StackRadar

CVE-2023-3138

High

Advisory

Published 15 Jun 2023In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.017
75th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
462
of 17,781 indexed, latest versions
Container images
419
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: libX11 security update

Carried by container images the latest versions of 462 of 17,781 indexed charts deploy, on 419 images.

Affected packageAffected versionsFixed inImages
libx11deb2:1.6.2-1ubuntu2, 2:1.6.2-1ubuntu2.1, 2:1.6.3-1ubuntu2, 2:1.6.3-1ubuntu2.1+12 more2:1.6.2-1ubuntu2.1+esm3, 2:1.6.3-1ubuntu2.2+esm2, 2:1.6.4-3ubuntu0.4+esm1, 2:1.6.7-1+deb10u3+4 more356
libx11apk1.7.2-r0, 1.7.3.1-r0, 1.8-r0, 1.8.3-r0+2 more1.7.3.1-r1, 1.8-r1, 1.8.4-r139
libX11rpm1.6.8-3.el8, 1.6.8-4.el8, 1.6.8-5.el8, 1.7.0-7.el90:1.6.8-6.el8, 0:1.7.0-8.el924
OSV records
ALPINE-CVE-2023-3138DEBIAN-CVE-2023-3138RHSA-2023:6497RHSA-2023:7029UBUNTU-CVE-2023-3138DLA-3472-1DSA-5433-1
Also known as
RHSA-2024:1088, RHSA-2024:1417, USN-6168-1, USN-6168-2

Charts affected

462 by stars
ChartLatestAffected imagesRadar Score
vinyl-lib-chartvinyl-libVerified publisher0.1.01 of 1See more

vinyl-lib-chart vinyl-lib 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
kporwit/vinyl_lib_app:v0.1.1217de0302218
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

3,392
kongwallarmVerified publisher4.6.31 of 7See more

kong wallarm 4.6.3

1 of the 7 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
wallarm/kong:3.1.0-ubuntu-4.6.0ea9608c82e40
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5

Open the chart page →

11,405
apiwbstack0.36.01 of 1See more

api wbstack 0.36.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/wbstack/api:8x.9.11eee94f9f7a53
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

2,019
mediawikiwbstack0.14.01 of 1See more

mediawiki wbstack 0.14.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

2,132
weather-chartweather-web-app0.1.01 of 1See more

weather-chart weather-web-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
zohardocker12/weather_app_flask:latestb86d60dbb68d
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3

Open the chart page →

2,670
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-nginx:latest6de60c83128d
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

7,552
wp-gats-helmwordpress-gatsby0.0.11 of 3See more

wp-gats-helm wordpress-gatsby 0.0.1

1 of the 3 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
library/wordpress:6.0.0-php8.0-apache277c6c25980f
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

2,021
workadventureworkadventure1.1.03 of 9See more

workadventure workadventure 1.1.0

3 of the 9 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
thecodingmachine/workadventure-back:v1.17.764001369dad5
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
thecodingmachine/workadventure-play:v1.17.7d8f66979b9b4
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
thecodingmachine/workadventure-uploader:v1.17.73ccd467543b3
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3

Open the chart page →

16,083
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
libX11@1.6.8-5.el8
0:1.6.8-6.el8

Open the chart page →

11,577
myfirstchartww-helm-charts-repo0.1.01 of 1See more

myfirstchart ww-helm-charts-repo 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginx:0.1.0205961b09a80
libx11@2:1.6.7-1
2:1.6.7-1+deb10u3

Open the chart page →

1,138
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

1,838
myfirstchartzikilabVerified publisher0.2.01 of 1See more

myfirstchart zikilab 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
libx11@2:1.6.7-1
2:1.6.7-1+deb10u3

Open the chart page →

1,138

Container images carrying it

419 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
omecproject/progran-synchronizer:comac-1.0.0d109a8e57e71
libx11@2:1.6.3-1ubuntu2.1
2:1.6.3-1ubuntu2.2+esm2
1
onosproject/onos:2.2.144914a8d4b3f
libx11@2:1.6.4-3ubuntu0.2
2:1.6.4-3ubuntu0.4+esm1
1
opendatacube/wms:latest1b90cdf68831
libx11@2:1.6.4-3ubuntu0.2
2:1.6.4-3ubuntu0.4+esm1
1
openemr/openemr:6.1.089eaa6d9a4e3
libx11@1.7.2-r0
1.7.3.1-r1
1
openkm/openkm-ce:6.3.113bc465a7461b
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
openproject/community:12.0.2734743d11094
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
1
openwhisk/kafkaprovider:2.1.063dc3d2a0904
libx11@2:1.6.7-1
2:1.6.7-1+deb10u3
1
openwhisk/ow-utils:1.0.0c80dba0de3aa
libx11@2:1.6.4-3ubuntu0.3
2:1.6.4-3ubuntu0.4+esm1
1
opsmx11/issuegen:v2.1.05c50ca123d88
libx11@2:1.6.2-1ubuntu2
2:1.6.2-1ubuntu2.1+esm3
1
passbolt/passbolt:3.9.0-2-ce-non-rootec046e112d5c
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
patdada/bella-docker:v1.0.075127147a624
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
1
pecan/monitor:1.7.273b2074f3fec
libx11@2:1.6.7-1
2:1.6.7-1+deb10u3
1
penpotapp/frontend:2.2.18974882a0542
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
phntom/binaryvision-static-wordpress:0.0.385a2dfb83b11
libx11@2:1.6.7-1
2:1.6.7-1+deb10u3
1
phntom/email-manager:0.1.22d8e2a9f2f085
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
phntom/external-dns-host-network:0.0.123adadbac8443
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
phntom/kix-static-website:latest49ce665acb59
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
1
phntom/mattermost-defaultbackend:6.4.0c318dc90a4bf
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
photoprism/photoprism:220629-jammy2954334adbda
libx11@2:1.7.5-1
2:1.7.5-1ubuntu0.2
1
phpmyadmin/phpmyadmin:5.138437e021deb
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
plexinc/pms-docker:1.25.4.5487-648a8f9f946ea59b96f2b
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
plumdog/db-operator:latest0c2fa2db0357
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
1
postgis/postgis:10-3.2-alpine7e3e68a36d53
libx11@1.8-r0
1.8-r1
1
project2team4/react:latest3ff031a08887
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
psorab/elibrary:latest53b68896c4ce
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
redash/redash:10.0.0.b503639392753c0376
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
1
reportportal/service-api:5.7.29df41f8fb320
libx11@1.8-r0
1.8-r1
1
reportportal/service-authorization:5.7.09e73114dbd15
libx11@1.7.2-r0
1.7.3.1-r1
1
reportportal/service-jobs:5.7.2dc166c58485a
libx11@1.8-r0
1.8-r1
1
resouer/redis-slave:v2e2f198b49ba7
libx11@2:1.6.2-1ubuntu2
2:1.6.2-1ubuntu2.1+esm3
1
rlex/jsonvisio:1.9.5cd50ff65118e
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
1
rm3l/dev-feed-api:latest9a7f732245a3
libX11@1.7.0-7.el9
0:1.7.0-8.el9
1
roadiehq/community-backstage-image:latestef355bf5b639
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
1
robmarkcole/deepstack-ui:latest410275726459
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
robotshop/rs-payment:latest774b52c6180d
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
robotshop/rs-web:latestb3c20d4a22f2
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
1
roundcube/roundcubemail:1.5.3-apachea8ea6fd751dc
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
rundeck/rundeck:3.2.74d64fe56f767
libx11@2:1.6.3-1ubuntu2.1
2:1.6.3-1ubuntu2.2+esm2
1
rundeck/rundeck:3.0.16b13e8059ad72
libx11@2:1.6.3-1ubuntu2.1
2:1.6.3-1ubuntu2.2+esm2
1
samajh/alprbackend:latestea742b4372ad
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
1
samajh/alprfrontend:latest05ef4fddbb75
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
1
scrapinghub/splash:3.4.1a5f89bc84606
libx11@2:1.6.4-3ubuntu0.2
2:1.6.4-3ubuntu0.4+esm1
1
seafileltd/seafile-mc:9.0.106693911bcc40
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
seafileltd/seafile-mc:9.0.97ac833196f60
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
seldonio/locust-core:0.81d0da98a2d76
libx11@2:1.6.3-1ubuntu2.1
2:1.6.3-1ubuntu2.2+esm2
1
seldonio/seldon-request-logger:1.11.24e985d2006a8
libX11@1.6.8-4.el8
0:1.6.8-6.el8
1
shenxn/protonmail-bridge:1.8.7-1acf31af7c111
libx11@2:1.6.4-3ubuntu0.4
2:1.6.4-3ubuntu0.4+esm1
1
shinobisystems/shinobi:dev3ca746937856
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
1
shinobisystems/shinobi:latestc2f5ce2e1067
libx11@2:1.6.7-1+deb10u1
2:1.6.7-1+deb10u3
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.