StackRadar

CVE-2023-3138

High

Advisory

Published 15 Jun 2023In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.017
75th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
466
of 17,787 indexed, latest versions
Container images
421
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: libX11 security update

Carried by container images the latest versions of 466 of 17,787 indexed charts deploy, on 421 images.

Affected packageAffected versionsFixed inImages
libx11deb2:1.6.2-1ubuntu2, 2:1.6.2-1ubuntu2.1, 2:1.6.3-1ubuntu2, 2:1.6.3-1ubuntu2.1+12 more2:1.6.2-1ubuntu2.1+esm3, 2:1.6.3-1ubuntu2.2+esm2, 2:1.6.4-3ubuntu0.4+esm1, 2:1.6.7-1+deb10u3+4 more358
libx11apk1.7.2-r0, 1.7.3.1-r0, 1.8-r0, 1.8.3-r0+2 more1.7.3.1-r1, 1.8-r1, 1.8.4-r139
libX11rpm1.6.8-3.el8, 1.6.8-4.el8, 1.6.8-5.el8, 1.7.0-7.el90:1.6.8-6.el8, 0:1.7.0-8.el924
OSV records
ALPINE-CVE-2023-3138DEBIAN-CVE-2023-3138RHSA-2023:6497RHSA-2023:7029UBUNTU-CVE-2023-3138DLA-3472-1DSA-5433-1
Also known as
RHSA-2024:1088, RHSA-2024:1417, USN-6168-1, USN-6168-2

Charts affected

466 by stars
ChartLatestAffected imagesRadar Score
verzoekconversieserviceverzoekconversieservice1.0.01 of 3See more

verzoekconversieservice verzoekconversieservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekconversieservice-nginx:latestf449b82ce9d6
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3

Open the chart page →

7,528
verzoekregistratiecomponentverzoekregistratiecomponent1.1.01 of 4See more

verzoekregistratiecomponent verzoekregistratiecomponent 1.1.0

1 of the 4 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekregistratiecomponent-nginx:lateste0c5f8a95098
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3

Open the chart page →

7,429
verzoektypecatalogusverzoektypecatalogus1.1.01 of 4See more

verzoektypecatalogus verzoektypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoektypecatalogus-nginx:latest42c75ea8082c
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3

Open the chart page →

7,429
genievhdirkVerified publisher0.1.31 of 1See more

genie vhdirk 0.1.3

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
stanfordoval/almond-server:latest1a63cdccedaf
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3

Open the chart page →

3,129
vinyl-lib-chartvinyl-libVerified publisher0.1.01 of 1See more

vinyl-lib-chart vinyl-lib 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
kporwit/vinyl_lib_app:v0.1.1217de0302218
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

3,392
kongwallarmVerified publisher4.6.31 of 7See more

kong wallarm 4.6.3

1 of the 7 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
wallarm/kong:3.1.0-ubuntu-4.6.0ea9608c82e40
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5

Open the chart page →

11,405
apiwbstack0.36.01 of 1See more

api wbstack 0.36.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/wbstack/api:8x.9.11eee94f9f7a53
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

2,019
mediawikiwbstack0.14.01 of 1See more

mediawiki wbstack 0.14.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

2,132
weather-chartweather-web-app0.1.01 of 1See more

weather-chart weather-web-app 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
zohardocker12/weather_app_flask:latestb86d60dbb68d
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3

Open the chart page →

2,670
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-nginx:latest6de60c83128d
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

7,552
wp-gats-helmwordpress-gatsby0.0.11 of 3See more

wp-gats-helm wordpress-gatsby 0.0.1

1 of the 3 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
library/wordpress:6.0.0-php8.0-apache277c6c25980f
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

2,021
workadventureworkadventure1.1.03 of 9See more

workadventure workadventure 1.1.0

3 of the 9 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
thecodingmachine/workadventure-back:v1.17.764001369dad5
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
thecodingmachine/workadventure-play:v1.17.7d8f66979b9b4
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
thecodingmachine/workadventure-uploader:v1.17.73ccd467543b3
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3

Open the chart page →

16,083
workshop-pipelinesworkshop-pipelines0.1.61 of 2See more

workshop-pipelines workshop-pipelines 0.1.6

1 of the 2 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
libX11@1.6.8-5.el8
0:1.6.8-6.el8

Open the chart page →

11,577
myfirstchartww-helm-charts-repo0.1.01 of 1See more

myfirstchart ww-helm-charts-repo 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginx:0.1.0205961b09a80
libx11@2:1.6.7-1
2:1.6.7-1+deb10u3

Open the chart page →

1,138
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1

Open the chart page →

1,838
myfirstchartzikilabVerified publisher0.2.01 of 1See more

myfirstchart zikilab 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-3138.

Container imageDigestPackageFixed in
ghcr.io/stacksimplify/kubenginxhelm:0.2.0ae2268dcc930
libx11@2:1.6.7-1
2:1.6.7-1+deb10u3

Open the chart page →

1,138

Container images carrying it

421 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
public.ecr.aws/jtekt-corporation/annotation-tool:ef974ad9abd817eb6845
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
public.ecr.aws/jtekt-corporation/polygonal-annotation-tool:a3fa936056efd38500d6
libx11@2:1.7.2-1
2:1.7.2-1+deb11u1
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
libx11@2:1.6.9-2ubuntu1.2
2:1.6.9-2ubuntu1.5
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
libx11@2:1.7.5-1
2:1.7.5-1ubuntu0.2
1
quay.io/cloudnativetoolkit/cloud-pak-deployer:latest13aaae779248
libX11@1.6.8-5.el8
0:1.6.8-6.el8
1
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
libX11@1.6.8-4.el8
0:1.6.8-6.el8
1
quay.io/fairwinds/yelb-appserver:v0.6.0fae21f06131f
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
1
quay.io/fairwinds/yelb-ui:v0.1.05ac114e567ed
libx11@2:1.6.7-1
2:1.6.7-1+deb10u3
1
quay.io/fiware/apollo:0.0.1055330b1b60c1
libX11@1.6.8-5.el8
0:1.6.8-6.el8
1
quay.io/fiware/canis-major:1.5.15bb40472e4ff5
libX11@1.6.8-5.el8
0:1.6.8-6.el8
1
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
libX11@1.6.8-5.el8
0:1.6.8-6.el8
1
quay.io/fiware/trusted-issuers-registry:0.11.1a8a9ec461034
libX11@1.6.8-5.el8
0:1.6.8-6.el8
1
quay.io/ibmgaragecloud/developer-dashboard:v1.4.47a4b9fedc724
libX11@1.6.8-3.el8
0:1.6.8-6.el8
1
quay.io/maximilianopizarro/workshop-pipelines:lateste383ba3e0966
libX11@1.6.8-5.el8
0:1.6.8-6.el8
1
quay.io/mongodb/farm-intro-frontend:0.199ccdfd543e1
libx11@2:1.6.7-1+deb10u2
2:1.6.7-1+deb10u3
1
quay.io/opsmxpublic/awsgit:v2-openssh0d21ba756f44
libx11@1.7.2-r0
1.7.3.1-r1
1
quay.io/opsmxpublic/create-secret:v4.0.4defc3263e0e9
libx11@1.8.4-r0
1.8.4-r1
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
libx11@2:1.6.3-1ubuntu2.1
2:1.6.3-1ubuntu2.2+esm2
1
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
libX11@1.6.8-4.el8
0:1.6.8-6.el8
1
quay.io/wi_stefan/dss-validation-service:0.0.18e928db29ee1
libX11@1.6.8-5.el8
0:1.6.8-6.el8
1
registry.gitlab.com/open-forms/design-catalogue:latestf21f19346b29
libx11@2:1.6.7-1+deb10u1
2:1.6.7-1+deb10u3
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.