StackRadar

CVE-2023-4806

Medium

Advisory

Published 18 Sept 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.016
75th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
604
of 17,787 indexed, latest versions
Container images
556
deployed by those charts
Fix available
1 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 604 of 17,787 indexed charts deploy, on 556 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+20 more2.23-0ubuntu11.3+esm5, 2.27-3ubuntu1.6+esm1, 2.31-0ubuntu9.14, 2.35-0ubuntu3.5+1 more549
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 moreno fix listed7
OSV records
DEBIAN-CVE-2023-4806UBUNTU-CVE-2023-4806
Also known as
USN-6541-1, USN-6541-2

Charts affected

604 by stars
ChartLatestAffected imagesRadar Score
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2023-4806.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14

Open the chart page →

15,287
openebswenerme3.10.02 of 3See more

openebs wenerme 3.10.0

2 of the 3 container images this version deploys carry CVE-2023-4806.

Container imageDigestPackageFixed in
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5
openebs/node-disk-operator:2.1.06afe2123c457
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5

Open the chart page →

10,568
zahori-schedulerzahoriVerified publisher1.0.11 of 1See more

zahori-scheduler zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2023-4806.

Container imageDigestPackageFixed in
zahoriaut/zahori-scheduler:1.0.047d0979b1184
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm1

Open the chart page →

2,464
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2023-4806.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm1
yandex/clickhouse-server:21.3.204eccfffb01d7
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14

Open the chart page →

9,250

Container images carrying it

556 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/k8s-at-home/haste-server:latest827aa2f2389d
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
ghcr.io/k8s-at-home/jackett:v0.20.13163a4715b46aa2
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
ghcr.io/k8s-at-home/lidarr:v1.0.0.225554ebc1f90963
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
ghcr.io/k8s-at-home/network-ups-tools:v2.7.4-2479-g86a32237cbd5d4cc1245
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5
1
ghcr.io/k8s-at-home/nzbhydra2:v3.14.2ef3670f7e0a8
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
ghcr.io/k8s-at-home/plex:v1.28.0.5999-97678ded3ef756c7d784b
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
ghcr.io/k8s-at-home/prowlarr:v0.3.0.1710c863aa9875fa
glibc@2.31-0ubuntu9.7
2.31-0ubuntu9.14
1
ghcr.io/k8s-at-home/qbittorrent:v4.4.261deadd1ec78
glibc@2.31-0ubuntu9.7
2.31-0ubuntu9.14
1
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5
1
ghcr.io/k8s-at-home/readarr:v0.1.0.715ad943e9309e4
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
ghcr.io/k8s-at-home/sabnzbd:v3.3.1c2d6e775db5a
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5
1
ghcr.io/k8s-at-home/tautulli:v2.7.74ea617c30397
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
ghcr.io/k8s-at-home/wireguard:v1.0.20210424448045c4270b
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
glibc@2.31-0ubuntu9.7
2.31-0ubuntu9.14
1
ghcr.io/k8s-home-lab/wireguard:v1.0.20210914779858b5e11d
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
ghcr.io/kore3lab/kore-board.terminal:v0.5.5f52e66eff50b
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm1
1
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
ghcr.io/leprechaun/owntracks-exporter:0.1.11-de545066099e1abd6d08
glibc@2.36-9+deb12u1
2.36-9+deb12u3
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm1
1
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
glibc@2.35-0ubuntu3
2.35-0ubuntu3.5
1
ghcr.io/linuxserver/resilio-sync:version-2.7.2.1375605b6d544028
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm1
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
ghcr.io/perceptolab/devops-demo-app:0.0.2cdc0658c40fb
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm1
1
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
glibc@2.36-9
2.36-9+deb12u3
1
ghcr.io/salaboy/fmtok8s-email-service:v0.2.0-nativeb52d5dbac2ca
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm1
1
ghcr.io/salaboy/fmtok8s-email-service:v0.1.0-nativecf28472bc460
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm1
1
ghcr.io/smarter-project/audio-client:v3.1.23c8375dc5487
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
ghcr.io/smarter-project/gstreamer:v1.0.25ecb16015aa8
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
ghcr.io/star-whale/server:0.6.158368359c8dd0
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
ghcr.io/vshn/haproxy-with-mysql:1.0.0a3c27ee3fb2f
glibc@2.36-9+deb12u1
2.36-9+deb12u3
1
ghcr.io/wmde/wbaas-backup:v0.1.78e6a9516eac0
glibc@2.27-3ubuntu1.5
2.27-3ubuntu1.6+esm1
1
mcr.microsoft.com/azure-application-gateway/kubernetes-ingress:1.6.0bccaa701e2df
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
mcr.microsoft.com/mssql/server:2017-latest13221ac5f673
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm1
1
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
glibc@2.31-0ubuntu9.7
2.31-0ubuntu9.14
1
mcr.microsoft.com/mssql/server:2017-latestfbf79e0fea59
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm1
1
public.ecr.aws/spotinst/spot-network-client:1.0.0-8-lb_endpoint-d0ec127efcecf98b912
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm1
1
public.ecr.aws/supportpal/helpdesk-monolithic:4.0.4573779e57fae
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
glibc@2.35-0ubuntu3.4
2.35-0ubuntu3.5
1
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm1
1
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.