StackRadar

CVE-2023-3138

High

Advisory

Published 15 Jun 2023In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.017
75th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
462
of 17,787 indexed, latest versions
Container images
419
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: libX11 security update

Carried by container images the latest versions of 462 of 17,787 indexed charts deploy, on 419 images.

Affected packageAffected versionsFixed inImages
libx11deb2:1.6.2-1ubuntu2, 2:1.6.2-1ubuntu2.1, 2:1.6.3-1ubuntu2, 2:1.6.3-1ubuntu2.1+12 more2:1.6.2-1ubuntu2.1+esm3, 2:1.6.3-1ubuntu2.2+esm2, 2:1.6.4-3ubuntu0.4+esm1, 2:1.6.7-1+deb10u3+4 more356
libx11apk1.7.2-r0, 1.7.3.1-r0, 1.8-r0, 1.8.3-r0+2 more1.7.3.1-r1, 1.8-r1, 1.8.4-r139
libX11rpm1.6.8-3.el8, 1.6.8-4.el8, 1.6.8-5.el8, 1.7.0-7.el90:1.6.8-6.el8, 0:1.7.0-8.el924
OSV records
ALPINE-CVE-2023-3138DEBIAN-CVE-2023-3138RHSA-2023:6497RHSA-2023:7029UBUNTU-CVE-2023-3138DLA-3472-1DSA-5433-1
Also known as
RHSA-2024:1088, RHSA-2024:1417, USN-6168-1, USN-6168-2

Charts affected

462 by stars
ChartLatestAffected imagesRadar Score
vinyl-lib-chartvinyl-libVerified publisher0.1.01 of 1See more

vinyl-lib-chart vinyl-lib 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
kporwit/vinyl_lib_app:v0.1.1217de0302218
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

3,392
kongwallarmVerified publisher4.6.31 of 7See more

kong wallarm 4.6.3

1 of the 7 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
wallarm/kong:3.1.0-ubuntu-4.6.0ea9608c82e40
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5

Open the chart page →

11,405
apiwbstack0.36.01 of 1See more

api wbstack 0.36.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/wbstack/api:8x.9.11eee94f9f7a53
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

2,019
mediawikiwbstack0.14.01 of 1See more

mediawiki wbstack 0.14.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

2,132
weather-chartweather-web-app0.1.01 of 1See more

weather-chart weather-web-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
zohardocker12/weather_app_flask:latestb86d60dbb68d
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3

Open the chart page →

2,670
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-nginx:latest6de60c83128d
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

7,552
wp-gats-helmwordpress-gatsby0.0.11 of 3See more

wp-gats-helm wordpress-gatsby 0.0.1

1 of the 3 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
library/wordpress:6.0.0-php8.0-apache277c6c25980f
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

2,021
workadventureworkadventure1.1.03 of 9See more

workadventure workadventure 1.1.0

3 of the 9 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
thecodingmachine/workadventure-back:v1.17.764001369dad5
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
thecodingmachine/workadventure-play:v1.17.7d8f66979b9b4
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
thecodingmachine/workadventure-uploader:v1.17.73ccd467543b3
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3

Open the chart page →

16,083
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
libX11@1.6.8-5.el8
0:1.6.8-6.el8

Open the chart page →

11,577
myfirstchartww-helm-charts-repo0.1.01 of 1See more

myfirstchart ww-helm-charts-repo 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginx:0.1.0205961b09a80
libx11@2:1.6.7-1
2:1.6.7-1+deb10u3

Open the chart page →

1,138
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

1,838
myfirstchartzikilabVerified publisher0.2.01 of 1See more

myfirstchart zikilab 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
libx11@2:1.6.7-1
2:1.6.7-1+deb10u3

Open the chart page →

1,138

Container images carrying it

419 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/conductionnl/waardepapieren-balie-nginx:latest2eb073ab8b83
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
1
ghcr.io/conductionnl/waardepapieren-nginx:latestaf31cf6cd59f
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
ghcr.io/conductionnl/waardepapieren-register-nginx:latest3fba727a3cc1
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
1
ghcr.io/conductionnl/webresourcecatalogus-nginx:latest6de60c83128d
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
ghcr.io/daocloud/dao-2048:v1.4.121275bc02f75
libx11@1.8.4-r0
1.8.4-r1
1
ghcr.io/eugenmayer/nist-data-mirror:0.1.1a2162df94729
libx11@1.8.4-r0
1.8.4-r1
1
ghcr.io/g0dscookie/aptly:latestedd095d3c0ee
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
ghcr.io/grofers/legend:0.1d6e901ad0ebd
libx11@2:1.6.7-1+deb10u1
2:1.6.7-1+deb10u3
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
ghcr.io/jenkins-x/nexus:0.1.378caf5289fe73
libX11@1.6.8-3.el8
0:1.6.8-6.el8
1
ghcr.io/jfwenisch/discord-experiencebot:latestb52ff07f9f0c
libx11@2:1.6.4-3ubuntu0.4
2:1.6.4-3ubuntu0.4+esm1
1
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
ghcr.io/k10app/frontend:latest066b5ac6b119
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
ghcr.io/k10app/staticcache:lateste77805689a8e
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
ghcr.io/k8s-at-home/emby:v4.6.1.05c6b8f91f1c4
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
ghcr.io/k8s-at-home/lidarr:v1.0.0.225554ebc1f90963
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
libx11@2:1.7.5-1
2:1.7.5-1ubuntu0.2
1
ghcr.io/k8s-at-home/theme-park:v1.7.3f8a5ec8f4669
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
ghcr.io/leoquote/tinyproxy_exporter:master6b4103d88dbb
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
libx11@2:1.6.4-3ubuntu0.4
2:1.6.4-3ubuntu0.4+esm1
1
ghcr.io/lsst-sqre/strimzi-registry-operator:0.6.07e25f7048aff
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
ghcr.io/mastodon/mastodon:v4.1.26b18e6d0eda4
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
ghcr.io/mjohnson9/docker-pleroma:v0.1.44f08e2823756
libx11@1.8-r0
1.8-r1
1
ghcr.io/mroxso/pollstr:latest0b4f97faa3d0
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
ghcr.io/nathanvaughn/webtrees:2.0.1969423a100fab
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
ghcr.io/paperless-ngx/paperless-ngx:1.8.09bbc9a90641e
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
ghcr.io/pascaliske/traefik-errors:1.1.00cf31753ce57
libx11@1.8.4-r0
1.8.4-r1
1
ghcr.io/privacyengineering/hawk-monitor:master13309f068a56
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
ghcr.io/remla23-team17/app:1.0.05816dbddf47d
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
ghcr.io/remla23-team17/model-service:1.0.0aa59fe2c4f6a
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
ghcr.io/rivals-space/rivals-mastodon:1.6.143b23d55e4be
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
ghcr.io/savonet/liquidsoap:v2.0.19e08148e1055
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
ghcr.io/smarter-project/pulseaudio:v0.0.4becfd364355b
libx11@1.8-r0
1.8-r1
1
ghcr.io/star-whale/server:0.6.158368359c8dd0
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
ghcr.io/wbstack/api:8x.9.11eee94f9f7a53
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
public.ecr.aws/jtekt-corporation/annotation-tool:ef974ad9abd817eb6845
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
public.ecr.aws/jtekt-corporation/polygonal-annotation-tool:a3fa936056efd38500d6
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.