StackRadar

CVE-2023-4039

Medium

Advisory

Published 12 Sept 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.8
base score, highest
EPSS
0.008
54th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,103
of 17,790 indexed, latest versions
Container images
1,152
deployed by those charts
Fix available
5 of 12
affected packages

Security update for gcc12

Carried by container images the latest versions of 1,103 of 17,790 indexed charts deploy, on 1,152 images.

Affected packageAffected versionsFixed inImages
gcc-12deb12-20220319-1ubuntu1, 12.1.0-2ubuntu1~22.04, 12.2.0-14, 12.3.0-1ubuntu1~22.0412.2.0-14+deb12u1, 12.3.0-1ubuntu1~22.04.2675
gcc-10deb10-20200411-0ubuntu1, 10.2.0-5ubuntu1~20.04, 10.3.0-1ubuntu1~20.04, 10.5.0-1ubuntu1~20.0410.5.0-1ubuntu1~20.04.1+esm1279
gcc-8deb8-20180414-1ubuntu2, 8.2.0-1ubuntu2~18.04, 8.3.0-6ubuntu1~18.04, 8.3.0-6ubuntu1~18.04.1+3 moreno fix listed120
gcc-5deb5.4.0-6ubuntu1~16.04.4, 5.4.0-6ubuntu1~16.04.5, 5.4.0-6ubuntu1~16.04.9, 5.4.0-6ubuntu1~16.04.10+2 moreno fix listed69
gccgo-6deb6.0.1-0ubuntu1no fix listed69
gcc-9deb9.3.0-17ubuntu1~20.04, 9.4.0-1ubuntu1~20.04.1, 9.4.0-1ubuntu1~20.04.2no fix listed45
gcc-7deb7.3.0-3ubuntu1, 7.3.0-27ubuntu1~18.04, 7.4.0-1ubuntu1~18.04, 7.4.0-1ubuntu1~18.04.1+2 moreno fix listed28
gcc-11deb11.2.0-19ubuntu1, 11.3.0-1ubuntu1~22.04, 11.3.0-12, 11.4.0-1ubuntu1~22.0411.4.0-1ubuntu1~22.04.214
gcc-4.8deb4.8.2-19ubuntu1, 4.8.4-2ubuntu1~14.04.3, 4.8.4-2ubuntu1~14.04.4no fix listed7
gccgo-4.9deb4.9.1-0ubuntu1, 4.9.3-0ubuntu4no fix listed7
gccapk13.1.0-r113.2.0-r31
gcc12rpm12.2.1+git416-150000.1.5.112.3.0+git1204-150000.1.16.11
OSV records
CGA-9fp5-8r38-hf7jDEBIAN-CVE-2023-4039UBUNTU-CVE-2023-4039SUSE-SU-2023:3661-1
Also known as
CGA-hg9x-wx5h-8pph, CGA-qp75-5rvw-vmvm, CGA-xfqf-q2hm-g3r5, USN-7700-1

Charts affected

1,103 by stars
ChartLatestAffected imagesRadar Score
xkopsxkops0.1.03 of 5See more

xkops xkops 0.1.0

3 of the 5 container images this version deploys carry CVE-2023-4039.

Container imageDigestPackageFixed in
hamzaarshad10/querybackend:1.6.22c1c3b86a8e7
gcc-12@12.2.0-14
12.2.0-14+deb12u1
hamzaarshad10/querypodpy:1.7154f38e8668e
gcc-12@12.2.0-14
12.2.0-14+deb12u1
murtazashah46/helmfile:latest4d11726cf803
gcc-12@12.2.0-14
12.2.0-14+deb12u1

Open the chart page →

13,783
api-snapyoukadevVerified publisher0.1.11 of 1See more

api-snap youkadev 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-4039.

Container imageDigestPackageFixed in
youkadev/api-snap:0.1.14db0f9428e67
gcc-12@12.2.0-14
12.2.0-14+deb12u1

Open the chart page →

2,684
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2023-4039.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
yandex/clickhouse-server:21.3.204eccfffb01d7
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1

Open the chart page →

9,256

Container images carrying it

1,152 by charts deploying them

A fixed version is listed for 5 of the 12 affected packages.

Container imageDigestPackageFixed inUsed by
typesense/typesense:28.0.rc35dea1b62b7b6e
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
ubuntu/bind9:9.16-20.04_beta5ee73f44e5d0
gcc-10@10.5.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
utkuozdemir/nvidia_gpu_exporter:0.3.0149f9e7e7aa3
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
valkey/valkey:8.0.1c5d4f082b76d
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
vcnngr/telegram-login:latest1a849a997b6d
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
vcnngr/telegram-rebot:latest30f1f05e57a6
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
venturenox/redis:latest83b471c193ba
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
vexorian/dizquetv:1.4.37e2b99844a5c
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
vientoprojects/kubernetes-monitoring-telegram-bot:latesteb2a71531741
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
vinanrra/7dtd-server:v0.4.4f9534490bd2b
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
visualregressiontracker/api:5.0.11941aeb8c8bf9
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
vlebediantsev/notes-admin-front:latest007c6670ff48
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
vlebediantsev/notes-project-front:latest945675fd2636
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
vlebediantsev/registration-ms-front-app-host:latest54f69d116c50
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
voltha/bbsim:1.16.7d90403d58016
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
voltha/bbsim-sadis-server:0.3.5259fc3a03f4e
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
voltha/bbsim-sadis-server:0.4.0762b272d439e
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
voltha/voltha-cli:1.6.0c4e41e92f046
gcc-5@5.4.0-6ubuntu1~16.04.10
gccgo-6@6.0.1-0ubuntu1
no fix listed
no fix listed
1
voltha/voltha-envoy:1.6.059ab2a00f712
gcc-4.8@4.8.4-2ubuntu1~14.04.3
gccgo-4.9@4.9.3-0ubuntu4
no fix listed
no fix listed
1
voltha/voltha-netconf:1.6.037f80524c207
gcc-5@5.4.0-6ubuntu1~16.04.10
gccgo-6@6.0.1-0ubuntu1
no fix listed
no fix listed
1
voltha/voltha-ofagent:1.6.09ee8c1f4428c
gcc-5@5.4.0-6ubuntu1~16.04.10
gccgo-6@6.0.1-0ubuntu1
no fix listed
no fix listed
1
voltha/voltha-onos:5.1.8e038acb950d3
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
voltha/voltha-tester:1.7.0655c3048a602
gcc-5@5.4.0-6ubuntu1~16.04.11
gccgo-6@6.0.1-0ubuntu1
no fix listed
no fix listed
1
voltha/voltha-voltha:1.6.0ff596b62de59
gcc-5@5.4.0-6ubuntu1~16.04.10
gccgo-6@6.0.1-0ubuntu1
no fix listed
no fix listed
1
wallarm/kong:3.1.0-ubuntu-4.6.0ea9608c82e40
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
wasmcloud/wasmcloud:0.81.05c7acfe7e8e1
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
wateim/lighthouse-launch:latest2520149ee574
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
wavefronthq/proxy:9.2d1064d28f6eb
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
wazuh/wazuh-dashboard:4.4.11787550d2358
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
wazuh/wazuh-manager:4.4.121994f40e0da
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
wekanteam/wekan:v4.2268a51f0327df
gcc-10@10-20200411-0ubuntu1
10.5.0-1ubuntu1~20.04.1+esm1
1
wistefan/mvf:lateste0887302b2d8
gcc-12@12.1.0-2ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
wolveix/satisfactory-server:v1.9.1199be1064b18
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
wolveix/satisfactory-server:v1.9.9464d11e36e10
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
woojoong/wowza:latestec230db19652
gcc-8@8.2.0-1ubuntu2~18.04
no fix listed
1
workadventure/playwright-synthetic-monitoring:main92b664c2a06f
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
xeladock/mysql_dns:latest4baf531453f1
gcc-11@11.2.0-19ubuntu1
gcc-12@12-20220319-1ubuntu1
11.4.0-1ubuntu1~22.04.2
12.3.0-1ubuntu1~22.04.2
1
xeladock/nginx2:latestc259a67b1dff
gcc-12@12-20220319-1ubuntu1
12.3.0-1ubuntu1~22.04.2
1
xeotek/kadeck:4.2.94c6b04d9ce55
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
xingse/kubernetes-oom-event-generator:v1.2.09f9d5492e4bf
gcc-5@5.4.0-6ubuntu1~16.04.12
gccgo-6@6.0.1-0ubuntu1
no fix listed
no fix listed
1
xom4ekp2p/infini-route-attestators-public-mainnet-attester:latestd0e0aa238b02
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
xom4ekp2p/infini-route-attestators-public-mainnet-avs-webapi:latest2745b5fd8785
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
yandex/clickhouse-client:21.3863f94a0f607
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
yandex/clickhouse-server:latest1cbf75aabe1e
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
yandex/clickhouse-server:21.3.204eccfffb01d7
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
yandex/clickhouse-server:19.17ab1738a64b70
gcc-7@7.5.0-3ubuntu1~18.04
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
no fix listed
1
yandex/clickhouse-server:19.14ccf9c2b5e3f2
gcc-7@7.5.0-3ubuntu1~18.04
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
no fix listed
1
yandex/clickhouse-server:19.16d210dc69321e
gcc-7@7.5.0-3ubuntu1~18.04
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
no fix listed
1
youkadev/api-snap:0.1.14db0f9428e67
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
zabbix/zabbix-agent:ubuntu-5.4.62127168cab03
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.