StackRadar

CVE-2023-4039

Medium

Advisory

Published 12 Sept 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.8
base score, highest
EPSS
0.008
53rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,103
of 17,787 indexed, latest versions
Container images
1,152
deployed by those charts
Fix available
5 of 12
affected packages

Security update for gcc12

Carried by container images the latest versions of 1,103 of 17,787 indexed charts deploy, on 1,152 images.

Affected packageAffected versionsFixed inImages
gcc-12deb12-20220319-1ubuntu1, 12.1.0-2ubuntu1~22.04, 12.2.0-14, 12.3.0-1ubuntu1~22.0412.2.0-14+deb12u1, 12.3.0-1ubuntu1~22.04.2675
gcc-10deb10-20200411-0ubuntu1, 10.2.0-5ubuntu1~20.04, 10.3.0-1ubuntu1~20.04, 10.5.0-1ubuntu1~20.0410.5.0-1ubuntu1~20.04.1+esm1279
gcc-8deb8-20180414-1ubuntu2, 8.2.0-1ubuntu2~18.04, 8.3.0-6ubuntu1~18.04, 8.3.0-6ubuntu1~18.04.1+3 moreno fix listed120
gcc-5deb5.4.0-6ubuntu1~16.04.4, 5.4.0-6ubuntu1~16.04.5, 5.4.0-6ubuntu1~16.04.9, 5.4.0-6ubuntu1~16.04.10+2 moreno fix listed69
gccgo-6deb6.0.1-0ubuntu1no fix listed69
gcc-9deb9.3.0-17ubuntu1~20.04, 9.4.0-1ubuntu1~20.04.1, 9.4.0-1ubuntu1~20.04.2no fix listed45
gcc-7deb7.3.0-3ubuntu1, 7.3.0-27ubuntu1~18.04, 7.4.0-1ubuntu1~18.04, 7.4.0-1ubuntu1~18.04.1+2 moreno fix listed28
gcc-11deb11.2.0-19ubuntu1, 11.3.0-1ubuntu1~22.04, 11.3.0-12, 11.4.0-1ubuntu1~22.0411.4.0-1ubuntu1~22.04.214
gcc-4.8deb4.8.2-19ubuntu1, 4.8.4-2ubuntu1~14.04.3, 4.8.4-2ubuntu1~14.04.4no fix listed7
gccgo-4.9deb4.9.1-0ubuntu1, 4.9.3-0ubuntu4no fix listed7
gccapk13.1.0-r113.2.0-r31
gcc12rpm12.2.1+git416-150000.1.5.112.3.0+git1204-150000.1.16.11
OSV records
CGA-9fp5-8r38-hf7jDEBIAN-CVE-2023-4039UBUNTU-CVE-2023-4039SUSE-SU-2023:3661-1
Also known as
CGA-hg9x-wx5h-8pph, CGA-qp75-5rvw-vmvm, CGA-xfqf-q2hm-g3r5, USN-7700-1

Charts affected

1,103 by stars
ChartLatestAffected imagesRadar Score
xkopsxkops0.1.03 of 5See more

xkops xkops 0.1.0

3 of the 5 container images this version deploys carry CVE-2023-4039.

Container imageDigestPackageFixed in
hamzaarshad10/querybackend:1.6.22c1c3b86a8e7
gcc-12@12.2.0-14
12.2.0-14+deb12u1
hamzaarshad10/querypodpy:1.7154f38e8668e
gcc-12@12.2.0-14
12.2.0-14+deb12u1
murtazashah46/helmfile:latest4d11726cf803
gcc-12@12.2.0-14
12.2.0-14+deb12u1

Open the chart page →

13,197
api-snapyoukadevVerified publisher0.1.11 of 1See more

api-snap youkadev 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-4039.

Container imageDigestPackageFixed in
youkadev/api-snap:0.1.14db0f9428e67
gcc-12@12.2.0-14
12.2.0-14+deb12u1

Open the chart page →

2,674
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2023-4039.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
yandex/clickhouse-server:21.3.204eccfffb01d7
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1

Open the chart page →

9,250

Container images carrying it

1,152 by charts deploying them

A fixed version is listed for 5 of the 12 affected packages.

Container imageDigestPackageFixed inUsed by
elastictranscoder/media-storage:f6d861a026208b8c2359
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
elastictranscoder/transcoder:627e21dcb4a0327029e6
gcc-7@7.5.0-3ubuntu1~18.04
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
no fix listed
1
elastictranscoder/transcoder-handler:627e21dc5b75d19e2733
gcc-7@7.5.0-3ubuntu1~18.04
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
no fix listed
1
empathyco/elasticsearch:7.17.2-memlock03e724e41eeb
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
emqx/ecp-ui:2.5.1e33e9816f147
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
enclavenetworks/enclave:latest0a99759300d1
gcc-10@10.5.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
engrmth/bnkr:2.1.06d8464e6f0e8
gcc-10@10.2.0-5ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
enix/san-iscsi-csi:v4.0.2f963da81ecf7
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
envoyproxy/envoy:v1.30.92956bd9de830
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
envoyproxy/envoy:v1.33.056da5afd7df3
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
envoyproxy/envoy:v1.31-latestcaa5b411be16
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
envoyproxy/envoy:v1.30.1e596fda6a0ce
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
envoyproxy/envoy:v1.18.2e8b37c1d7578
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
eqalpha/keydb:x86_64_v6.3.2fd9351ce27a7
gcc-7@7.5.0-3ubuntu1~18.04
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
no fix listed
1
erigontech/erigon:v2.61.288706754b627
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
esphome/esphome:2024.3.09ab8cc88b28c
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
esphome/esphome:2024.12.2b2c6322700ac
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
esphome/esphome:2025.3.0def8b6e4f517
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
ethanbergstrom/duoauthproxy:5.5.0345c2a46c103
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
ethereumex/eth-stats-dashboard:v0.0.1a7603aa8df4c
gcc-5@5.4.0-6ubuntu1~16.04.5
gccgo-6@6.0.1-0ubuntu1
no fix listed
no fix listed
1
ethersphere/bee:2.2.0a884fd84b72f
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
ethpandaops/xatu:sentry-logs-latest6ce31bb0eafd
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
falcosecurity/falco-driver-loader:0.44.17df783d5269a
gcc-11@11.3.0-12
no fix listed
1
federid/webhook:0.1.0fbfb7c6510a7
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
felipecs8/app-db-connection-test:v129e06c9c6385
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
firefart/requesttracker:5.0.40d6249906d8c
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
gcc-10@10.5.0-1ubuntu1~20.04
gcc-9@9.4.0-1ubuntu1~20.04.2
10.5.0-1ubuntu1~20.04.1+esm1
no fix listed
1
flanksource/apm-hub:v0.0.471dacc3195bf9
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
flanksource/canary-checker-ui:v1.4.281764c84e550db
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
flanksource/incident-manager-ui:v1.4.318891f21df54fb
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
flyway/flyway:9.1545b5d7cdc75a
gcc-10@10.3.0-1ubuntu1~20.04
gcc-9@9.4.0-1ubuntu1~20.04.1
10.5.0-1ubuntu1~20.04.1+esm1
no fix listed
1
fnzv/dump1090:latestb3079b95c336
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
foldingathome/fah-gpu:latest5ef7742d1eb4
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
frankescobar/allure-docker-service:2.21.08a4d7e9308de
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
frankescobar/allure-docker-service:2.19.0cafa03b94dac
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
free5gmano/nextepc-mongodb:latest36f806935519
gcc-5@5.4.0-6ubuntu1~16.04.11
gccgo-6@6.0.1-0ubuntu1
no fix listed
no fix listed
1
freedom98/flask:k3.0d7ce1533f297
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
freeradius/freeradius-server:3.2.8af6fd34a5b78
gcc-12@12.3.0-1ubuntu1~22.04
12.3.0-1ubuntu1~22.04.2
1
galaxy/cloudman-server:lateste5c265fe9fcd
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
galaxy/galaxy-init:v18.010267bad550e6
gcc-4.8@4.8.4-2ubuntu1~14.04.4
gccgo-4.9@4.9.3-0ubuntu4
no fix listed
no fix listed
1
galaxy/galaxy-stable:v18.018e577a626dfd
gcc-4.8@4.8.4-2ubuntu1~14.04.4
gccgo-4.9@4.9.3-0ubuntu4
no fix listed
no fix listed
1
galaxy/pulsar-kubernetes:0.15.7e50a890e24c9
gcc-12@12.2.0-14
12.2.0-14+deb12u1
1
geonetwork/gn-cloud-ogc-api-records-service:4.2.8-020c9bb761f67
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
1
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
gcc-7@7.5.0-3ubuntu1~18.04
gcc-8@8.4.0-1ubuntu1~18.04
no fix listed
no fix listed
1
geoservercloud/geoserver-cloud-gateway:1.0-RC2ca58b74529cd
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
geoservercloud/geoserver-cloud-rest:1.0-RC25dc0c93a1710
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
geoservercloud/geoserver-cloud-wcs:1.0-RC247ae1bdb4bcc
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
geoservercloud/geoserver-cloud-wfs:1.0-RC28c70ee06d5ab
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
gcc-10@10.3.0-1ubuntu1~20.04
10.5.0-1ubuntu1~20.04.1+esm1
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.