StackRadar

CVE-2023-4806

Medium

Advisory

Published 18 Sept 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.016
75th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
604
of 17,787 indexed, latest versions
Container images
556
deployed by those charts
Fix available
1 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 604 of 17,787 indexed charts deploy, on 556 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+20 more2.23-0ubuntu11.3+esm5, 2.27-3ubuntu1.6+esm1, 2.31-0ubuntu9.14, 2.35-0ubuntu3.5+1 more549
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 moreno fix listed7
OSV records
DEBIAN-CVE-2023-4806UBUNTU-CVE-2023-4806
Also known as
USN-6541-1, USN-6541-2

Charts affected

604 by stars
ChartLatestAffected imagesRadar Score
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2023-4806.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14

Open the chart page →

15,287
openebswenerme3.10.02 of 3See more

openebs wenerme 3.10.0

2 of the 3 container images this version deploys carry CVE-2023-4806.

Container imageDigestPackageFixed in
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5
openebs/node-disk-operator:2.1.06afe2123c457
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5

Open the chart page →

10,568
zahori-schedulerzahoriVerified publisher1.0.11 of 1See more

zahori-scheduler zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2023-4806.

Container imageDigestPackageFixed in
zahoriaut/zahori-scheduler:1.0.047d0979b1184
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm1

Open the chart page →

2,464
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2023-4806.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm1
yandex/clickhouse-server:21.3.204eccfffb01d7
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14

Open the chart page →

9,250

Container images carrying it

556 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
wallarm/kong:3.1.0-ubuntu-4.6.0ea9608c82e40
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
wavefronthq/proxy:9.2d1064d28f6eb
glibc@2.27-3ubuntu1.2
2.27-3ubuntu1.6+esm1
1
wazuh/wazuh-dashboard:4.4.11787550d2358
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
wazuh/wazuh-manager:4.4.121994f40e0da
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
wekanteam/wekan:v4.2268a51f0327df
glibc@2.31-0ubuntu9
2.31-0ubuntu9.14
1
wistefan/mvf:lateste0887302b2d8
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5
1
woojoong/wowza:latestec230db19652
glibc@2.27-3ubuntu1
2.27-3ubuntu1.6+esm1
1
xeladock/mysql_dns:latest4baf531453f1
glibc@2.35-0ubuntu3
2.35-0ubuntu3.5
1
xeladock/nginx2:latestc259a67b1dff
glibc@2.35-0ubuntu3
2.35-0ubuntu3.5
1
xeotek/kadeck:4.2.94c6b04d9ce55
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
xingse/kubernetes-oom-event-generator:v1.2.09f9d5492e4bf
glibc@2.23-0ubuntu11.2
2.23-0ubuntu11.3+esm5
1
yandex/clickhouse-client:21.3863f94a0f607
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm1
1
yandex/clickhouse-server:latest1cbf75aabe1e
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
yandex/clickhouse-server:21.3.204eccfffb01d7
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
yandex/clickhouse-server:19.17ab1738a64b70
glibc@2.27-3ubuntu1
2.27-3ubuntu1.6+esm1
1
yandex/clickhouse-server:19.14ccf9c2b5e3f2
glibc@2.27-3ubuntu1
2.27-3ubuntu1.6+esm1
1
yandex/clickhouse-server:19.16d210dc69321e
glibc@2.27-3ubuntu1
2.27-3ubuntu1.6+esm1
1
zabbix/zabbix-agent:ubuntu-5.4.62127168cab03
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
zabbix/zabbix-agent2:ubuntu-6.0.8e5b594057c9c
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5
1
zabbix/zabbix-server-pgsql:ubuntu-5.4.66c946b1f45cd
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
zabbix/zabbix-server-pgsql:ubuntu-6.0.8d59ffa07f615
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-5.4.601de79c31391
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-6.0.899e9a090b516
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5
1
zabbix/zabbix-web-service:ubuntu-6.0.8ee4baa872280
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5
1
zahoriaut/zahori-scheduler:1.0.047d0979b1184
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm1
1
gcr.io/abacus-labs-dev/hyperlane-agent:10c0ab1-20231215-220639f33e88324a40
glibc@2.35-0ubuntu3.4
2.35-0ubuntu3.5
1
gcr.io/flink-operator/deployer:webhook-cert809338a69bd5
glibc@2.27-3ubuntu1
2.27-3ubuntu1.6+esm1
1
gcr.io/google-containers/echoserver:1.910f4dbc8eeeb
glibc@2.23-0ubuntu9
2.23-0ubuntu11.3+esm5
1
gcr.io/google_containers/echoserver:1.10cb5c1bddd1b5
glibc@2.23-0ubuntu9
2.23-0ubuntu11.3+esm5
1
gcr.io/istio-release/pilot:release-1.0-latest-daily5ea7b7f3632a
glibc@2.23-0ubuntu11
2.23-0ubuntu11.3+esm5
1
gcr.io/istio-release/pilot:1.11.1c552478f8f11
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
gcr.io/istio-release/proxyv2:release-1.0-latest-daily8f9ff98fdbef
glibc@2.23-0ubuntu11
2.23-0ubuntu11.3+esm5
1
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
glibc@2.23-0ubuntu11
2.23-0ubuntu11.3+esm5
1
gcr.io/tfx-oss-public/ml_metadata_store_server:1.14.051404ef4419c
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
gcr.io/tfx-oss-public/ml_metadata_store_server:1.5.0db8691752b4c
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm1
1
ghcr.io/98jan/smalland-server/smalland-server:deveb7be822d5b2
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm1
1
ghcr.io/brittonhayes/arma-reforger:latest6fde1edc0983
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
ghcr.io/data-fair/elasticsearch:7.17.1aa45adaf59a7
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
ghcr.io/djcass44/cso-proxy:cccf49fdb360d44125ad
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm1
1
ghcr.io/edgelesssys/coordinator:v0.5.0bcd5b8d4c45c
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm1
1
ghcr.io/edgelesssys/edgelessdb-sgx-1gb:v0.3.27e1d7a11a11a
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
ghcr.io/ferama/vipien:v0.5.3923a3f704b21
glibc@2.31-0ubuntu9.7
2.31-0ubuntu9.14
1
ghcr.io/formancehq/ledger:v1.9.203c1ddbda33b
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5
1
ghcr.io/haveagitgat/tdarr:2.00.18.23fbe4c29d14c
glibc@2.31-0ubuntu9.7
2.31-0ubuntu9.14
1
ghcr.io/jfwenisch/discord-experiencebot:latestb52ff07f9f0c
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm1
1
ghcr.io/jr0dd/puppeteer:v13.3.26047599cd78e
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
ghcr.io/k8s-at-home/apache-musicindex:v1.4.1-2c9bd82dc5fda
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
ghcr.io/k8s-at-home/bazarr:v1.0.3fdb5501cdfb9
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
ghcr.io/k8s-at-home/emby:v4.6.1.05c6b8f91f1c4
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.