StackRadar

CVE-2023-4911

HighKEV

Advisory

Published 3 Oct 2023In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.814
100th percentile
CISA KEV
Listed
since 21 Nov 2023
Charts affected
525
of 17,781 indexed, latest versions
Container images
566
deployed by those charts
Fix available
3 of 3
affected packages

Red Hat Security Advisory: glibc security update

Carried by container images the latest versions of 525 of 17,781 indexed charts deploy, on 566 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.31-13, 2.31-13+deb11u2, 2.31-13+deb11u3, 2.31-13+deb11u4+7 more2.31-13+deb11u7, 2.35-0ubuntu3.4, 2.36-9+deb12u3538
glibcrpm2.26-lp151.18.7, 2.28-189.1.el8, 2.28-189.5.el8_60:2.28-189.6.el8_6, 2.38-4.127
glibcapk2.37-r62.38-r51
OSV records
CGA-7gfr-33rv-p8jrDEBIAN-CVE-2023-4911RHSA-2023:5476UBUNTU-CVE-2023-4911DSA-5514-1openSUSE-SU-2024:13294-1
Also known as
CGA-q93m-hfx2-m599, USN-6409-1

Charts affected

525 by stars
ChartLatestAffected imagesRadar Score
thingsboardthingsboardVerified publisher0.1.36 of 12See more

thingsboard thingsboard 0.1.3

6 of the 12 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
thingsboard/tb-coap-transport:3.4.1bd45a09d85d9
glibc@2.31-13+deb11u3
2.31-13+deb11u7
thingsboard/tb-http-transport:3.4.1a06f53c5e2da
glibc@2.31-13+deb11u3
2.31-13+deb11u7
thingsboard/tb-js-executor:3.4.113e1eadf8ace
glibc@2.31-13+deb11u3
2.31-13+deb11u7
thingsboard/tb-mqtt-transport:3.4.1030f316ce301
glibc@2.31-13+deb11u3
2.31-13+deb11u7
thingsboard/tb-node:3.4.1645f43b688f7
glibc@2.31-13+deb11u3
2.31-13+deb11u7
thingsboard/tb-web-ui:3.4.157f98ed53b3d
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

25,394
monitoringthl-chartsVerified publisher0.1.11 of 10See more

monitoring thl-charts 0.1.1

1 of the 10 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
grafana/promtail:2.4.2626900031c4e
glibc@2.31-13+deb11u2
2.31-13+deb11u7

Open the chart page →

18,908
synapsetranhailongVerified publisher0.1.01 of 2See more

synapse tranhailong 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
matrixdotorg/synapse:v1.78.0def97fd537d8
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

3,164
jupyterhubuninettsigma21.6.01 of 5See more

jupyterhub uninettsigma2 1.6.0

1 of the 5 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
quay.io/nird-toolkit/jupyterhub-server:20221215-e6aa80ecae8c0622533
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

8,607
miniouninettsigma21.2.01 of 1See more

minio uninettsigma2 1.2.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
sigma2as/minio:20240306-3a2e4f5c284ead9ec3e
glibc@2.28-189.5.el8_6
0:2.28-189.6.el8_6

Open the chart page →

4,960
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
glibc@2.36-9+deb12u1
2.36-9+deb12u3

Open the chart page →

14,358
velero-notificationsvelero-notifications1.1.01 of 1See more

velero-notifications velero-notifications 1.1.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
ghcr.io/simoncaron/velero-notifications:1.0.0d058963d4de7
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

1,285
homarrvhdirkVerified publisher0.1.51 of 1See more

homarr vhdirk 0.1.5

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
ghcr.io/ajnart/homarr:lateste103abadfb52
glibc@2.31-13+deb11u6
2.31-13+deb11u7

Open the chart page →

2,789
unmanicvhdirkVerified publisher0.1.41 of 1See more

unmanic vhdirk 0.1.4

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
josh5/unmanic:0.2.64d49c4816260
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4

Open the chart page →

9,347
vinyl-lib-chartvinyl-libVerified publisher0.1.01 of 1See more

vinyl-lib-chart vinyl-lib 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
kporwit/vinyl_lib_app:v0.1.1217de0302218
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

3,392
hedgedocvista0.1.11 of 1See more

hedgedoc vista 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
quay.io/hedgedoc/hedgedoc:1.9.4e09967519a1d
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

3,118
resultappvoting-app-helm-charts-repoVerified publisher1.0.01 of 1See more

resultapp voting-app-helm-charts-repo 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

1,263
voteappvoting-app-helm-charts-repoVerified publisher1.0.02 of 5See more

voteapp voting-app-helm-charts-repo 1.0.0

2 of the 5 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
glibc@2.31-13+deb11u5
2.31-13+deb11u7
kodekloud/examplevotingapp_vote:v13a856afb02a3
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

8,262
resultappvoting-app-helm-charts-repo-cloudVerified publisher1.0.01 of 1See more

resultapp voting-app-helm-charts-repo-cloud 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

1,263
voteappvoting-app-helm-charts-repo-cloudVerified publisher1.0.02 of 5See more

voteapp voting-app-helm-charts-repo-cloud 1.0.0

2 of the 5 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
kodekloud/examplevotingapp_result:v1e510023fdf38
glibc@2.31-13+deb11u5
2.31-13+deb11u7
kodekloud/examplevotingapp_vote:v13a856afb02a3
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

8,262
apiwbstack0.36.01 of 1See more

api wbstack 0.36.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
ghcr.io/wbstack/api:8x.9.11eee94f9f7a53
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

2,019
istio-service-meshwbstack0.0.11 of 1See more

istio-service-mesh wbstack 0.0.1

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
istio/pilot:1.17.1ce9d87606701
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4

Open the chart page →

6,232
mediawikiwbstack0.14.01 of 1See more

mediawiki wbstack 0.14.0

1 of the 1 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
ghcr.io/wbstack/mediawiki:1.37-7.4-20220621-fp-beta-0c3012c8a34b4
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

2,132
drillwearefrank1.3.62 of 3See more

drill wearefrank 1.3.6

2 of the 3 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
apache/drill:1.21.11f96558fd292
glibc@2.31-13+deb11u3
2.31-13+deb11u7
bitnamilegacy/zookeeper:3.9.0-debian-11-r1110ed1ea3c8d1
glibc@2.31-13+deb11u6
2.31-13+deb11u7

Open the chart page →

9,397
web-dvwaweb-dvwa1.16.01 of 2See more

web-dvwa web-dvwa 1.16.0

1 of the 2 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
gulacedia/web-dvwa-new:v367b467d961ca
glibc@2.36-9
2.36-9+deb12u3

Open the chart page →

10,001
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-nginx:latest6de60c83128d
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

7,552
openebswenerme3.10.02 of 3See more

openebs wenerme 3.10.0

2 of the 3 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
openebs/node-disk-operator:2.1.06afe2123c457
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4

Open the chart page →

10,489
vaultwardenwitcom-gmbh0.2.01 of 2See more

vaultwarden witcom-gmbh 0.2.0

1 of the 2 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
vaultwarden/server:1.25.239f34c5159a2
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

1,585
wp-gats-helmwordpress-gatsby0.0.11 of 3See more

wp-gats-helm wordpress-gatsby 0.0.1

1 of the 3 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
library/wordpress:6.0.0-php8.0-apache277c6c25980f
glibc@2.31-13+deb11u3
2.31-13+deb11u7

Open the chart page →

2,021
enterprise-gatewayzeet3.2.21 of 2See more

enterprise-gateway zeet 3.2.2

1 of the 2 container images this version deploys carry CVE-2023-4911.

Container imageDigestPackageFixed in
elyra/kernel-image-puller:3.2.2c922f1f1646a
glibc@2.31-13+deb11u5
2.31-13+deb11u7

Open the chart page →

1,838

Container images carrying it

566 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
postgis/postgis:15-3.3a2fc46b52819
glibc@2.31-13+deb11u6
2.31-13+deb11u7
2
scorpiobroker/scorpio:RegistrySubscriptionManager_2.1.001e11d800459
glibc@2.31-13+deb11u2
2.31-13+deb11u7
2
scorpiobroker/scorpio:eureka-server_2.1.03f05a113a4be
glibc@2.31-13+deb11u2
2.31-13+deb11u7
2
scorpiobroker/scorpio:AtContextServer_2.1.05073ceef2fa0
glibc@2.31-13+deb11u2
2.31-13+deb11u7
2
scorpiobroker/scorpio:gateway_2.1.062dae3dd0eeb
glibc@2.31-13+deb11u2
2.31-13+deb11u7
2
scorpiobroker/scorpio:RegistryManager_2.1.0a2cfcf0947fd
glibc@2.31-13+deb11u2
2.31-13+deb11u7
2
scorpiobroker/scorpio:QueryManager_2.1.0b742a53b2803
glibc@2.31-13+deb11u2
2.31-13+deb11u7
2
scorpiobroker/scorpio:HistoryManager_2.1.0b7fe27a06ff5
glibc@2.31-13+deb11u2
2.31-13+deb11u7
2
scorpiobroker/scorpio:config-server_1.1.0c46c1517e523
glibc@2.31-13+deb11u2
2.31-13+deb11u7
2
scorpiobroker/scorpio:SubscriptionManager_2.1.0e08036670d66
glibc@2.31-13+deb11u2
2.31-13+deb11u7
2
scorpiobroker/scorpio:EntityManager_2.1.0f02e8a429a08
glibc@2.31-13+deb11u2
2.31-13+deb11u7
2
stakater/stakater-nordmart-review:1.0.35954d2be66e95
glibc@2.28-189.5.el8_6
0:2.28-189.6.el8_6
2
svtechnmaa/svtech_debuger:v1.0.0b2987abe57d3
glibc@2.35-0ubuntu3
2.35-0ubuntu3.4
2
tzahi12345/youtubedl-material:4.3.2:latest2f943d584711
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
2
vaultwarden/server:1.25.239f34c5159a2
glibc@2.31-13+deb11u3
2.31-13+deb11u7
2
yzhou442/equiz:latesta3f7ca69e28d
glibc@2.31-13+deb11u5
2.31-13+deb11u7
2
ghcr.io/apollographql/router:v1.25.0a84f593d04ea
glibc@2.31-13+deb11u6
2.31-13+deb11u7
2
ghcr.io/codingducksrl/laravel:8.15be52524664c
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
2
ghcr.io/danbooru/danbooru:9cab67c0ac72a8c52289302c519715ceec2372d95f545698e907
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
2
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
glibc@2.35-0ubuntu3
2.35-0ubuntu3.4
2
quay.io/coreos/etcd:v3.5.628cb0630cb85
glibc@2.31-13+deb11u3
2.31-13+deb11u7
2
quay.io/hedgedoc/hedgedoc:1.9.4e09967519a1d
glibc@2.31-13+deb11u5
2.31-13+deb11u7
2
1password/connect-api:1.7.26aa94cf713f9
glibc@2.31-13+deb11u6
2.31-13+deb11u7
1
1password/connect-sync:1.7.2fe527ed9d81f
glibc@2.31-13+deb11u6
2.31-13+deb11u7
1
48n6e/camellia-redis-proxy:1.4.0-jdk-21-0.0.1a6ed886fddfc
glibc@2.36-9+deb12u1
2.36-9+deb12u3
1
adagber/planner:v1.0e5c1ed097752
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
adityaprasadpathak/myapp:3.07e3b9777362c
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
adolfintel/speedtest:latest1f828fe83374
glibc@2.31-13+deb11u2
2.31-13+deb11u7
1
aeron/ikev2-strongswan-vpn:23.0b48f25541f79
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
aidasi/swpapi:v1-1-net6-k8s-test-beta838b5e2080bc
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
aidasi/swpbom:v1-1-net6-k8s-test-betafee6857b9bc9
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
aidasi/swpgateway:v1-1-net6-k8s-test-beta5ce8dbff7fdc
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
aidasi/swpidentity:v1-1-net6-k8s-test-betad433285c7d5a
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
aidasi/swpspa:v1-1-net6-k8s-test-betadee4ec566312
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
akaunting/akaunting:3.0.1552811b36ec3a
glibc@2.36-9
2.36-9+deb12u3
1
allegroai/clearml-serving-inference:1.3.0fca885e8cfc6
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
allegroai/clearml-serving-statistics:1.3.0c58d9da7bdf8
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
andreacioni/kube-workload-restarter:0.0.242938b310090a
glibc@2.31-13+deb11u5
2.31-13+deb11u7
1
andrianrf/bpjstk-service:latest46abe878d9d8
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
andrianrf/bpjstk-simulator:latestb63fdb51d39d
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
andrianrf/iso-client:latestba560086ce15
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
ankane/pgvector:v0.5.1d3a9d8ac27bb
glibc@2.36-9+deb12u1
2.36-9+deb12u3
1
apache/camel-k:1.10.43bb13d14f64a
glibc@2.28-189.5.el8_6
0:2.28-189.6.el8_6
1
apache/drill:1.21.11f96558fd292
glibc@2.31-13+deb11u3
2.31-13+deb11u7
1
apachepinot/pinot:latest-jdk110018bb04ced7
glibc@2.31-13+deb11u2
2.31-13+deb11u7
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
1
apache/skywalking-oap-server:9.2.0133d35d2c263
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
1
apache/skywalking-ui:9.2.0295f1dc87d98
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
1
apache/superset:9cdaa280429ec297db16d56c94fd77b5d2aff107975ab033580d
glibc@2.31-13+deb11u2
2.31-13+deb11u7
1
apache/tika:2.9.0.092d055a84e9e
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.4
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.