StackRadar

CVE-2023-4039

Medium

Advisory

Published 12 Sept 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.8
base score, highest
EPSS
0.008
53rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,103
of 17,787 indexed, latest versions
Container images
1,152
deployed by those charts
Fix available
5 of 12
affected packages

Security update for gcc12

Carried by container images the latest versions of 1,103 of 17,787 indexed charts deploy, on 1,152 images.

Affected packageAffected versionsFixed inImages
gcc-12deb12-20220319-1ubuntu1, 12.1.0-2ubuntu1~22.04, 12.2.0-14, 12.3.0-1ubuntu1~22.0412.2.0-14+deb12u1, 12.3.0-1ubuntu1~22.04.2675
gcc-10deb10-20200411-0ubuntu1, 10.2.0-5ubuntu1~20.04, 10.3.0-1ubuntu1~20.04, 10.5.0-1ubuntu1~20.0410.5.0-1ubuntu1~20.04.1+esm1279
gcc-8deb8-20180414-1ubuntu2, 8.2.0-1ubuntu2~18.04, 8.3.0-6ubuntu1~18.04, 8.3.0-6ubuntu1~18.04.1+3 moreno fix listed120
gcc-5deb5.4.0-6ubuntu1~16.04.4, 5.4.0-6ubuntu1~16.04.5, 5.4.0-6ubuntu1~16.04.9, 5.4.0-6ubuntu1~16.04.10+2 moreno fix listed69
gccgo-6deb6.0.1-0ubuntu1no fix listed69
gcc-9deb9.3.0-17ubuntu1~20.04, 9.4.0-1ubuntu1~20.04.1, 9.4.0-1ubuntu1~20.04.2no fix listed45
gcc-7deb7.3.0-3ubuntu1, 7.3.0-27ubuntu1~18.04, 7.4.0-1ubuntu1~18.04, 7.4.0-1ubuntu1~18.04.1+2 moreno fix listed28
gcc-11deb11.2.0-19ubuntu1, 11.3.0-1ubuntu1~22.04, 11.3.0-12, 11.4.0-1ubuntu1~22.0411.4.0-1ubuntu1~22.04.214
gcc-4.8deb4.8.2-19ubuntu1, 4.8.4-2ubuntu1~14.04.3, 4.8.4-2ubuntu1~14.04.4no fix listed7
gccgo-4.9deb4.9.1-0ubuntu1, 4.9.3-0ubuntu4no fix listed7
gccapk13.1.0-r113.2.0-r31
gcc12rpm12.2.1+git416-150000.1.5.112.3.0+git1204-150000.1.16.11
OSV records
CGA-9fp5-8r38-hf7jDEBIAN-CVE-2023-4039UBUNTU-CVE-2023-4039SUSE-SU-2023:3661-1
Also known as
CGA-hg9x-wx5h-8pph, CGA-qp75-5rvw-vmvm, CGA-xfqf-q2hm-g3r5, USN-7700-1

Charts affected

1,103 by stars
ChartLatestAffected imagesRadar Score
xkopsxkops0.1.03 of 5See more

xkops xkops 0.1.0

3 of the 5 container images this version deploys carry CVE-2023-4039.

Container imageDigestPackageFixed in
hamzaarshad10/querybackend:1.6.22c1c3b86a8e7
gcc-12@12.2.0-14
12.2.0-14+deb12u1
hamzaarshad10/querypodpy:1.7154f38e8668e
gcc-12@12.2.0-14
12.2.0-14+deb12u1
murtazashah46/helmfile:latest4d11726cf803
gcc-12@12.2.0-14
12.2.0-14+deb12u1

Open the chart page →

13,197
api-snapyoukadevVerified publisher0.1.11 of 1See more

api-snap youkadev 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-4039.

Container imageDigestPackageFixed in
youkadev/api-snap:0.1.14db0f9428e67
gcc-12@12.2.0-14
12.2.0-14+deb12u1

Open the chart page →

2,674
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2023-4039.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
yandex/clickhouse-server:21.3.204eccfffb01d7
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1

Open the chart page →

9,250

Container images carrying it

1,152 by charts deploying them

A fixed version is listed for 5 of the 12 affected packages.

Container imageDigestPackageFixed inUsed by
opencsghq/csghub-portal:v2.4.0-ee93ad59164d87
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
opencsghq/gitlab-gitaly:v17.5.0bdd2c58b9744
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
opencsghq/gitlab-shell:v17.5.0f6d7e7d6be5d
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
opendatacube/pipelines:wofs-1.225d810e8504b8
gcc-7@7.3.0-27ubuntu1~18.04
gcc-8@8.2.0-1ubuntu2~18.04
no fix listed
no fix listed
1
opendatacube/restcube:latest91870111837c
gcc-7@7.4.0-1ubuntu1~18.04
gcc-8@8.3.0-6ubuntu1~18.04
no fix listed
no fix listed
1
opendatacube/wms:latest1b90cdf68831
gcc-7@7.4.0-1ubuntu1~18.04
gcc-8@8.3.0-6ubuntu1~18.04
no fix listed
no fix listed
1
opendatacube/wps:latest80df355a660b
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
openelevation/open-elevation:latest82fb21612e86
gcc-10@10.3.0-1ubuntu1~20.04
gcc-9@9.3.0-17ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
no fix listed
1
openkm/openkm-ce:6.3.113bc465a7461b
gcc-10@10.3.0-1ubuntu1~20.04
gcc-9@9.4.0-1ubuntu1~20.04.1
10.5.0-1ubuntu1~20.04.1+esm1
no fix listed
1
openpolicyagent/opa:0.53.16a58dea59933
gcc@13.1.0-r1
13.2.0-r3
1
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
openstackhelm/heat:wallaby-ubuntu_focalf728510bab3c
gcc-10@10.5.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
openstackhelm/keystone:wallaby-ubuntu_focale07d75953d2e
gcc-10@10.5.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
openthread/otbr:latestf307f59f6432
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
openwhisk/ow-utils:1.0.0c80dba0de3aa
gcc-7@7.5.0-3ubuntu1~18.04
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
no fix listed
1
opsmx11/issuegen:v2.1.05c50ca123d88
gcc-4.8@4.8.4-2ubuntu1~14.04.4
gccgo-4.9@4.9.3-0ubuntu4
no fix listed
no fix listed
1
outlinewiki/outline:0.82.0494dfb9249a6
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
owncloud/server:10.15.051d9b74fc2a8
gcc-10@10.5.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
oxfordsemantic/rdfox:5.6db17910eb855
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
oxfordsemantic/rdfox-init:5.6baf570ff968d
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
pangeo/base-notebook:2024.01.155fbe688a4f80
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
penpotapp/backend:2.2.147853d9bb9dd
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
penpotapp/exporter:2.2.15c835ffd87ab
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
phan2410/dummy-service:0.0.89c6ed6de26ca
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
phan2410/falcon-asgi-server:0.1.04a86d138832d
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
phntom/mattermost-team-edition:9.3.051cf9da4aa2e
gcc-12@12.1.0-2ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
photoprism/photoprism:220629-jammy2954334adbda
gcc-12@12-20220319-1ubuntu1
12.3.0-1ubuntu1~22.04.2
1
platform9community/admin-server:latestde3fa9b70df1
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
platform9community/api-gateway:latest40a4970de568
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
platform9community/customers-service:latest2089811e5cc6
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
platform9community/vets-service:latestd1165c94dfb3
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
platform9community/visits-service:latest8d11b50368c6
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
plexinc/pms-docker:1.25.4.5487-648a8f9f946ea59b96f2b
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
plexinc/pms-docker:1.19.5.3112-b23ab3896b598abb134ad
gcc-5@5.4.0-6ubuntu1~16.04.10
gccgo-6@6.0.1-0ubuntu1
no fix listed
no fix listed
1
pococze/python-hello-elos:2.0.07a1aab425e51
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
pozetroninc/keydb:v6.0.1653ae64f29da8
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
pposkrobko/risk-advisor:v1.0.0eaf260341dba
gcc-5@5.4.0-6ubuntu1~16.04.4
gccgo-6@6.0.1-0ubuntu1
no fix listed
no fix listed
1
praravind1801/helmimages:3.0.0f29d637b9ce1
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
prefecthq/prefect:2.20.4-python3.101df4b5b6238a
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
project2team4/react:latest3ff031a08887
gcc-10@10.3.0-1ubuntu1~20.04
gcc-9@9.4.0-1ubuntu1~20.04.1
10.5.0-1ubuntu1~20.04.1+esm1
no fix listed
1
promzeus/redis-sentinel-gateway:v182f6d56e280b
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
proxysql/proxysql:2.7.3a4d6c35c2949
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
pschichtel/mindustry-server:v145.1b543e9c2d371
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
psorab/elibrary:latest53b68896c4ce
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ptthanh1511/freeradius-server:3.0.26-netdebug5741cbde85ab
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
puppet/puppet-agent:7.14.00b6fd9a6b7da
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
qdrant/qdrant:v1.7.45f2a56b95266
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
qdrant/qdrant:v1.4.166ee661d5241
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
quickwit/quickwit:v0.8.1d29332bdadcc
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
qumine/minecraft-server:v0.1.15c0b650d51132
gcc-12@12.1.0-2ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.