StackRadar

CVE-2023-4806

Medium

Advisory

Published 18 Sept 2023In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.016
75th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
604
of 17,787 indexed, latest versions
Container images
556
deployed by those charts
Fix available
1 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 604 of 17,787 indexed charts deploy, on 556 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+20 more2.23-0ubuntu11.3+esm5, 2.27-3ubuntu1.6+esm1, 2.31-0ubuntu9.14, 2.35-0ubuntu3.5+1 more549
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 moreno fix listed7
OSV records
DEBIAN-CVE-2023-4806UBUNTU-CVE-2023-4806
Also known as
USN-6541-1, USN-6541-2

Charts affected

604 by stars
ChartLatestAffected imagesRadar Score
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2023-4806.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14

Open the chart page →

15,287
openebswenerme3.10.02 of 3See more

openebs wenerme 3.10.0

2 of the 3 container images this version deploys carry CVE-2023-4806.

Container imageDigestPackageFixed in
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5
openebs/node-disk-operator:2.1.06afe2123c457
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5

Open the chart page →

10,568
zahori-schedulerzahoriVerified publisher1.0.11 of 1See more

zahori-scheduler zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2023-4806.

Container imageDigestPackageFixed in
zahoriaut/zahori-scheduler:1.0.047d0979b1184
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm1

Open the chart page →

2,464
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2023-4806.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm1
yandex/clickhouse-server:21.3.204eccfffb01d7
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14

Open the chart page →

9,250

Container images carrying it

556 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
empathyco/elasticsearch:7.17.2-memlock03e724e41eeb
glibc@2.31-0ubuntu9.7
2.31-0ubuntu9.14
1
engrmth/bnkr:2.1.06d8464e6f0e8
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
enix/san-iscsi-csi:v4.0.2f963da81ecf7
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm1
1
envoyproxy/envoy:v1.18.2e8b37c1d7578
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm1
1
eqalpha/keydb:x86_64_v6.3.2fd9351ce27a7
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm1
1
ethanbergstrom/duoauthproxy:5.5.0345c2a46c103
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
ethereumex/eth-stats-dashboard:v0.0.1a7603aa8df4c
glibc@2.23-0ubuntu9
2.23-0ubuntu11.3+esm5
1
flanksource/apm-hub:v0.0.471dacc3195bf9
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5
1
flyway/flyway:9.1545b5d7cdc75a
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
foldingathome/fah-gpu:latest5ef7742d1eb4
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm1
1
frankescobar/allure-docker-service:2.21.08a4d7e9308de
glibc@2.27-3ubuntu1.2
2.27-3ubuntu1.6+esm1
1
frankescobar/allure-docker-service:2.19.0cafa03b94dac
glibc@2.27-3ubuntu1.2
2.27-3ubuntu1.6+esm1
1
free5gmano/nextepc-mongodb:latest36f806935519
glibc@2.23-0ubuntu10
2.23-0ubuntu11.3+esm5
1
galaxy/cloudman-server:lateste5c265fe9fcd
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
galaxy/galaxy-init:v18.010267bad550e6
eglibc@2.19-0ubuntu6.14
no fix listed
1
galaxy/galaxy-stable:v18.018e577a626dfd
eglibc@2.19-0ubuntu6.14
no fix listed
1
geonetwork/gn-cloud-ogc-api-records-service:4.2.8-020c9bb761f67
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm1
1
geoscienceaustralia/dea-k8s-data:latestf4039b45572a
glibc@2.27-3ubuntu1.2
2.27-3ubuntu1.6+esm1
1
geoservercloud/geoserver-cloud-gateway:1.0-RC2ca58b74529cd
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
geoservercloud/geoserver-cloud-rest:1.0-RC25dc0c93a1710
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
geoservercloud/geoserver-cloud-wcs:1.0-RC247ae1bdb4bcc
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
geoservercloud/geoserver-cloud-webui:1.0-RC228c3e5a8c5a3
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
geoservercloud/geoserver-cloud-wfs:1.0-RC28c70ee06d5ab
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
geoservercloud/geoserver-cloud-wms:1.0-RC242775ba6a4da
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
gethue/hue:4.11.011b649636e68
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
gethue/hue:4.10.05702b2c37ff9
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm1
1
gitlab/gitlab-runner:v15.3.0860d4a3fec7a
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
glasskube/operator:0.12.2be5133100d63
glibc@2.35-0ubuntu3.4
2.35-0ubuntu3.5
1
golenski/fibonacci-msg-relay:1.0.0c863dcb0c513
glibc@2.36-9+deb12u1
2.36-9+deb12u3
1
golenski/fibonacci-task-manager:2.0.03a2b36df247b
glibc@2.36-9+deb12u1
2.36-9+deb12u3
1
golenski/fibonacci-worker:2.0.0954caf4aaf6a
glibc@2.36-9+deb12u1
2.36-9+deb12u3
1
gopinatht/ovs-plugin-installer:latest632cb2e9c399
glibc@2.23-0ubuntu10
2.23-0ubuntu11.3+esm5
1
gotson/komga:0.99.49b15ea6bfc30
glibc@2.27-3ubuntu1.2
2.27-3ubuntu1.6+esm1
1
gulacedia/web-dvwa-new:v367b467d961ca
glibc@2.36-9
2.36-9+deb12u3
1
hasura/graphql-engine:v2.34.0-ce0111b0204136
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5
1
haugene/transmission-openvpn:4.0059216cfae4b
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.14
1
haveagitgat/tdarr:2.00.181256348872ce
glibc@2.31-0ubuntu9.7
2.31-0ubuntu9.14
1
haveagitgat/tdarr_node:2.00.101e3f9328327d
glibc@2.31-0ubuntu9.1
2.31-0ubuntu9.14
1
haveagitgat/tdarr_node:2.17.013ff0913202dd
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.14
1
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
glibc@2.36-9+deb12u1
2.36-9+deb12u3
1
hivemq/hivemq-operator:4.7.10241d6a8e1963
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.5
1
hjacobs/kube-janitor:23.7.0fbb303ed463c
glibc@2.36-9
2.36-9+deb12u3
1
hjacobs/kube-web-view:23.8.0431f1bf013d0
glibc@2.36-9+deb12u1
2.36-9+deb12u3
1
housewrecker/gaps:latestf417dd0a7547
glibc@2.31-0ubuntu9.7
2.31-0ubuntu9.14
1
huginn/huginn-single-process:4d17829cf6b15b004ad3f4be196303dca4944810c794eddc7b47
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm1
1
hugohg34/toposervice:0.0.2812a03b3f274
glibc@2.31-0ubuntu9.7
2.31-0ubuntu9.14
1
hyperledger/fabric-couchdb:0.4.10c65891b6c237
glibc@2.23-0ubuntu10
2.23-0ubuntu11.3+esm5
1
hyperledger/fabric-orderer:1.3.06ee1abcfd840
glibc@2.23-0ubuntu10
2.23-0ubuntu11.3+esm5
1
hyperledger/fabric-peer:1.3.06756c7c48234
glibc@2.23-0ubuntu10
2.23-0ubuntu11.3+esm5
1
ibmcom/ibm-workload-scheduler-agent-dynamic-dev:9.4.0.047e4dc1e27cdf
glibc@2.23-0ubuntu10
2.23-0ubuntu11.3+esm5
1

syft 1.42.1 · advisories as of 15 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.