StackRadar

CVE-2023-38858

Medium

Advisory

Published 15 Aug 2023In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
6.5
base score, highest
EPSS
0.010
61st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
8
of 17,781 indexed, latest versions
Container images
6
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 8 of 17,781 indexed charts deploy, on 6 images.

Affected packageAffected versionsFixed inImages
faad2deb2.8.0~cvs20150510-1, 2.9.1-1, 2.11.1-1build12.8.0~cvs20150510-1ubuntu0.1+esm1, 2.9.1-1ubuntu0.16
OSV records
UBUNTU-CVE-2023-38858
Also known as
USN-6313-1

Charts affected

8 by stars
ChartLatestAffected imagesRadar Score
smarter-demosmarterOfficialVerified publisher0.1.52 of 7See more

smarter-demo smarter 0.1.5

2 of the 7 container images this version deploys carry CVE-2023-38858.

Container imageDigestPackageFixed in
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
faad2@2.9.1-1
2.9.1-1ubuntu0.1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
faad2@2.9.1-1
2.9.1-1ubuntu0.1

Open the chart page →

45,832
xtevegeek-cookbookVerified publisher8.4.21 of 1See more

xteve geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2023-38858.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
faad2@2.9.1-1
2.9.1-1ubuntu0.1

Open the chart page →

17,929
itm-servicesintelVerified publisher2.0.01 of 8See more

itm-services intel 2.0.0

1 of the 8 container images this version deploys carry CVE-2023-38858.

Container imageDigestPackageFixed in
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
faad2@2.9.1-1
2.9.1-1ubuntu0.1

Open the chart page →

18,066
cdn-remoteopencord0.2.41 of 3See more

cdn-remote opencord 0.2.4

1 of the 3 container images this version deploys carry CVE-2023-38858.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:1.0.0d59ccb138ffb
faad2@2.8.0~cvs20150510-1
2.8.0~cvs20150510-1ubuntu0.1+esm1

Open the chart page →

63,223
mcord-cdn-remoteopencord0.1.61 of 2See more

mcord-cdn-remote opencord 0.1.6

1 of the 2 container images this version deploys carry CVE-2023-38858.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
faad2@2.8.0~cvs20150510-1
2.8.0~cvs20150510-1ubuntu0.1+esm1

Open the chart page →

42,614
mcord-cdn-remote-freeopencord0.1.31 of 1See more

mcord-cdn-remote-free opencord 0.1.3

1 of the 1 container images this version deploys carry CVE-2023-38858.

Container imageDigestPackageFixed in
omecproject/cdn-video-repo:remote-v3d59ccb138ffb
faad2@2.8.0~cvs20150510-1
2.8.0~cvs20150510-1ubuntu0.1+esm1

Open the chart page →

29,124
kurento_webrtc_demostunner0.1.01 of 2See more

kurento_webrtc_demo stunner 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-38858.

Container imageDigestPackageFixed in
kurento/kurento-media-server:latest03c0d34d0828
faad2@2.11.1-1build1
no fix listed

Open the chart page →

12,460
stunner-kurento-one2one-callstunner0.1.01 of 2See more

stunner-kurento-one2one-call stunner 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-38858.

Container imageDigestPackageFixed in
kurento/kurento-media-server:latest03c0d34d0828
faad2@2.11.1-1build1
no fix listed

Open the chart page →

12,460

Container images carrying it

6 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
faad2@2.8.0~cvs20150510-1
2.8.0~cvs20150510-1ubuntu0.1+esm1
3
kurento/kurento-media-server:latest03c0d34d0828
faad2@2.11.1-1build1
no fix listed
2
intel/dlstreamer-pipeline-server:2022.1.1-ubuntu20aa8f5483a2ef
faad2@2.9.1-1
2.9.1-1ubuntu0.1
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
faad2@2.9.1-1
2.9.1-1ubuntu0.1
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
faad2@2.9.1-1
2.9.1-1ubuntu0.1
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
faad2@2.9.1-1
2.9.1-1ubuntu0.1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.