StackRadar

CVE-2023-4911

HighKEV

Advisory

Published 3 Oct 2023In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.814
100th percentile
CISA KEV
Listed
since 21 Nov 2023
Charts affected
525
of 17,787 indexed, latest versions
Container images
566
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: glibc security update

Carried by container images the latest versions of 525 of 17,787 indexed charts deploy, on 566 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.31-13, 2.31-13+deb11u2, 2.31-13+deb11u3, 2.31-13+deb11u4+7 more2.31-13+deb11u7, 2.35-0ubuntu3.4, 2.36-9+deb12u3538
glibcrpm2.26-lp151.18.7, 2.28-189.1.el8, 2.28-189.5.el8_60:2.28-189.6.el8_6, 2.38-4.127
glibcapk2.37-r62.38-r51
OSV records
CGA-7gfr-33rv-p8jrDEBIAN-CVE-2023-4911RHSA-2023:5476UBUNTU-CVE-2023-4911DSA-5514-1openSUSE-SU-2024:13294-1
Also known as
CGA-q93m-hfx2-m599, USN-6409-1

Charts affected

525 by stars
ChartLatestAffected imagesRadar Score
thingsboardthingsboardVerified publisher0.1.36 of 12See more

thingsboard thingsboard 0.1.3

6 of the 12 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
thingsboard/tb-coap-transport:3.4.1bd45a09d85d9
glibc@2.31-13+deb11u3
2.31-13+deb11u7
thingsboard/tb-http-transport:3.4.1a06f53c5e2da
glibc@2.31-13+deb11u3
2.31-13+deb11u7
thingsboard/tb-js-executor:3.4.113e1eadf8ace
glibc@2.31-13+deb11u3
2.31-13+deb11u7
thingsboard/tb-mqtt-transport:3.4.1030f316ce301
glibc@2.31-13+deb11u3
2.31-13+deb11u7
thingsboard/tb-node:3.4.1645f43b688f7
glibc@2.31-13+deb11u3
2.31-13+deb11u7
thingsboard/tb-web-ui:3.4.157f98ed53b3d
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

25,394
monitoringthl-chartsVerified publisher0.1.11 of 10See more

monitoring thl-charts 0.1.1

1 of the 10 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
grafana/promtail:2.4.2626900031c4e
glibc@2.31-13+deb11u2
2.31-13+deb11u7

Open the chart page →

18,908
synapsetranhailongVerified publisher0.1.01 of 2See more

synapse tranhailong 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
matrixdotorg/synapse:v1.78.0def97fd537d8
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

3,164
jupyterhubuninettsigma21.6.01 of 5See more

jupyterhub uninettsigma2 1.6.0

1 of the 5 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
quay.io/nird-toolkit/jupyterhub-server:20221215-e6aa80ecae8c0622533
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

8,607
miniouninettsigma21.2.01 of 1See more

minio uninettsigma2 1.2.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
sigma2as/minio:20240306-3a2e4f5c284ead9ec3e
glibc@2.28-189.5.el8_6
0:2.28-189.6.el8_6

Open the chart page →

4,960
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
glibc@2.36-9+deb12u1
2.36-9+deb12u3

Open the chart page →

14,358
velero-notificationsvelero-notifications1.1.01 of 1See more

velero-notifications velero-notifications 1.1.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
ghcr.io/simoncaron/velero-notifications:1.0.0d058963d4de7
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

1,285
homarrvhdirkVerified publisher0.1.51 of 1See more

homarr vhdirk 0.1.5

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
ghcr.io/ajnart/homarr:lateste103abadfb52
glibc@2.31-13+deb11u6
2.31-13+deb11u7

Open the chart page →

2,789
unmanicvhdirkVerified publisher0.1.41 of 1See more

unmanic vhdirk 0.1.4

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
josh5/unmanic:0.2.64d49c4816260
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4

Open the chart page →

9,347
vinyl-lib-chartvinyl-libVerified publisher0.1.01 of 1See more

vinyl-lib-chart vinyl-lib 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
kporwit/vinyl_lib_app:v0.1.1217de0302218
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

3,392
hedgedocvista0.1.11 of 1See more

hedgedoc vista 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
quay.io/hedgedoc/hedgedoc:1.9.4e09967519a1d
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

3,118
resultappvoting-app-helm-charts-repoVerified publisher1.0.01 of 1See more

resultapp voting-app-helm-charts-repo 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

1,263
voteappvoting-app-helm-charts-repoVerified publisher1.0.02 of 5See more

voteapp voting-app-helm-charts-repo 1.0.0

2 of the 5 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
glibc@2.31-13+deb11u5
2.31-13+deb11u7
kodekloud/examplevotingapp_vote:v13a856afb02a3
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

8,262
resultappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 1See more

resultapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

1,263
voteappvoting-app-helm-charts-repo-cloudVerified publisher1.0.02 of 5See more

voteapp voting-app-helm-charts-repo-cloud 1.0.0

2 of the 5 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
glibc@2.31-13+deb11u5
2.31-13+deb11u7
kodekloud/examplevotingapp_vote:v13a856afb02a3
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

8,262
apiwbstack0.36.01 of 1See more

api wbstack 0.36.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
ghcr.io/wbstack/api:8x.9.11eee94f9f7a53
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

2,019
istio-service-meshwbstack0.0.11 of 1See more

istio-service-mesh wbstack 0.0.1

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
istio/pilot:1.17.1ce9d87606701
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4

Open the chart page →

6,232
mediawikiwbstack0.14.01 of 1See more

mediawiki wbstack 0.14.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

2,132
drillwearefrank1.3.62 of 3See more

drill wearefrank 1.3.6

2 of the 3 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
apache/drill:1.21.11f96558fd292
glibc@2.31-13+deb11u3
2.31-13+deb11u7
bitnamilegacy/zookeeper:3.9.0-debian-11-r1110ed1ea3c8d1
glibc@2.31-13+deb11u6
2.31-13+deb11u7

Open the chart page →

9,397
web-dvwaweb-dvwa1.16.01 of 2See more

web-dvwa web-dvwa 1.16.0

1 of the 2 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
gulacedia/web-dvwa-new:v367b467d961ca
glibc@2.36-9
2.36-9+deb12u3

Open the chart page →

10,001
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-nginx:latest6de60c83128d
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

7,552
openebswenerme3.10.02 of 3See more

openebs wenerme 3.10.0

2 of the 3 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
openebs/node-disk-operator:2.1.06afe2123c457
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4

Open the chart page →

10,489
vaultwardenwitcom-gmbh0.2.01 of 2See more

vaultwarden witcom-gmbh 0.2.0

1 of the 2 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
vaultwarden/server:1.25.239f34c5159a2
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

1,585
wp-gats-helmwordpress-gatsby0.0.11 of 3See more

wp-gats-helm wordpress-gatsby 0.0.1

1 of the 3 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
library/wordpress:6.0.0-php8.0-apache277c6c25980f
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

2,021
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

1,838

Container images carrying it

566 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/libretime/libretime-legacy:latest35b4531189c2
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
glibc@2.35-0ubuntu3
2.35-0ubuntu3.4
1
ghcr.io/lsst-sqre/strimzi-registry-operator:0.6.07e25f7048aff
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/mastodon/mastodon:v4.1.26b18e6d0eda4
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
ghcr.io/melodyyangaws/hive-metastore:3.0.0e949b0f733f0
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/mroxso/pollstr:latest0b4f97faa3d0
glibc@2.31-13+deb11u6
2.31-13+deb11u7
1
ghcr.io/nathanvaughn/webtrees:2.0.1969423a100fab
glibc@2.31-13+deb11u2
2.31-13+deb11u7
1
ghcr.io/nlamirault/bbox_exporter:1.0.0f5dd1f7794c6
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/nlamirault/freebox-exporter:1.0.02d522b664e12
glibc@2.31-13+deb11u4
2.31-13+deb11u7
1
ghcr.io/paperless-ngx/paperless-ngx:1.8.09bbc9a90641e
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/privacyengineering/hawk-monitor:master13309f068a56
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/remla23-team17/app:1.0.05816dbddf47d
glibc@2.31-13+deb11u6
2.31-13+deb11u7
1
ghcr.io/remla23-team17/model-service:1.0.0aa59fe2c4f6a
glibc@2.31-13+deb11u6
2.31-13+deb11u7
1
ghcr.io/riotkit-org/backup-repository:v4.0.0ab41ffa78f69
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
ghcr.io/rivals-space/rivals-mastodon:1.6.143b23d55e4be
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
ghcr.io/rodg/nodecg-base:latest31be4bf87070
glibc@2.31-13+deb11u6
2.31-13+deb11u7
1
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
glibc@2.36-9
2.36-9+deb12u3
1
ghcr.io/salesforce/sloop:sha-2ce8bbe119e24f24b1d
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
ghcr.io/savonet/liquidsoap:v2.0.19e08148e1055
glibc@2.31-13+deb11u2
2.31-13+deb11u7
1
ghcr.io/sergelogvinov/keydb:6.3.376a19ddc3626
glibc@2.31-13+deb11u6
2.31-13+deb11u7
1
ghcr.io/simoncaron/velero-notifications:1.0.0d058963d4de7
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/spiffe/spire-controller-manager:0.2.25e90b2d092df
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
ghcr.io/volosoft/eshoponabp/app-authserver:1.0.022ce496c67d7
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/volosoft/eshoponabp/app-publicweb:1.0.07e53010dda55
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/volosoft/eshoponabp/gateway-web:1.0.026465a2bf671
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/volosoft/eshoponabp/gateway-web-public:1.0.050cab15c80d9
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/volosoft/eshoponabp/service-administration:1.0.0206a9bee17a8
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/volosoft/eshoponabp/service-basket:1.0.0dd5ce454072e
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/volosoft/eshoponabp/service-catalog:1.0.07ecb00f53d99
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/volosoft/eshoponabp/service-identity:1.0.0e53bf47b62d0
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/volosoft/eshoponabp/service-ordering:1.0.15e836b17337f
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/volosoft/eshoponabp/service-payment:1.0.02ca91145099c
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/vshn/haproxy-with-mysql:1.0.0a3c27ee3fb2f
glibc@2.36-9+deb12u1
2.36-9+deb12u3
1
ghcr.io/wbstack/api:8x.9.11eee94f9f7a53
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ghcr.io/zcube/bitnami-compat/redis:7.0-debian-11-r55118a403046f7
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
mcr.microsoft.com/oss/azure/aad-pod-identity/nmi:v1.8.1777788bf38938
glibc@2.31-13+deb11u6
2.31-13+deb11u7
1
public.ecr.aws/j1r0q0g6/notebooks/notebook-controller:v1.4cac3ed9a9826
glibc@2.31-13
2.31-13+deb11u7
1
public.ecr.aws/jtekt-corporation/annotation-tool:ef974ad9abd817eb6845
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
public.ecr.aws/jtekt-corporation/polygonal-annotation-tool:a3fa936056efd38500d6
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
1
quay.io/bentoml/yatai:0.4.614b482c1f1b8
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
1
quay.io/fiware/apollo:0.0.1055330b1b60c1
glibc@2.28-189.1.el8
0:2.28-189.6.el8_6
1
quay.io/fiware/endpoint-configuration-service:0.4.30dc38a87b844
glibc@2.28-189.1.el8
0:2.28-189.6.el8_6
1
quay.io/fiware/trusted-issuers-registry:0.11.1a8a9ec461034
glibc@2.28-189.1.el8
0:2.28-189.6.el8_6
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
1
quay.io/fluentd_elasticsearch/fluentd:v4.2.399079df58561
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
quay.io/keycloak/keycloak-operator:19.0.3-legacy09d52508fee9
glibc@2.28-189.5.el8_6
0:2.28-189.6.el8_6
1
quay.io/keycloak/keycloak-operator:19.0.2-legacy15fa0ed662b1
glibc@2.28-189.5.el8_6
0:2.28-189.6.el8_6
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.