StackRadar

CVE-2023-39742

Medium

Advisory

Published 25 Aug 2023In the index since 6 Sept 2026
Severity
Medium
worst across findings
CVSS
5.5
base score, highest
EPSS
0.003
28th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
64
of 17,781 indexed, latest versions
Container images
58
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 64 of 17,781 indexed charts deploy, on 58 images.

Affected packageAffected versionsFixed inImages
giflibdeb5.1.4-0.3~16.04, 5.1.4-0.3~16.04.1, 5.1.4-2, 5.1.4-2ubuntu0.1+5 more5.1.4-0.3~16.04.1+esm1, 5.1.4-2ubuntu0.1+esm1, 5.1.9-1ubuntu0.151
giflibapk5.2.1-r2, 5.2.1-r45.2.2-r07
OSV records
ALPINE-CVE-2023-39742DEBIAN-CVE-2023-39742UBUNTU-CVE-2023-39742
Also known as
USN-6824-1

Charts affected

64 by stars
ChartLatestAffected imagesRadar Score
deconzjanip81-helm-chartsVerified publisher0.1.11 of 1See more

deconz janip81-helm-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-39742.

Container imageDigestPackageFixed in
deconzcommunity/deconz:2.29.2062de2362641
giflib@5.2.1-2.5
no fix listed

Open the chart page →

10,780
paperlessk8s-home-lab-repo11.0.11 of 1See more

paperless k8s-home-lab-repo 11.0.1

1 of the 1 container images this version deploys carry CVE-2023-39742.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
giflib@5.2.2-1+b1
no fix listed

Open the chart page →

9,103
home-assistantkfirfer0.5.41 of 1See more

home-assistant kfirfer 0.5.4

1 of the 1 container images this version deploys carry CVE-2023-39742.

Container imageDigestPackageFixed in
homeassistant/home-assistant:2023.10.3021e2afc6e57
giflib@5.2.1-r4
5.2.2-r0

Open the chart page →

6,447
chaos-meshkubeblocksVerified publisher2.7.21 of 4See more

chaos-mesh kubeblocks 2.7.2

1 of the 4 container images this version deploys carry CVE-2023-39742.

Container imageDigestPackageFixed in
ghcr.io/chaos-mesh/chaos-daemon:v2.7.29608d9b51452
giflib@5.2.1-2.5
no fix listed

Open the chart page →

13,497
tinymediamanagermedia-servarrVerified publisher1.6.21 of 2See more

tinymediamanager media-servarr 1.6.2

1 of the 2 container images this version deploys carry CVE-2023-39742.

Container imageDigestPackageFixed in
tinymediamanager/tinymediamanager:5.3.22b34dc85099e
giflib@5.2.2-1+b1
no fix listed

Open the chart page →

7,944
paperless-ngxmt1905027.6.141 of 4See more

paperless-ngx mt190502 7.6.14

1 of the 4 container images this version deploys carry CVE-2023-39742.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.134b05bcd28e69
giflib@5.2.2-1+b1
no fix listed

Open the chart page →

11,950
smilencsaVerified publisher1.1.01 of 23See more

smile ncsa 1.1.0

1 of the 23 container images this version deploys carry CVE-2023-39742.

Container imageDigestPackageFixed in
socialmediamacroscope/autophrase:0.1.570fb11d4f531
giflib@5.1.9-1
5.1.9-1ubuntu0.1

Open the chart page →

109,294
nominatimnominatim-chart1.3.01 of 3See more

nominatim nominatim-chart 1.3.0

1 of the 3 container images this version deploys carry CVE-2023-39742.

Container imageDigestPackageFixed in
mediagis/nominatim:3.7c15e941485ef
giflib@5.1.9-1
5.1.9-1ubuntu0.1

Open the chart page →

22,658
splashntppoolVerified publisher1.0.41 of 1See more

splash ntppool 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-39742.

Container imageDigestPackageFixed in
scrapinghub/splash:3.4.1a5f89bc84606
giflib@5.1.4-2ubuntu0.1
5.1.4-2ubuntu0.1+esm1

Open the chart page →

27,633
paperless-ngxoli-the-devVerified publisher1.1.11 of 1See more

paperless-ngx oli-the-dev 1.1.1

1 of the 1 container images this version deploys carry CVE-2023-39742.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:3.1.3aa810a36942c
giflib@5.2.2-1+deb13u1
no fix listed

Open the chart page →

4,626
cdn-remoteopencord0.2.41 of 3See more

cdn-remote opencord 0.2.4

1 of the 3 container images this version deploys carry CVE-2023-39742.

Container imageDigestPackageFixed in
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
giflib@5.1.4-2
5.1.4-2ubuntu0.1+esm1

Open the chart page →

63,223
javareact-java0.1.01 of 1See more

java react-java 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-39742.

Container imageDigestPackageFixed in
project2team4/react:latest3ff031a08887
giflib@5.1.9-1
5.1.9-1ubuntu0.1

Open the chart page →

15,520
paperless-ngxrtomik-helm-chartsVerified publisher0.0.51 of 1See more

paperless-ngx rtomik-helm-charts 0.0.5

1 of the 1 container images this version deploys carry CVE-2023-39742.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
giflib@5.2.2-1+b1
no fix listed

Open the chart page →

10,605
backendsignalen4.24.01 of 4See more

backend signalen 4.24.0

1 of the 4 container images this version deploys carry CVE-2023-39742.

Container imageDigestPackageFixed in
signalen/backend:2.50.14760256000738
giflib@5.2.1-2.5+deb12u1
no fix listed

Open the chart page →

11,636

Container images carrying it

58 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/paperless-ngx/paperless-ngx:2.20.5665f2f5cc548
giflib@5.2.2-1+b1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
giflib@5.2.1-2.5
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.20.14b89f83345532
giflib@5.2.2-1+b1
no fix listed
1
ghcr.io/seanmorley15/adventurelog-backend:v0.13.00250d9cb0d74
giflib@5.2.2-1+deb13u1
no fix listed
1
ghcr.io/star-whale/server:0.6.158368359c8dd0
giflib@5.1.9-1
5.1.9-1ubuntu0.1
1
ghcr.io/zammad/zammad:7.1.3-0011e65123a43ecc
giflib@5.2.2-1+deb13u1
no fix listed
1
quay.io/opsmxpublic/create-secret:v4.0.4defc3263e0e9
giflib@5.2.1-r2
5.2.2-r0
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
giflib@5.1.4-0.3~16.04.1
5.1.4-0.3~16.04.1+esm1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.