CVE-2023-45287
HighAdvisory
Published 5 Dec 2023In the index since 5 Sept 2026
- Severity
- High
- worst across findings
- CVSS
- 7.5
- base score, highest
- EPSS
- 0.013
- 68th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 1,601
- of 17,790 indexed, latest versions
- Container images
- 1,799
- deployed by those charts
- Fix available
- 2 of 3
- affected packages
Red Hat Security Advisory: skopeo security update
Carried by container images the latest versions of 1,601 of 17,790 indexed charts deploy, on 1,799 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| golang-1.19deb | 1.19.8-2 | no fix listed | 1 |
| skopeorpm | 2:1.11.2-0.1.el9 | 2:1.14.3-0.1.el9 | 1 |
| stdlibgolang | go1.13, go1.13.1, go1.13.3, go1.13.4+97 more | 1.20.0 | 1,799 |
- OSV records
- DEBIAN-CVE-2023-45287RHSA-2024:2239GO-2023-2375
- Also known as
- BIT-golang-2023-45287
Charts affected
1,601 by stars
| Chart | Latest | Affected images | Radar Score |
|---|---|---|---|
| zookeeper-exporterzookeeper-exporter | 0.1.0 | 1 of 1See more | 1,248 |
Container images carrying it
1,799 by charts deploying them
A fixed version is listed for 2 of the 3 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| cloudentity/ | 5728654cecb7 | stdlib | 1.20.0 | 1 |
| cloudentity/ | 8ca94ae6acf4 | stdlib | 1.20.0 | 1 |
| cloudentity/ | c04eb10c77b7 | stdlib | 1.20.0 | 1 |
| cloudnativelabs/ | 0ec7cd73f43f | stdlib | 1.20.0 | 1 |
| cloudposse/ | 0d9507e8a760 | stdlib | 1.20.0 | 1 |
| cmacrae/ | fc5fecba436e | stdlib | 1.20.0 | 1 |
| cmacrae/ | dec8d490fe40 | stdlib | 1.20.0 | 1 |
| cockroachdb/ | 983312754620 | stdlib | 1.20.0 | 1 |
| codenotary/ | 7c85d7cc4f22 | stdlib | 1.20.0 | 1 |
| codercom/ | 1e2cc688008e | stdlib | 1.20.0 | 1 |
| codercom/ | 47605610ad8d | stdlib | 1.20.0 | 1 |
| codeskyblue/ | caa862590e34 | stdlib | 1.20.0 | 1 |
| conduction/ | 9cfeeb6c7c20 | stdlib | 1.20.0 | 1 |
| conduction/ | c36094a41369 | stdlib | 1.20.0 | 1 |
| conduction/ | ece1ab544c57 | stdlib | 1.20.0 | 1 |
| conduction/ | 25415534d245 | stdlib | 1.20.0 | 1 |
| conduction/ | 3423845692c1 | stdlib | 1.20.0 | 1 |
| conduction/ | 2744565516e8 | stdlib | 1.20.0 | 1 |
| conduction/ | e1d4ad1e22a8 | stdlib | 1.20.0 | 1 |
| conduction/ | b6f95c8ead7d | stdlib | 1.20.0 | 1 |
| conduction/ | 8f177f9f8a7b | stdlib | 1.20.0 | 1 |
| conduction/ | 24f03c57568f | stdlib | 1.20.0 | 1 |
| containous/ | 587162516502 | stdlib | 1.20.0 | 1 |
| coredns/ | 73ca82b4ce82 | stdlib | 1.20.0 | 1 |
| cortezaproject/ | 8eb7a26605c9 | stdlib | 1.20.0 | 1 |
| countly/ | f4cc7447c4f5 | stdlib | 1.20.0 | 1 |
| countly/ | e3c238248f99 | stdlib | 1.20.0 | 1 |
| countly/ | 2acbc11499b6 | stdlib | 1.20.0 | 1 |
| craftypath/ | 402a0024c732 | stdlib | 1.20.0 | 1 |
| crossplane/ | 66666e6963af | stdlib | 1.20.0 | 1 |
| crossplane/ | 0112171c45e3 | stdlib | 1.20.0 | 1 |
| crossplane/ | 07b8b410dc76 | stdlib | 1.20.0 | 1 |
| crowdfox/ | 6fa7e8063d27 | stdlib | 1.20.0 | 1 |
| csepulvedab/ | 227a6f2b0ff8 | stdlib | 1.20.0 | 1 |
| csiplugin/ | 1fa83d45417f | stdlib | 1.20.0 | 1 |
| csiplugin/ | 00fcc441ea9f | stdlib | 1.20.0 | 1 |
| ctrox/ | 3c72862bea3c | stdlib | 1.20.0 | 1 |
| dabealu/ | 86106fec315f | stdlib | 1.20.0 | 1 |
| dalf/ | b19cbf5b2f37 | stdlib | 1.20.0 | 1 |
| dalf/ | 248a4849c350 | stdlib | 1.20.0 | 1 |
| danielfm/ | 12485563b1d0 | stdlib | 1.20.0 | 1 |
| dannielkil/ | 433290c5c1db | stdlib | 1.20.0 | 1 |
| danuk/ | dd0e6585c44f | stdlib | 1.20.0 | 1 |
| daprio/ | 7ba5d51e5b97 | stdlib | 1.20.0 | 1 |
| darkobas/ | 62e6464491ba | stdlib | 1.20.0 | 1 |
| darkobas/ | a0349a0eedf0 | stdlib | 1.20.0 | 1 |
| dasmeta/ | fa657960dfec | stdlib | 1.20.0 | 1 |
| datadog/ | 8f20e56b5311 | stdlib | 1.20.0 | 1 |
| datadog/ | 513a4377aed5 | stdlib | 1.20.0 | 1 |
| datadog/ | 17f08a860090 | stdlib | 1.20.0 | 1 |