StackRadar

CVE-2023-4911

HighKEV

Advisory

Published 3 Oct 2023In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.814
100th percentile
CISA KEV
Listed
since 21 Nov 2023
Charts affected
525
of 17,787 indexed, latest versions
Container images
566
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: glibc security update

Carried by container images the latest versions of 525 of 17,787 indexed charts deploy, on 566 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.31-13, 2.31-13+deb11u2, 2.31-13+deb11u3, 2.31-13+deb11u4+7 more2.31-13+deb11u7, 2.35-0ubuntu3.4, 2.36-9+deb12u3538
glibcrpm2.26-lp151.18.7, 2.28-189.1.el8, 2.28-189.5.el8_60:2.28-189.6.el8_6, 2.38-4.127
glibcapk2.37-r62.38-r51
OSV records
CGA-7gfr-33rv-p8jrDEBIAN-CVE-2023-4911RHSA-2023:5476UBUNTU-CVE-2023-4911DSA-5514-1openSUSE-SU-2024:13294-1
Also known as
CGA-q93m-hfx2-m599, USN-6409-1

Charts affected

525 by stars
ChartLatestAffected imagesRadar Score
thingsboardthingsboardVerified publisher0.1.36 of 12See more

thingsboard thingsboard 0.1.3

6 of the 12 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
thingsboard/tb-coap-transport:3.4.1bd45a09d85d9
glibc@2.31-13+deb11u3
2.31-13+deb11u7
thingsboard/tb-http-transport:3.4.1a06f53c5e2da
glibc@2.31-13+deb11u3
2.31-13+deb11u7
thingsboard/tb-js-executor:3.4.113e1eadf8ace
glibc@2.31-13+deb11u3
2.31-13+deb11u7
thingsboard/tb-mqtt-transport:3.4.1030f316ce301
glibc@2.31-13+deb11u3
2.31-13+deb11u7
thingsboard/tb-node:3.4.1645f43b688f7
glibc@2.31-13+deb11u3
2.31-13+deb11u7
thingsboard/tb-web-ui:3.4.157f98ed53b3d
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

25,394
monitoringthl-chartsVerified publisher0.1.11 of 10See more

monitoring thl-charts 0.1.1

1 of the 10 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
grafana/promtail:2.4.2626900031c4e
glibc@2.31-13+deb11u2
2.31-13+deb11u7

Open the chart page →

18,908
synapsetranhailongVerified publisher0.1.01 of 2See more

synapse tranhailong 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
matrixdotorg/synapse:v1.78.0def97fd537d8
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

3,164
jupyterhubuninettsigma21.6.01 of 5See more

jupyterhub uninettsigma2 1.6.0

1 of the 5 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
quay.io/nird-toolkit/jupyterhub-server:20221215-e6aa80ecae8c0622533
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

8,607
miniouninettsigma21.2.01 of 1See more

minio uninettsigma2 1.2.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
sigma2as/minio:20240306-3a2e4f5c284ead9ec3e
glibc@2.28-189.5.el8_6
0:2.28-189.6.el8_6

Open the chart page →

4,960
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
glibc@2.36-9+deb12u1
2.36-9+deb12u3

Open the chart page →

14,358
velero-notificationsvelero-notifications1.1.01 of 1See more

velero-notifications velero-notifications 1.1.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
ghcr.io/simoncaron/velero-notifications:1.0.0d058963d4de7
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

1,285
homarrvhdirkVerified publisher0.1.51 of 1See more

homarr vhdirk 0.1.5

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
ghcr.io/ajnart/homarr:lateste103abadfb52
glibc@2.31-13+deb11u6
2.31-13+deb11u7

Open the chart page →

2,789
unmanicvhdirkVerified publisher0.1.41 of 1See more

unmanic vhdirk 0.1.4

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
josh5/unmanic:0.2.64d49c4816260
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4

Open the chart page →

9,347
vinyl-lib-chartvinyl-libVerified publisher0.1.01 of 1See more

vinyl-lib-chart vinyl-lib 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
kporwit/vinyl_lib_app:v0.1.1217de0302218
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

3,392
hedgedocvista0.1.11 of 1See more

hedgedoc vista 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
quay.io/hedgedoc/hedgedoc:1.9.4e09967519a1d
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

3,118
resultappvoting-app-helm-charts-repoVerified publisher1.0.01 of 1See more

resultapp voting-app-helm-charts-repo 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

1,263
voteappvoting-app-helm-charts-repoVerified publisher1.0.02 of 5See more

voteapp voting-app-helm-charts-repo 1.0.0

2 of the 5 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
glibc@2.31-13+deb11u5
2.31-13+deb11u7
kodekloud/examplevotingapp_vote:v13a856afb02a3
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

8,262
resultappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 1See more

resultapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

1,263
voteappvoting-app-helm-charts-repo-cloudVerified publisher1.0.02 of 5See more

voteapp voting-app-helm-charts-repo-cloud 1.0.0

2 of the 5 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
glibc@2.31-13+deb11u5
2.31-13+deb11u7
kodekloud/examplevotingapp_vote:v13a856afb02a3
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

8,262
apiwbstack0.36.01 of 1See more

api wbstack 0.36.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
ghcr.io/wbstack/api:8x.9.11eee94f9f7a53
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

2,019
istio-service-meshwbstack0.0.11 of 1See more

istio-service-mesh wbstack 0.0.1

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
istio/pilot:1.17.1ce9d87606701
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4

Open the chart page →

6,232
mediawikiwbstack0.14.01 of 1See more

mediawiki wbstack 0.14.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

2,132
drillwearefrank1.3.62 of 3See more

drill wearefrank 1.3.6

2 of the 3 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
apache/drill:1.21.11f96558fd292
glibc@2.31-13+deb11u3
2.31-13+deb11u7
bitnamilegacy/zookeeper:3.9.0-debian-11-r1110ed1ea3c8d1
glibc@2.31-13+deb11u6
2.31-13+deb11u7

Open the chart page →

9,397
web-dvwaweb-dvwa1.16.01 of 2See more

web-dvwa web-dvwa 1.16.0

1 of the 2 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
gulacedia/web-dvwa-new:v367b467d961ca
glibc@2.36-9
2.36-9+deb12u3

Open the chart page →

10,001
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-nginx:latest6de60c83128d
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

7,552
openebswenerme3.10.02 of 3See more

openebs wenerme 3.10.0

2 of the 3 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
openebs/node-disk-operator:2.1.06afe2123c457
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4

Open the chart page →

10,489
vaultwardenwitcom-gmbh0.2.01 of 2See more

vaultwarden witcom-gmbh 0.2.0

1 of the 2 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
vaultwarden/server:1.25.239f34c5159a2
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

1,585
wp-gats-helmwordpress-gatsby0.0.11 of 3See more

wp-gats-helm wordpress-gatsby 0.0.1

1 of the 3 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
library/wordpress:6.0.0-php8.0-apache277c6c25980f
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

2,021
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

1,838

Container images carrying it

566 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
xtrendence/cryptofolio:V.2.2.0e6e6612bb94c
glibc@2.31-13
2.31-13+deb11u7
1
xuxueli/xxl-job-admin:2.4.0640093c35fd6
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
youssef11gaber10/deployment-ui-react:latestba6853e35c60
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
zabbix/zabbix-agent2:ubuntu-6.0.8e5b594057c9c
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
1
zabbix/zabbix-server-pgsql:ubuntu-6.0.8d59ffa07f615
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
1
zabbix/zabbix-web-nginx-pgsql:ubuntu-6.0.899e9a090b516
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
1
zabbix/zabbix-web-service:ubuntu-6.0.8ee4baa872280
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
1
zbalogh/reservation-api-server:1.0.97c247e399a1f
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
zzorica/k8s-mgmt-pod:0.5.2640ca4de2922
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
gcr.io/ml-pipeline/api-server:2.0.0-alpha.5dc6ca05bb94f
glibc@2.31-13+deb11u4
2.31-13+deb11u7
1
gcr.io/ml-pipeline/metadata-writer:2.0.0-alpha.5ec3ae9f6df47
glibc@2.31-13+deb11u4
2.31-13+deb11u7
1
gcr.io/projectsigstore/cosigned784518ff3ee7
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
gcr.io/projectsigstore/policy-webhook82940e8c3e0d
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/0xemma/reddark:main2a115e991894
glibc@2.31-13+deb11u6
2.31-13+deb11u7
1
ghcr.io/ajnart/homarr:0.16.0737ec361ed24
glibc@2.31-13+deb11u6
2.31-13+deb11u7
1
ghcr.io/ajnart/homarr:lateste103abadfb52
glibc@2.31-13+deb11u6
2.31-13+deb11u7
1
ghcr.io/appuio/cloud-portal:v0.2.18c7e08d32d70
glibc@2.31-13+deb11u2
2.31-13+deb11u7
1
ghcr.io/chatwoot/pgvector:14.4.0-debian-11-r0f759f1510d09
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/cloudnative-pg/postgresql:14.5b3b30d04b362
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
ghcr.io/codingducksrl/wordpress:6.0.23113c0960507
glibc@2.31-13+deb11u4
2.31-13+deb11u7
1
ghcr.io/conductionnl/berichtservice-nginx:latest833d26df3840
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/conductionnl/contactcatalogus-nginx:latest480c84fa9e63
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/conductionnl/digispoof-interface-nginx:latest8fa4597217a4
glibc@2.31-13+deb11u2
2.31-13+deb11u7
1
ghcr.io/conductionnl/eav-component-nginx:latestd785c893096c
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/conductionnl/education-component-nginx:latest38900bc76ee0
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/conductionnl/medewerkercatalogus-nginx:latest06c3b27462e6
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/conductionnl/skeleton-pip:devce1ebe9387a2
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/conductionnl/user-component-nginx:latestb721579df8c3
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/conductionnl/waardepapieren-nginx:latestaf31cf6cd59f
glibc@2.31-13+deb11u2
2.31-13+deb11u7
1
ghcr.io/conductionnl/webresourcecatalogus-nginx:latest6de60c83128d
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/cunningpike/fediblockhole:0.4.22abc5f0350dc
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
ghcr.io/dgtlmoon/changedetection.io:0.39.4f1ce4c56ccaa
glibc@2.31-13+deb11u2
2.31-13+deb11u7
1
ghcr.io/dodevops/azure-app-exporter/azure-app-exporter:0.1.38b472877847f5
glibc@2.31-13+deb11u2
2.31-13+deb11u7
1
ghcr.io/ducksify/pgdump-to-s3:latestc42c0946bd0f
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/eshepelyuk/dckr/cmak-3.0.0.6:1.2.090a34412c6b5
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/fleeksoft/hbase/hdfs:3.3.3.2ac62269785ac
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/formancehq/ledger:v1.9.203c1ddbda33b
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
1
ghcr.io/g0dscookie/aptly:latestedd095d3c0ee
glibc@2.31-13+deb11u2
2.31-13+deb11u7
1
ghcr.io/g0dscookie/icinga2:2.13.5da81246ccfc9
glibc@2.31-13+deb11u4
2.31-13+deb11u7
1
ghcr.io/justarchinet/archisteamfarm:5.2.5.4c7c0a52303cb
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/k10app/frontend:latest066b5ac6b119
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
ghcr.io/k10app/staticcache:lateste77805689a8e
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
ghcr.io/k8s-at-home/nzbget:v21.1e5571acd10ce
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
1
ghcr.io/k8s-at-home/radarr:v4.1.0.61754273dfaf0295
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
1
ghcr.io/k8s-at-home/sonarr:v3.0.8.15070eb230e2381a
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
1
ghcr.io/k8s-at-home/theme-park:v1.7.3f8a5ec8f4669
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/kiaedev/kiae:latestebd03028ff6a
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
ghcr.io/komputing/fauceth:release4ab8fa4143b4
glibc@2.31-13+deb11u2
2.31-13+deb11u7
1
ghcr.io/leoquote/tinyproxy_exporter:master6b4103d88dbb
glibc@2.31-13
2.31-13+deb11u7
1
ghcr.io/leprechaun/owntracks-exporter:0.1.11-de545066099e1abd6d08
glibc@2.36-9+deb12u1
2.36-9+deb12u3
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.