StackRadar

CVE-2023-34455

High

Advisory

Published 15 Jun 2023In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.018
77th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
140
of 17,781 indexed, latest versions
Container images
138
deployed by those charts
Fix available
1 of 1
affected package

snappy-java's unchecked chunk length leads to DoS

Carried by container images the latest versions of 140 of 17,781 indexed charts deploy, on 138 images.

Affected packageAffected versionsFixed inImages
snappy-javamaven1.0.3, 1.0.4.1, 1.0.5, 1.0.5.2+10 more1.1.10.1138
OSV records
GHSA-qcwq-55hx-v3vh

Charts affected

140 by stars
ChartLatestAffected imagesRadar Score
fspiop-transfer-api-svcmojaloop12.0.11 of 3See more

fspiop-transfer-api-svc mojaloop 12.0.1

1 of the 3 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
solsson/kafka:latest41e5d8f6f290
snappy-java@1.1.8.4
1.1.10.1

Open the chart page →

11,479
mojaloopmojaloop14.0.01 of 6See more

mojaloop mojaloop 14.0.0

1 of the 6 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
solsson/kafka:latest41e5d8f6f290
snappy-java@1.1.8.4
1.1.10.1

Open the chart page →

19,226
chirpstackmosquitto-helm-chart0.5.01 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

1 of the 8 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.9.0d056c89b7131
snappy-java@1.1.7
1.1.10.1

Open the chart page →

25,933
pulsarmosquitto-helm-chart0.2.01 of 1See more

pulsar mosquitto-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.10.03b262ab7a7d9
snappy-java@1.1.7
1.1.10.1

Open the chart page →

15,675
Practica_4_helmmy-heml-appVerified publisher0.1.01 of 7See more

Practica_4_helm my-heml-app 0.1.0

1 of the 7 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
adagber/planner:v1.0e5c1ed097752
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

27,721
kafka-helm-chartnotesprojectchart0.1.01 of 1See more

kafka-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
wurstmeister/kafka:latest2d4bbf9cc83d
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

4,547
logic-ms-helm-chartnotesprojectchart0.1.01 of 2See more

logic-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
vlebediantsev/logic-ms:latestdf8bf38c535b
snappy-java@1.1.8.4
1.1.10.1

Open the chart page →

6,852
registration-ms-helm-chartnotesprojectchart0.1.01 of 2See more

registration-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
vlebediantsev/registration-ms-final:latest427af418b75e
snappy-java@1.1.8.4
1.1.10.1

Open the chart page →

5,916
user-data-ms-helm-chartnotesprojectchart0.1.01 of 2See more

user-data-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
vlebediantsev/user-data-ms-final-final:latest9319437f3c8f
snappy-java@1.1.8.4
1.1.10.1

Open the chart page →

5,873
hive-metastoreolehrgfVerified publisher0.1.01 of 1See more

hive-metastore olehrgf 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
ghcr.io/melodyyangaws/hive-metastore:3.0.0e949b0f733f0
snappy-java@1.1.8.2
1.1.10.1

Open the chart page →

8,540
apicurioone-acre-fundVerified publisher2.3.02 of 5See more

apicurio one-acre-fund 2.3.0

2 of the 5 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
apicurio/apicurio-studio-api:0.2.62.Final302d202ed149
snappy-java@1.1.8.4
1.1.10.1
apicurio/apicurio-studio-ws:0.2.62.Final27a91978a388
snappy-java@1.1.8.4
1.1.10.1

Open the chart page →

18,667
omec-control-planeopencord0.1.312 of 8See more

omec-control-plane opencord 0.1.31

2 of the 8 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
library/cassandra:2.1.20cb079c0d7a57
snappy-java@1.0.5.2
1.1.10.1
omecproject/c3po-hssdb:master-latest28a90cc26716
snappy-java@1.0.5.2
1.1.10.1

Open the chart page →

40,715
ves-agentopencord1.0.21 of 1See more

ves-agent opencord 1.0.2

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
opencord/ves-agent:1.0.04187e2a8c918
snappy-java@1.1.7.1
1.1.10.1

Open the chart page →

6,350
bpjstk-serviceopenshift1.0.01 of 6See more

bpjstk-service openshift 1.0.0

1 of the 6 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
andrianrf/backoffice-be:latest6036614803d4
snappy-java@1.1.8.4
1.1.10.1

Open the chart page →

34,671
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

13,607
smsf-dispatcheropenshift1.0.41 of 1See more

smsf-dispatcher openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

11,738
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

13,568
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

13,551
ussigw-configurationopenshift1.0.41 of 1See more

ussigw-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

13,455
ussigw-coreopenshift1.0.41 of 1See more

ussigw-core openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
gurolakman/ussigw-core:1.0.48739565c3ea2
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

13,100
p4p40.1.01 of 7See more

p4 p4 0.1.0

1 of the 7 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
mastercloudapps/planner:v1.2340a950b311b2
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

27,537
Practica_4_helmpr04helm0.1.01 of 7See more

Practica_4_helm pr04helm 0.1.0

1 of the 7 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
pcarrascoponce/planner:v1.0981fc482442c
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

27,558
hive-metastorepresto-loadbalancer0.2.31 of 1See more

hive-metastore presto-loadbalancer 0.2.3

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
datappeal/hive-metastore:lateste38c085a3567
snappy-java@1.0.5
1.1.10.1

Open the chart page →

9,606
rada-platformrada-platform0.1.01 of 7See more

rada-platform rada-platform 0.1.0

1 of the 7 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
trinodb/trino:45038c6f24ab1a4
snappy-java@1.0.5
1.1.10.1

Open the chart page →

21,211
kafkasb-helm-charts0.3.01 of 2See more

kafka sb-helm-charts 0.3.0

1 of the 2 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
provectuslabs/kafka-ui:latest8f2ff02d64b0
snappy-java@1.1.10.0
1.1.10.1

Open the chart page →

1,597
seataseataVerified publisher0.1.01 of 1See more

seata seata 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
seataio/seata-server:latest703b5de7f1a6
snappy-java@1.1.8.4
1.1.10.1

Open the chart page →

4,245
shenyushenyu0.6.31 of 2See more

shenyu shenyu 0.6.3

1 of the 2 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
apache/shenyu-bootstrap:2.5.11bd5756f6273
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

8,804
zookeepersignoz0.0.11 of 1See more

zookeeper signoz 0.0.1

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
signoz/zookeeper:3.7.1fcc4a3288154
snappy-java@1.1.7.7
1.1.10.1

Open the chart page →

2,917
archivaslamdev0.0.71 of 2See more

archiva slamdev 0.0.7

1 of the 2 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
xetusoss/archiva:v2.2.588f25242b9ee
snappy-java@1.0.5
1.1.10.1

Open the chart page →

6,907
atlassian-jirasomeblackmagic3.3.21 of 1See more

atlassian-jira someblackmagic 3.3.2

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
atlassian/jira-software:8.14.037bc46cbec1a
snappy-java@1.1.7.1
1.1.10.1

Open the chart page →

13,079
unifistartechnicaVerified publisher0.1.31 of 2See more

unifi startechnica 0.1.3

1 of the 2 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
jacobalberty/unifi:v7.1.664a3616625dda
snappy-java@1.1.7.5
1.1.10.1

Open the chart page →

14,493
fdi-dotstatsuite-sfs-solrstatcan1.0.21 of 4See more

fdi-dotstatsuite-sfs-solr statcan 1.0.2

1 of the 4 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
library/solr:8.11.18c5f7881cebb
snappy-java@1.1.7.6
1.1.10.1

Open the chart page →

6,065
solrstatcan1.5.101 of 3See more

solr statcan 1.5.10

1 of the 3 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
library/solr:8.11.18c5f7881cebb
snappy-java@1.1.7.6
1.1.10.1

Open the chart page →

8,806
trinostatcan1.23.41 of 2See more

trino statcan 1.23.4

1 of the 2 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
trinodb/trino:405ee80ab5eeab2
snappy-java@1.0.5
1.1.10.1

Open the chart page →

13,767
static-src-people-detector-appstatic-src-people-detector-chartVerified publisher1.5.54 of 6See more

static-src-people-detector-app static-src-people-detector-chart 1.5.5

4 of the 6 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
fimperato/detected-info-notification:1.2.6-RELEASE6441f6545613
snappy-java@1.1.8.4
1.1.10.1
fimperato/detected-info-store:1.1.0-RELEASEe32920eedd3a
snappy-java@1.1.8.4
1.1.10.1
fimperato/static-src-info-data-transformation:1.0.5-RELEASEdf05c388ea6c
snappy-java@1.1.8.4
1.1.10.1
fimperato/static-src-people-detection:1.1.5-RELEASEc0cfaca070d9
snappy-java@1.1.8.4
1.1.10.1

Open the chart page →

13,646
hadoop-deploymenttejaswita-hadoop-helmchart1.0.01 of 1See more

hadoop-deployment tejaswita-hadoop-helmchart 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
apache/hadoop:3af361b20bec0
snappy-java@1.1.8.2
1.1.10.1

Open the chart page →

4,240
clickhousetemp-charts0.7.11 of 3See more

clickhouse temp-charts 0.7.1

1 of the 3 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
library/zookeeper:3.6.180ad2170ad62
snappy-java@1.1.7
1.1.10.1

Open the chart page →

8,707
thingsboardthingsboardVerified publisher0.1.34 of 12See more

thingsboard thingsboard 0.1.3

4 of the 12 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
thingsboard/tb-coap-transport:3.4.1bd45a09d85d9
snappy-java@1.1.8.4
1.1.10.1
thingsboard/tb-http-transport:3.4.1a06f53c5e2da
snappy-java@1.1.8.4
1.1.10.1
thingsboard/tb-mqtt-transport:3.4.1030f316ce301
snappy-java@1.1.8.4
1.1.10.1
thingsboard/tb-node:3.4.1645f43b688f7
snappy-java@1.1.8.4
1.1.10.1

Open the chart page →

25,394
hermestoukVerified publisher0.6.01 of 3See more

hermes touk 0.6.0

1 of the 3 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
snappy-java@1.1.7.7
1.1.10.1

Open the chart page →

12,455
drillwearefrank1.3.61 of 3See more

drill wearefrank 1.3.6

1 of the 3 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
apache/drill:1.21.11f96558fd292
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

9,397

Container images carrying it

138 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
assistiot/cybersecurity-monitoring_ir-thv:latestc8b6c7eaa0cd
snappy-java@1.1.8.2
1.1.10.1
1
atlassian/jira-software:8.14.037bc46cbec1a
snappy-java@1.1.7.1
1.1.10.1
1
atlassian/jira-software:9.7.264a75aa4ec4e
snappy-java@1.1.8.4
1.1.10.1
1
bitnamilegacy/kafka:3.5.0-debian-11-r08657bb93a581
snappy-java@1.1.10.0
1.1.10.1
1
bitnamilegacy/kafka:3.4.0-debian-11-r6ac64829e45b3
snappy-java@1.1.8.4
1.1.10.1
1
bitnamilegacy/kafka:2.8.1-debian-11-r7b6e381ffd6ae
snappy-java@1.1.8.1
1.1.10.1
1
bitnamilegacy/zookeeper:3.8.1-debian-11-r6dba59d740e13
snappy-java@1.1.7.7
1.1.10.1
1
confluentinc/cp-enterprise-control-center:6.1.0f2975d507a2a
snappy-java@1.1.7.7
1.1.10.1
1
confluentinc/cp-enterprise-kafka:6.1.08f1544df1f48
snappy-java@1.1.7.7
1.1.10.1
1
confluentinc/cp-kafka:7.1.2.amd643bf359d5e340
snappy-java@1.1.8.4
1.1.10.1
1
confluentinc/cp-kafka:5.0.1c87b1c07fb53
snappy-java@1.1.7.1
1.1.10.1
1
confluentinc/cp-kafka:7.5.1dc9b972db002
snappy-java@1.1.10.0
1.1.10.1
1
confluentinc/cp-kafka-connect:6.1.04bc70a83ca6f
snappy-java@1.1.7.7
1.1.10.1
1
confluentinc/cp-kafka-rest:6.1.0b0b7aa26254a
snappy-java@1.1.7.7
1.1.10.1
1
confluentinc/cp-ksqldb-server:6.1.0ee403d5b9090
snappy-java@1.1.7.7
1.1.10.1
1
confluentinc/cp-schema-registry:6.1.0b651d4b6185a
snappy-java@1.1.7.7
1.1.10.1
1
confluentinc/cp-zookeeper:7.5.10bec03c1f3ce
snappy-java@1.1.10.0
1.1.10.1
1
confluentinc/cp-zookeeper:6.1.078c190f4472c
snappy-java@1.1.7.7
1.1.10.1
1
datappeal/hive-metastore:lateste38c085a3567
snappy-java@1.0.5
1.1.10.1
1
dbanda/livy:0.80ca125e68e53
snappy-java@1.0.5
1.1.10.1
1
dbanda/spark:2.4.6d0e6367876ae
snappy-java@1.1.7.5
1.1.10.1
1
deltaio/delta-sharing-server:0.2.08b75118187c5
snappy-java@1.1.7.5
1.1.10.1
1
egdsandaru/apache-ranger-admin:1.0.0681baa1926f4
snappy-java@1.0.5
1.1.10.1
1
expediagroup/pitchfork:1.314f2cf61e7de9
snappy-java@1.1.8.1
1.1.10.1
1
fimperato/detected-info-notification:1.2.6-RELEASE6441f6545613
snappy-java@1.1.8.4
1.1.10.1
1
fimperato/detected-info-store:1.1.0-RELEASEe32920eedd3a
snappy-java@1.1.8.4
1.1.10.1
1
fimperato/sparkvid-api:1.0.5-RELEASE604012b77841
snappy-java@1.1.8.2
1.1.10.1
1
fimperato/static-src-info-data-transformation:1.0.5-RELEASEdf05c388ea6c
snappy-java@1.1.8.4
1.1.10.1
1
fimperato/static-src-people-detection:1.1.5-RELEASEc0cfaca070d9
snappy-java@1.1.8.4
1.1.10.1
1
gchq/accumulo:2.0.1c460bb587d6d
snappy-java@1.1.8.2
1.1.10.1
1
gradiant/hdfs:3.2.2e3bf364fe713
snappy-java@1.0.5
1.1.10.1
1
gresearchdev/siembol-config-editor-rest:latest91863a50afb7
snappy-java@1.1.8.4
1.1.10.1
1
gresearchdev/siembol-storm-topology-manager:latest8dad36a05ebf
snappy-java@1.1.8.4
1.1.10.1
1
gurolakman/smsf-configuration:1.0.49abb3882bcbd
snappy-java@1.1.8.1
1.1.10.1
1
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
snappy-java@1.1.8.1
1.1.10.1
1
gurolakman/smsf-momt:1.0.4ce23b20a8a17
snappy-java@1.1.8.1
1.1.10.1
1
gurolakman/smsf-registration:1.0.4b22e746edd5d
snappy-java@1.1.8.1
1.1.10.1
1
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
snappy-java@1.1.8.1
1.1.10.1
1
gurolakman/ussigw-core:1.0.48739565c3ea2
snappy-java@1.1.8.1
1.1.10.1
1
huertaslopez/i.huertas.2021-v.martinp.2021-planner:2.0.0e2c18bd65472
snappy-java@1.1.8.1
1.1.10.1
1
hugohg34/planner:0.0.2171f61e8d7e2
snappy-java@1.1.8.1
1.1.10.1
1
jacobalberty/unifi:v7.1.664a3616625dda
snappy-java@1.1.7.5
1.1.10.1
1
jacobalberty/unifi:v7.4.162b3edc809a3ff
snappy-java@1.1.8.4
1.1.10.1
1
jingking/geonetwork-hnap:4.2.843e74ab234e1
snappy-java@1.0.3
1.1.10.1
1
library/cassandra:2.1.20cb079c0d7a57
snappy-java@1.0.5.2
1.1.10.1
1
library/logstash:7.17.817a4f64e9cf5
snappy-java@1.1.0.1
1.1.10.1
1
library/solr:8.7.0d124efd81fbb
snappy-java@1.1.7.6
1.1.10.1
1
library/storm:2.4.0bd5d420506d6
snappy-java@1.0.5
1.1.10.1
1
library/zookeeper:3.6.24c8a6d3b2338
snappy-java@1.1.7
1.1.10.1
1
lightbend/spark-history-server:2.4.00bedf37f428a
snappy-java@1.1.7.1
1.1.10.1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.