StackRadar

CVE-2023-4039

Medium

Advisory

Published 12 Sept 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.8
base score, highest
EPSS
0.008
54th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,103
of 17,790 indexed, latest versions
Container images
1,152
deployed by those charts
Fix available
5 of 12
affected packages

Security update for gcc12

Carried by container images the latest versions of 1,103 of 17,790 indexed charts deploy, on 1,152 images.

Affected packageAffected versionsFixed inImages
gcc-12deb12-20220319-1ubuntu1, 12.1.0-2ubuntu1~22.04, 12.2.0-14, 12.3.0-1ubuntu1~22.0412.2.0-14+deb12u1, 12.3.0-1ubuntu1~22.04.2675
gcc-10deb10-20200411-0ubuntu1, 10.2.0-5ubuntu1~20.04, 10.3.0-1ubuntu1~20.04, 10.5.0-1ubuntu1~20.0410.5.0-1ubuntu1~20.04.1+esm1279
gcc-8deb8-20180414-1ubuntu2, 8.2.0-1ubuntu2~18.04, 8.3.0-6ubuntu1~18.04, 8.3.0-6ubuntu1~18.04.1+3 moreno fix listed120
gcc-5deb5.4.0-6ubuntu1~16.04.4, 5.4.0-6ubuntu1~16.04.5, 5.4.0-6ubuntu1~16.04.9, 5.4.0-6ubuntu1~16.04.10+2 moreno fix listed69
gccgo-6deb6.0.1-0ubuntu1no fix listed69
gcc-9deb9.3.0-17ubuntu1~20.04, 9.4.0-1ubuntu1~20.04.1, 9.4.0-1ubuntu1~20.04.2no fix listed45
gcc-7deb7.3.0-3ubuntu1, 7.3.0-27ubuntu1~18.04, 7.4.0-1ubuntu1~18.04, 7.4.0-1ubuntu1~18.04.1+2 moreno fix listed28
gcc-11deb11.2.0-19ubuntu1, 11.3.0-1ubuntu1~22.04, 11.3.0-12, 11.4.0-1ubuntu1~22.0411.4.0-1ubuntu1~22.04.214
gcc-4.8deb4.8.2-19ubuntu1, 4.8.4-2ubuntu1~14.04.3, 4.8.4-2ubuntu1~14.04.4no fix listed7
gccgo-4.9deb4.9.1-0ubuntu1, 4.9.3-0ubuntu4no fix listed7
gccapk13.1.0-r113.2.0-r31
gcc12rpm12.2.1+git416-150000.1.5.112.3.0+git1204-150000.1.16.11
OSV records
CGA-9fp5-8r38-hf7jDEBIAN-CVE-2023-4039UBUNTU-CVE-2023-4039SUSE-SU-2023:3661-1
Also known as
CGA-hg9x-wx5h-8pph, CGA-qp75-5rvw-vmvm, CGA-xfqf-q2hm-g3r5, USN-7700-1

Charts affected

1,103 by stars
ChartLatestAffected imagesRadar Score
xkopsxkops0.1.03 of 5See more

xkops xkops 0.1.0

3 of the 5 container images this version deploys carry CVE-2023-4039.

Container imageDigestPackageFixed in
hamzaarshad10/querybackend:1.6.22c1c3b86a8e7
gcc-12@12.2.0-14
12.2.0-14+deb12u1
hamzaarshad10/querypodpy:1.7154f38e8668e
gcc-12@12.2.0-14
12.2.0-14+deb12u1
murtazashah46/helmfile:latest4d11726cf803
gcc-12@12.2.0-14
12.2.0-14+deb12u1

Open the chart page →

13,783
api-snapyoukadevVerified publisher0.1.11 of 1See more

api-snap youkadev 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-4039.

Container imageDigestPackageFixed in
youkadev/api-snap:0.1.14db0f9428e67
gcc-12@12.2.0-14
12.2.0-14+deb12u1

Open the chart page →

2,684
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2023-4039.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
yandex/clickhouse-server:21.3.204eccfffb01d7
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1

Open the chart page →

9,256

Container images carrying it

1,152 by charts deploying them

A fixed version is listed for 5 of the 12 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
ghcr.io/edgelesssys/edgelessdb-sgx-1gb:v0.3.27e1d7a11a11a
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/element-hq/matrix-authentication-service:0.14.0834ea54370f0
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
ghcr.io/element-hq/synapse:v1.111.022ae556e0de4
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
ghcr.io/epinio/epinio-ui:v1.7.1-0.0.1d3de52dfb0b4
gcc12@12.2.1+git416-150000.1.5.1
12.3.0+git1204-150000.1.16.1
1
ghcr.io/ferama/rospo:v0.12.0ab40c1745534
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
ghcr.io/ferama/vipien:v0.5.3923a3f704b21
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/formancehq/console:console-on.v1.1.1a4d32c2f68b3
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
ghcr.io/formancehq/ledger:v1.9.203c1ddbda33b
gcc-12@12.1.0-2ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
ghcr.io/formancehq/membership:v1.11.024a0113d5fb0
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
ghcr.io/gearbox-protocol/safe-watcher:1.2.14e92a4508bee
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
ghcr.io/graphprotocol/availability-oracle:sha-28312fd472a25038957
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
gcc-10@10.3.0-1ubuntu1~20.04
gcc-9@9.4.0-1ubuntu1~20.04.1
10.5.0-1ubuntu1~20.04.1+esm1
no fix listed
1
ghcr.io/hemslo/chat-search:latest39d48995a5bd
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
ghcr.io/huggingface/text-embeddings-inference:cpu-1.666db77d7856c
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
ghcr.io/hypolia/kanri:0.1.2-rc4fa7d5cc7fb7d
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
ghcr.io/it-at-m/appswitcher-server:1.3.010006bc0f309
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
ghcr.io/jeremylvln/shulker-operator:0.13.027c55706c126
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
ghcr.io/jfwenisch/discord-experiencebot:latestb52ff07f9f0c
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
ghcr.io/jmberesford/retrom-service:retrom-v0.7.144d763d58f11d
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
ghcr.io/jossware/node-provider-labeler:v0.8.0f80e85291439
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/juicerescue/juicepassproxy:0.5.1984dc4f19162
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
ghcr.io/k8s-at-home/apache-musicindex:v1.4.1-2c9bd82dc5fda
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/k8s-at-home/emby:v4.6.1.05c6b8f91f1c4
gcc-10@10.2.0-5ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/k8s-at-home/jackett:v0.20.13163a4715b46aa2
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/k8s-at-home/lidarr:v1.0.0.225554ebc1f90963
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/k8s-at-home/network-ups-tools:v2.7.4-2479-g86a32237cbd5d4cc1245
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
gcc-12@12-20220319-1ubuntu1
12.3.0-1ubuntu1~22.04.2
1
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
gcc-10@10.2.0-5ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/k8s-at-home/plex:v1.28.0.5999-97678ded3ef756c7d784b
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/k8s-at-home/prowlarr:v0.3.0.1710c863aa9875fa
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/k8s-at-home/qbittorrent:v4.4.261deadd1ec78
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
gcc-12@12-20220319-1ubuntu1
12.3.0-1ubuntu1~22.04.2
1
ghcr.io/k8s-at-home/readarr:v0.1.0.715ad943e9309e4
gcc-10@10.2.0-5ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
gcc-10@10.2.0-5ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
gcc-12@12-20220319-1ubuntu1
12.3.0-1ubuntu1~22.04.2
1
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/k8s-at-home/wireguard:v1.0.20210424448045c4270b
gcc-10@10.2.0-5ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/k8s-home-lab/wireguard:v1.0.20210914779858b5e11d
gcc-10@10.5.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
gcc-10@10.5.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
ghcr.io/kubeflow/spark-operator/controller:2.2.1865ff4da5686
gcc-10@10.5.0-1ubuntu1~20.04
gcc-9@9.4.0-1ubuntu1~20.04.2
10.5.0-1ubuntu1~20.04.1+esm1
no fix listed
1
ghcr.io/kubiyabot/kubernetes:1.32.0b5ade0d9cc6b
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.