StackRadar

CVE-2023-49468

High

Advisory

Published 7 Dec 2023In the index since 6 Sept 2026
Severity
High
worst across findings
CVSS
8.8
base score, highest
EPSS
0.009
57th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
56
of 17,781 indexed, latest versions
Container images
56
deployed by those charts
Fix available
2 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 56 of 17,781 indexed charts deploy, on 56 images.

Affected packageAffected versionsFixed inImages
libde265deb1.0.4-1build1, 1.0.8-1, 1.0.8-1ubuntu0.1, 1.0.11-1+1 more1.0.4-1ubuntu0.4, 1.0.8-1ubuntu0.3, 1.0.11-1+deb12u248
libde265apk1.0.8-r2, 1.0.11-r0, 1.0.11-r2, 1.0.12-r01.0.15-r08
OSV records
ALPINE-CVE-2023-49468DEBIAN-CVE-2023-49468UBUNTU-CVE-2023-49468
Also known as
USN-6677-1

Charts affected

56 by stars
ChartLatestAffected imagesRadar Score
evsantisbon0.2.02 of 5See more

ev santisbon 0.2.0

2 of the 5 container images this version deploys carry CVE-2023-49468.

Container imageDigestPackageFixed in
santisbon/evwatcher:latestc4e994ca4540
libde265@1.0.11-1
1.0.11-1+deb12u2
santisbon/evworker:lateste807283f8d69
libde265@1.0.11-1
1.0.11-1+deb12u2

Open the chart page →

14,179
speedtestsantisbon0.1.01 of 3See more

speedtest santisbon 0.1.0

1 of the 3 container images this version deploys carry CVE-2023-49468.

Container imageDigestPackageFixed in
santisbon/speedtest:latest8ee3a1697227
libde265@1.0.11-1
1.0.11-1+deb12u2

Open the chart page →

12,668
stakefishstakefish0.1.01 of 8See more

stakefish stakefish 0.1.0

1 of the 8 container images this version deploys carry CVE-2023-49468.

Container imageDigestPackageFixed in
thongngo3301/stakefish:latesta341af5976e3
libde265@1.0.11-1
1.0.11-1+deb12u2

Open the chart page →

20,223
super-mariotechpreta0.1.11 of 1See more

super-mario techpreta 0.1.1

1 of the 1 container images this version deploys carry CVE-2023-49468.

Container imageDigestPackageFixed in
nirmalnaveen/supermario:latest8541a39162f3
libde265@1.0.11-1
1.0.11-1+deb12u2

Open the chart page →

6,297
tfy-distributortruefoundryVerified publisher0.0.11 of 4See more

tfy-distributor truefoundry 0.0.1

1 of the 4 container images this version deploys carry CVE-2023-49468.

Container imageDigestPackageFixed in
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
libde265@1.0.11-1+deb12u1
1.0.11-1+deb12u2

Open the chart page →

17,323
demo-backendv2flyVerified publisher0.0.31 of 1See more

demo-backend v2fly 0.0.3

1 of the 1 container images this version deploys carry CVE-2023-49468.

Container imageDigestPackageFixed in
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
libde265@1.0.11-1
1.0.11-1+deb12u2

Open the chart page →

14,358

Container images carrying it

56 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/smarter-project/image-detector:v2.5.31dcca70c6446
libde265@1.0.4-1build1
1.0.4-1ubuntu0.4
1
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
libde265@1.0.11-1
1.0.11-1+deb12u2
1
public.ecr.aws/jtekt-corporation/shinsei-manager-front:v1.5.5f8fb4eea4071
libde265@1.0.11-1+deb12u1
1.0.11-1+deb12u2
1
public.ecr.aws/jtekt-corporation/time-series-storage-service:v1.5.1046ef5c9ed50
libde265@1.0.11-1
1.0.11-1+deb12u2
1
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
libde265@1.0.11-1+deb12u1
1.0.11-1+deb12u2
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
libde265@1.0.11-1
1.0.11-1+deb12u2
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.