StackRadar

CVE-2023-4039

Medium

Advisory

Published 12 Sept 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.8
base score, highest
EPSS
0.008
53rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,103
of 17,790 indexed, latest versions
Container images
1,152
deployed by those charts
Fix available
5 of 12
affected packages

Security update for gcc12

Carried by container images the latest versions of 1,103 of 17,790 indexed charts deploy, on 1,152 images.

Affected packageAffected versionsFixed inImages
gcc-12deb12-20220319-1ubuntu1, 12.1.0-2ubuntu1~22.04, 12.2.0-14, 12.3.0-1ubuntu1~22.0412.2.0-14+deb12u1, 12.3.0-1ubuntu1~22.04.2675
gcc-10deb10-20200411-0ubuntu1, 10.2.0-5ubuntu1~20.04, 10.3.0-1ubuntu1~20.04, 10.5.0-1ubuntu1~20.0410.5.0-1ubuntu1~20.04.1+esm1279
gcc-8deb8-20180414-1ubuntu2, 8.2.0-1ubuntu2~18.04, 8.3.0-6ubuntu1~18.04, 8.3.0-6ubuntu1~18.04.1+3 moreno fix listed120
gcc-5deb5.4.0-6ubuntu1~16.04.4, 5.4.0-6ubuntu1~16.04.5, 5.4.0-6ubuntu1~16.04.9, 5.4.0-6ubuntu1~16.04.10+2 moreno fix listed69
gccgo-6deb6.0.1-0ubuntu1no fix listed69
gcc-9deb9.3.0-17ubuntu1~20.04, 9.4.0-1ubuntu1~20.04.1, 9.4.0-1ubuntu1~20.04.2no fix listed45
gcc-7deb7.3.0-3ubuntu1, 7.3.0-27ubuntu1~18.04, 7.4.0-1ubuntu1~18.04, 7.4.0-1ubuntu1~18.04.1+2 moreno fix listed28
gcc-11deb11.2.0-19ubuntu1, 11.3.0-1ubuntu1~22.04, 11.3.0-12, 11.4.0-1ubuntu1~22.0411.4.0-1ubuntu1~22.04.214
gcc-4.8deb4.8.2-19ubuntu1, 4.8.4-2ubuntu1~14.04.3, 4.8.4-2ubuntu1~14.04.4no fix listed7
gccgo-4.9deb4.9.1-0ubuntu1, 4.9.3-0ubuntu4no fix listed7
gccapk13.1.0-r113.2.0-r31
gcc12rpm12.2.1+git416-150000.1.5.112.3.0+git1204-150000.1.16.11
OSV records
CGA-9fp5-8r38-hf7jDEBIAN-CVE-2023-4039UBUNTU-CVE-2023-4039SUSE-SU-2023:3661-1
Also known as
CGA-hg9x-wx5h-8pph, CGA-qp75-5rvw-vmvm, CGA-xfqf-q2hm-g3r5, USN-7700-1

Charts affected

1,103 by stars
ChartLatestAffected imagesRadar Score
xkopsxkops0.1.03 of 5See more

xkops xkops 0.1.0

3 of the 5 container images this version deploys carry CVE-2023-4039.

Container imageDigestPackageFixed in
hamzaarshad10/querybackend:1.6.22c1c3b86a8e7
gcc-12@12.2.0-14
12.2.0-14+deb12u1
hamzaarshad10/querypodpy:1.7154f38e8668e
gcc-12@12.2.0-14
12.2.0-14+deb12u1
murtazashah46/helmfile:latest4d11726cf803
gcc-12@12.2.0-14
12.2.0-14+deb12u1

Open the chart page →

13,197
api-snapyoukadevVerified publisher0.1.11 of 1See more

api-snap youkadev 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-4039.

Container imageDigestPackageFixed in
youkadev/api-snap:0.1.14db0f9428e67
gcc-12@12.2.0-14
12.2.0-14+deb12u1

Open the chart page →

2,674
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2023-4039.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
yandex/clickhouse-server:21.3.204eccfffb01d7
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1

Open the chart page →

9,250

Container images carrying it

1,152 by charts deploying them

A fixed version is listed for 5 of the 12 affected packages.

Container imageDigestPackageFixed inUsed by
qxip/qryn:3.2.3977acc9c7a9fd
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
rabeh/apibootspring:1.0941007b6946e
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
radondb/clickhouse-server:v21.1.3.32-stable4732df471073
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
rancher/local-path-provisioner:v0.0.5e66f32d19eb9
gcc-5@5.4.0-6ubuntu1~16.04.10
gccgo-6@6.0.1-0ubuntu1
no fix listed
no fix listed
1
razorbladex401/dayz:latest6a4d79248e7d
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
redis/redis-stack-server:6.2.6-v251a58f32d412
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
redis/redis-stack-server:7.4.0-v0887cf87cc744
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
resouer/redis-slave:v2e2f198b49ba7
gcc-4.8@4.8.2-19ubuntu1
gccgo-4.9@4.9.1-0ubuntu1
no fix listed
no fix listed
1
resurfaceio/resurface:3.7.84d5cda2f64109
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
rezachalak/bzen-mongo:1.0.034f694325191
gcc-10@10.5.0-1ubuntu1~20.04
gcc-9@9.4.0-1ubuntu1~20.04.1
10.5.0-1ubuntu1~20.04.1+esm1
no fix listed
1
rm3l/service-names-port-numbers:0.12.162d1cc4223e5
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
rnwood/smtp4dev:3.6.1912304153668
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
robotshop/rs-mongodb:latest119b545823cd
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
rraahul/test:latestbfe2c1183bc0
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
rundeck/rundeck:3.2.74d64fe56f767
gcc-5@5.4.0-6ubuntu1~16.04.12
gccgo-6@6.0.1-0ubuntu1
no fix listed
no fix listed
1
rundeck/rundeck:3.0.16b13e8059ad72
gcc-5@5.4.0-6ubuntu1~16.04.11
gccgo-6@6.0.1-0ubuntu1
no fix listed
no fix listed
1
ryuunosukeds3/nadeko-bot-docker:latestc0398f13e8a9
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
salaboy/agenda-service-0967b907d9920c99918e2b91b91937b3ce9ce8293e4e
gcc-12@12.1.0-2ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
salaboy/c4p-service-a3dc0474cbfa348afcdf47a8eee70ba9bb64bf14467d
gcc-12@12.1.0-2ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
salaboy/notifications-service-0e27884e01429ab7e350cb5dff61b525799c35f9f306
gcc-12@12.1.0-2ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
santisbon/evwatcher:latestc4e994ca4540
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
santisbon/evworker:lateste807283f8d69
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
santisbon/speedtest:latest8ee3a1697227
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
sashafefler/spacecapybara_app:latestf96d7804c0ca
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
sbs20/scanservjs:release-v3.0.3dad1fd6e9a98
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
scholtz2/algorand-participation-aramidmain-extended:4.4.1-stablef12ce1cfb72e
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
scholtz2/algorand-participation-mainnet-extended:4.4.1-stable5aaa5d4ab8b8
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
scholtz2/algorand-participation-voimain-extended:4.4.1-stable64966de56d9f
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
scrapinghub/splash:3.4.1a5f89bc84606
gcc-7@7.4.0-1ubuntu1~18.04.1
gcc-8@8.3.0-6ubuntu1~18.04.1
no fix listed
no fix listed
1
scsibug/nostr-rs-relay:0.9.003f54bfbffff
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
seafileltd/seafile-mc:9.0.106693911bcc40
gcc-10@10.3.0-1ubuntu1~20.04
gcc-9@9.4.0-1ubuntu1~20.04.1
10.5.0-1ubuntu1~20.04.1+esm1
no fix listed
1
seafileltd/seafile-mc:10.0.170628f29c663
gcc-10@10.3.0-1ubuntu1~20.04
gcc-9@9.4.0-1ubuntu1~20.04.1
10.5.0-1ubuntu1~20.04.1+esm1
no fix listed
1
seafileltd/seafile-mc:9.0.97ac833196f60
gcc-10@10.3.0-1ubuntu1~20.04
gcc-9@9.4.0-1ubuntu1~20.04.1
10.5.0-1ubuntu1~20.04.1+esm1
no fix listed
1
seafileltd/seafile-mc:11.0.12d0c66e4621bd
gcc-11@11.4.0-1ubuntu1~22.04
gcc-12@12.3.0-1ubuntu1~22.04
11.4.0-1ubuntu1~22.04.2
12.3.0-1ubuntu1~22.04.2
1
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
gcc-10@10.3.0-1ubuntu1~20.04
gcc-9@9.3.0-17ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
no fix listed
1
seldonio/locust-core:0.81d0da98a2d76
gcc-5@5.4.0-6ubuntu1~16.04.11
gccgo-6@6.0.1-0ubuntu1
no fix listed
no fix listed
1
shamimkuet/nginx:1.0.2b82902a76a04
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
sharanalwar/redchef-backend:latest8d3cab80df49
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
shenxn/protonmail-bridge:1.8.7-1acf31af7c111
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
signoz/signoz-otel-collector:v0.144.972aa1e4c1ec5
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
sigp/lighthouse:v7.0.12cae720e9a35
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
sigp/lighthouse:v7.1.0870934e38931
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
sigp/lighthouse:v2.1.2ad501f02cfef
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
sirrend/helmup-engine:0.1.13699e79e3d4e2
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
sirrend/helmup-github-scraper:0.1.47ca688c7abf5
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
sirrend/helmup-notifications-service:0.1.3997866417011
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
sismics/docs:v1.10f4b0ef019cf1
gcc-7@7.3.0-3ubuntu1
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
no fix listed
1
sissbruecker/linkding:1.35.00c5dddf0b37c
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
slagattollas/weatherservice-practica:latest68e7f56393fc
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
snipe/snipe-it:v6.0.1455fb7636a98c
gcc-10@10.3.0-1ubuntu1~20.04
gcc-9@9.4.0-1ubuntu1~20.04.1
10.5.0-1ubuntu1~20.04.1+esm1
no fix listed
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.