@2:1.6.7-1+deb10u1
2:1.6.7-1+deb10u3
1
ha33ona/python:test6affdfc644d0
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
haugene/transmission-openvpn:4.0059216cfae4b
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
haveagitgat/tdarr:2.00.181256348872ce
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
haveagitgat/tdarr_node:2.00.101e3f9328327d
libx11@2:1.6.9-2ubuntu1.1
2:1.6.9-2ubuntu1.5
1
hazelcast/management-center:5.3.2f9d34300d330
libX11@1.6.8-5.el8
0:1.6.8-6.el8
1
helga09/shoes_ukr:v1.1.17999bc8b77c0
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
hiboxsystems/marge-bot:0.11.07235809b43b3
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
libx11@2:1.6.4-3ubuntu0.3
2:1.6.4-3ubuntu0.4+esm1
1
hyperledger/fabric-couchdb:0.4.10c65891b6c237
libx11@2:1.6.3-1ubuntu2
2:1.6.3-1ubuntu2.2+esm2
1
ianw/quickchart:v1.7.1dc49dd460c37
libx11@1.7.3.1-r0
1.7.3.1-r1
1
ibmcom/icp-swift-sample:latestb5d8c6714dbc
libx11@2:1.6.3-1ubuntu2
2:1.6.3-1ubuntu2.2+esm2
1
ibmcom/microclimate-theia:lateste17bdccc5030
libx11@2:1.6.3-1ubuntu2
2:1.6.3-1ubuntu2.2+esm2
1
improwised/erpnext-worker:v13.4.197280b55cbd4
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
1
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
intel/multimodal-data-visualization-streaming:3.01a89327e499b
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
jacobalberty/unifi:v7.1.664a3616625dda
libx11@2:1.6.4-3ubuntu0.4
2:1.6.4-3ubuntu0.4+esm1
1
jacobalberty/unifi:5.10.19c409924e2463
libx11@2:1.6.3-1ubuntu2.1
2:1.6.3-1ubuntu2.2+esm2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.