StackRadar

CVE-2023-4806

Medium

Advisory

Published 18 Sept 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.016
75th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
604
of 17,787 indexed, latest versions
Container images
556
deployed by those charts
Fix available
1 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 604 of 17,787 indexed charts deploy, on 556 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+20 more2.23-0ubuntu11.3+esm5, 2.27-3ubuntu1.6+esm1, 2.31-0ubuntu9.14, 2.35-0ubuntu3.5+1 more549
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 moreno fix listed7
OSV records
DEBIAN-CVE-2023-4806UBUNTU-CVE-2023-4806
Also known as
USN-6541-1, USN-6541-2

Charts affected

604 by stars
ChartLatestAffected imagesRadar Score
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2023-4806.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14

Open the chart page →

15,287
openebswenerme3.10.02 of 3See more

openebs wenerme 3.10.0

2 of the 3 container images this version deploys carry CVE-2023-4806.

Container imageDigestPackageFixed in
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5
openebs/node-disk-operator:2.1.06afe2123c457
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5

Open the chart page →

10,568
zahori-schedulerzahoriVerified publisher1.0.11 of 1See more

zahori-scheduler zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2023-4806.

Container imageDigestPackageFixed in
zahoriaut/zahori-scheduler:1.0.047d0979b1184
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm1

Open the chart page →

2,464
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2023-4806.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm1
yandex/clickhouse-server:21.3.204eccfffb01d7
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14

Open the chart page →

9,250

Container images carrying it

556 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
glibc@2.23-0ubuntu11.2
2.23-0ubuntu11.3+esm5
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
glibc@2.23-0ubuntu10
2.23-0ubuntu11.3+esm5
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
glibc@2.36-9+deb12u1
2.36-9+deb12u3
1
registry.gitlab.com/autokubeops/kube-image-webhook:v0.2.0fcf464708a21
glibc@2.27-3ubuntu1.5
2.27-3ubuntu1.6+esm1
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.