StackRadar

CVE-2024-10041

Medium

Advisory

Published 23 Oct 2024In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.7
base score, highest
EPSS
0.003
19th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,806
of 17,803 indexed, latest versions
Container images
1,905
deployed by those charts
Fix available
1 of 2
affected packages

Red Hat Security Advisory: pam security update

Carried by container images the latest versions of 1,806 of 17,803 indexed charts deploy, on 1,905 images.

Affected packageAffected versionsFixed inImages
pamdeb1.1.8-1ubuntu2, 1.1.8-1ubuntu2.2, 1.1.8-3.2ubuntu2, 1.1.8-3.2ubuntu2.1+32 moreno fix listed1,893
pamrpm1.3.0-lp151.7.38, 1.5.1-12.el9, 1.5.1-14.el9, 1.5.1-15.el9+3 more0:1.5.1-21.el9_5, 1.7.1-3.1, 1.7.1-160000.3.112
OSV records
DEBIAN-CVE-2024-10041RHSA-2024:11250UBUNTU-CVE-2024-10041openSUSE-SU-2025:15477-1SUSE-SU-2026:21192-1
Also known as
RHSA-2024:9941

Charts affected

1,806 by stars
ChartLatestAffected imagesRadar Score
xkopsxkops0.1.04 of 5See more

xkops xkops 0.1.0

4 of the 5 container images this version deploys carry CVE-2024-10041.

Container imageDigestPackageFixed in
hamzaarshad10/querybackend:1.6.22c1c3b86a8e7
pam@1.5.2-6+deb12u1
no fix listed
hamzaarshad10/querypodpy:1.7154f38e8668e
pam@1.5.2-6+deb12u1
no fix listed
library/mongo:latest5211c51171f5
pam@1.5.3-5ubuntu5.6
no fix listed
murtazashah46/helmfile:latest4d11726cf803
pam@1.5.2-6+deb12u1
no fix listed

Open the chart page →

13,875
xlinexline0.0.11 of 1See more

xline xline 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-10041.

Container imageDigestPackageFixed in
ghcr.io/liangyuanpeng/xline:latest3d2eceb44a3b
pam@1.5.3-5ubuntu5
no fix listed

Open the chart page →

2,156
api-snapyoukadevVerified publisher0.1.11 of 1See more

api-snap youkadev 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-10041.

Container imageDigestPackageFixed in
youkadev/api-snap:0.1.14db0f9428e67
pam@1.5.2-6+deb12u1
no fix listed

Open the chart page →

2,710
changedetection-iozekker6Verified publisher1.101.01 of 1See more

changedetection-io zekker6 1.101.0

1 of the 1 container images this version deploys carry CVE-2024-10041.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.60.6eb4a9f718801
pam@1.5.2-6+deb12u2
no fix listed

Open the chart page →

2,649
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2024-10041.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed
yandex/clickhouse-server:21.3.204eccfffb01d7
pam@1.3.1-5ubuntu4.3
no fix listed

Open the chart page →

9,280
zoo-project-druzoo-projectOfficialVerified publisher0.10.41 of 6See more

zoo-project-dru zoo-project 0.10.4

1 of the 6 container images this version deploys carry CVE-2024-10041.

Container imageDigestPackageFixed in
zooproject/zoo-project:dru-19f3c4eed7c9ec9d1f0375bbe59f9d204a42bd3a9a507cb7e2dd
pam@1.4.0-11ubuntu2.7
no fix listed

Open the chart page →

7,949

Container images carrying it

1,905 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/liangyuanpeng/xline:latest3d2eceb44a3b
pam@1.5.3-5ubuntu5
no fix listed
1
ghcr.io/libreconnect/ferriscompany:0.1.0-rc6ed86db9f0efe
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/linkwarden/linkwarden:v2.16.30664c28a039b
pam@1.5.2-6+deb12u2
no fix listed
1
ghcr.io/linuxserver/booksonic-air:version-v2009.1.0baa4fa9549dc
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed
1
ghcr.io/linuxserver/calibre-web:0.6.267c0464228f2f
pam@1.5.3-5ubuntu5.6
no fix listed
1
ghcr.io/linuxserver/duplicati:latesta792931146b4
pam@1.5.3-5ubuntu5.7
no fix listed
1
ghcr.io/linuxserver/ombi:4.53.50caadf03b804
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/linuxserver/ombi:4.16.124c1b67cf39af
pam@1.4.0-11ubuntu2
no fix listed
1
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
pam@1.5.3-5ubuntu5.1
no fix listed
1
ghcr.io/linuxserver/resilio-sync:version-2.7.2.1375605b6d544028
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed
1
ghcr.io/loft-sh/vnode-runtime:0.3.3b065ec5a5239
pam@1.4.0-11ubuntu2.7
no fix listed
1
ghcr.io/loxilb-io/kube-loxilb:latest6f65e53e252d
pam@1.4.0-11ubuntu2.7
no fix listed
1
ghcr.io/loxilb-io/loxilb:latestc7ede1bab641
pam@1.4.0-11ubuntu2.7
no fix listed
1
ghcr.io/m9sweeper/trawler:1.6.0df917c5a7e54
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/maastrichtu-ids/rstudio:latest981aa4c109e1
pam@1.5.3-5ubuntu5.1
no fix listed
1
ghcr.io/maybe-finance/maybe:0.5.0c6ab95ca9130
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/mcwarman/backstage-sample-app/backend:main07aba09a594f
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/media-streaming-mesh/msm-admission-webhook:latest3e811d67189c
pam@1.5.3-5ubuntu5.1
no fix listed
1
ghcr.io/media-streaming-mesh/msm-cni:latestfe0b89b818a6
pam@1.5.3-5ubuntu5.1
no fix listed
1
ghcr.io/media-streaming-mesh/msm-cp:latest8cb08fc7010b
pam@1.5.3-5ubuntu5.1
no fix listed
1
ghcr.io/media-streaming-mesh/msm-dp:latest7ffcb25b4cfc
pam@1.5.3-5ubuntu5.1
no fix listed
1
ghcr.io/media-streaming-mesh/msm-nc:latest296fe4970e38
pam@1.5.3-5ubuntu5.1
no fix listed
1
ghcr.io/middleware-labs/mw-kube-agent:1.12.09c7bc0f9bb35
pam@1.5.3-5ubuntu5.1
no fix listed
1
ghcr.io/middleware-labs/mw-kube-agent:1.21.0ff23f452813a
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/mollyim/mollysocket:1.1.12a687393f8c8
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/mollyim/mollysocket:1.7.1c675622546a4
pam@1.5.2-6+deb12u2
no fix listed
1
ghcr.io/mosn/htnn-controller:v0.3.1c379e66246be
pam@1.4.0-11ubuntu2.4
no fix listed
1
ghcr.io/music-assistant/server:2.7.53522e8a7a8f0
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/music-assistant/server:2.9.950666a6f8d7f
pam@1.5.2-6+deb12u2
no fix listed
1
ghcr.io/music-assistant/server:2.8.7eef3ee7810d0
pam@1.5.2-6+deb12u2
no fix listed
1
ghcr.io/nefelim4ag/k8s-ssh-bastion:0.5.04d337e14c80b
pam@1.5.3-5ubuntu5.1
no fix listed
1
ghcr.io/nefelim4ag/pingdom-operator:0.0.15f8c7afdcf439
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/nmshd/backbone-admin-cli:7.2.1f7d095c04a75
pam@1.5.3-5ubuntu5.6
no fix listed
1
ghcr.io/noahburrell0/sealed-secrets-ui:v0.1.47e7368fb472d
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/oguzhan-yilmaz/argocd-backup-s3:latestb61c750ade19
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.2035bc5ca66d55a
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.55d7f93d2182fe
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/oguzhan-yilmaz/steampipe-powerpipe-kubernetes--powerpipe:latesta16ab5ca10a7
pam@1.5.2-6+deb12u2
no fix listed
1
ghcr.io/oguzhan-yilmaz/steampipe-powerpipe-kubernetes--steampipe:latestc0c8d53df9f3
pam@1.5.2-6+deb12u2
no fix listed
1
ghcr.io/ondrejsika/counter-frontend:latestc4166d2eb8eb
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/opencatalogi/web-app:deva1a7f507f6ae
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/openclaw/openclaw:2026.6.10af7ea052cf21
pam@1.5.2-6+deb12u2
no fix listed
1
ghcr.io/openclaw/openclaw:2026.5.22dcfd14877740
pam@1.5.2-6+deb12u2
no fix listed
1
ghcr.io/opencost/opencost-parquet-exporter:v0.2.1ce85ef0ce665
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/openlit/openlit-controller:0.10.0165efd4469ea
pam@1.5.2-6+deb12u2
no fix listed
1
ghcr.io/openrelik/openrelik-mediator:latest42efc445b19e
pam@1.5.2-6+deb12u2
no fix listed
1
ghcr.io/openrelik/openrelik-metrics:latest3d0f1ddeebf5
pam@1.5.2-6+deb12u2
no fix listed
1
ghcr.io/openrelik/openrelik-server:latestce1132261523
pam@1.5.2-6+deb12u2
no fix listed
1
ghcr.io/openrelik/openrelik-worker-analyzer-config:latest1269d3d8d2c2
pam@1.5.3-5ubuntu5.5
no fix listed
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.