CVE-2023-48298
MediumAdvisory
Published 21 Dec 2023In the index since 6 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 5.9
- base score, highest
- EPSS
- 0.006
- 48th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 8
- of 17,787 indexed, latest versions
- Container images
- 7
- deployed by those charts
- Fix available
- None
- affected package
The matching OSV records carry no description.
Carried by container images the latest versions of 8 of 17,787 indexed charts deploy, on 7 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| clickhousedeb | 21.3.20.1, 22.1.3.7, 22.8.6.71, 23.8.16.16+3 more | no fix listed | 7 |
- OSV records
- UBUNTU-CVE-2023-48298
Charts affected
8 by stars
| Chart | Latest | Affected images | Radar Score |
|---|---|---|---|
| elchi-stackelchi | 1.13.0 | 1 of 10See more | 15,501 |
| gentrace-self-hostedgentrace-self-hostedVerified publisher | 0.1.3 | 1 of 9See more | 15,606 |
| deepflowkubesphere-stable | 6.2.606 | 1 of 8See more | 18,394 |
| clickhousemyaVerified publisher | 0.2403.1 | 1 of 1See more | 3,597 |
| cognativemyaVerified publisher | 0.2403.3 | 1 of 3See more | 7,348 |
| openlitopenlit | 1.24.0 | 1 of 3See more | 5,056 |
| explorersynapse | 0.2.16 | 1 of 6See more | 8,556 |
| clickhousezloi-space | 1.2.0 | 1 of 3See more | 9,250 |
Container images carrying it
7 by charts deploying them
A fixed version is listed for 0 of the 1 affected package.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| clickhouse/ | ed9640bfff07 | clickhouse | no fix listed | 2 |
| clickhouse/ | 1ffa82edee00 | clickhouse | no fix listed | 1 |
| clickhouse/ | 2e6587b81a26 | clickhouse | no fix listed | 1 |
| clickhouse/ | 512bb8a21483 | clickhouse | no fix listed | 1 |
| deepflowce/ | bc1882f75c18 | clickhouse | no fix listed | 1 |
| yandex/ | 1cbf75aabe1e | clickhouse | no fix listed | 1 |
| yandex/ | 4eccfffb01d7 | clickhouse | no fix listed | 1 |