StackRadar

CVE-2024-10041

Medium

Advisory

Published 23 Oct 2024In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.7
base score, highest
EPSS
0.003
19th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1,806
of 17,803 indexed, latest versions
Container images
1,905
deployed by those charts
Fix available
1 of 2
affected packages

Red Hat Security Advisory: pam security update

Carried by container images the latest versions of 1,806 of 17,803 indexed charts deploy, on 1,905 images.

Affected packageAffected versionsFixed inImages
pamdeb1.1.8-1ubuntu2, 1.1.8-1ubuntu2.2, 1.1.8-3.2ubuntu2, 1.1.8-3.2ubuntu2.1+32 moreno fix listed1,893
pamrpm1.3.0-lp151.7.38, 1.5.1-12.el9, 1.5.1-14.el9, 1.5.1-15.el9+3 more0:1.5.1-21.el9_5, 1.7.1-3.1, 1.7.1-160000.3.112
OSV records
DEBIAN-CVE-2024-10041RHSA-2024:11250UBUNTU-CVE-2024-10041openSUSE-SU-2025:15477-1SUSE-SU-2026:21192-1
Also known as
RHSA-2024:9941

Charts affected

1,806 by stars
ChartLatestAffected imagesRadar Score
xkopsxkops0.1.04 of 5See more

xkops xkops 0.1.0

4 of the 5 container images this version deploys carry CVE-2024-10041.

Container imageDigestPackageFixed in
hamzaarshad10/querybackend:1.6.22c1c3b86a8e7
pam@1.5.2-6+deb12u1
no fix listed
hamzaarshad10/querypodpy:1.7154f38e8668e
pam@1.5.2-6+deb12u1
no fix listed
library/mongo:latest5211c51171f5
pam@1.5.3-5ubuntu5.6
no fix listed
murtazashah46/helmfile:latest4d11726cf803
pam@1.5.2-6+deb12u1
no fix listed

Open the chart page →

13,875
xlinexline0.0.11 of 1See more

xline xline 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-10041.

Container imageDigestPackageFixed in
ghcr.io/liangyuanpeng/xline:latest3d2eceb44a3b
pam@1.5.3-5ubuntu5
no fix listed

Open the chart page →

2,156
api-snapyoukadevVerified publisher0.1.11 of 1See more

api-snap youkadev 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-10041.

Container imageDigestPackageFixed in
youkadev/api-snap:0.1.14db0f9428e67
pam@1.5.2-6+deb12u1
no fix listed

Open the chart page →

2,710
changedetection-iozekker6Verified publisher1.101.01 of 1See more

changedetection-io zekker6 1.101.0

1 of the 1 container images this version deploys carry CVE-2024-10041.

Container imageDigestPackageFixed in
ghcr.io/dgtlmoon/changedetection.io:0.60.6eb4a9f718801
pam@1.5.2-6+deb12u2
no fix listed

Open the chart page →

2,649
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2024-10041.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed
yandex/clickhouse-server:21.3.204eccfffb01d7
pam@1.3.1-5ubuntu4.3
no fix listed

Open the chart page →

9,280
zoo-project-druzoo-projectOfficialVerified publisher0.10.41 of 6See more

zoo-project-dru zoo-project 0.10.4

1 of the 6 container images this version deploys carry CVE-2024-10041.

Container imageDigestPackageFixed in
zooproject/zoo-project:dru-19f3c4eed7c9ec9d1f0375bbe59f9d204a42bd3a9a507cb7e2dd
pam@1.4.0-11ubuntu2.7
no fix listed

Open the chart page →

7,949

Container images carrying it

1,905 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/openrelik/openrelik-worker-analyzer-logs:latestb175cc61959a
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/openrelik/openrelik-worker-bulkextractor:latest67498ee2e639
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/openrelik/openrelik-worker-capa:latest71323a4f3fc5
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/openrelik/openrelik-worker-chromecreds:latest76d4fbcc6ff0
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/openrelik/openrelik-worker-cloud-logs:latesta5d7e3cf71d3
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/openrelik/openrelik-worker-containers:latesta6d5abe94706
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/openrelik/openrelik-worker-dfindexeddb:latest31966a825782
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/openrelik/openrelik-worker-extraction:latestec9fc5864cd5
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/openrelik/openrelik-worker-floss:latest7a331eb83c6a
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/openrelik/openrelik-worker-grep:latest470ff3529746
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/openrelik/openrelik-worker-os-creds:latest7fc7ec101f08
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/openrelik/openrelik-worker-plaso:latest75537ea8c851
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/openrelik/openrelik-worker-strings:latest6e05055b701f
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/openrelik/openrelik-worker-timesketch:latest4cb88b603cdc
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/openrelik/openrelik-worker-yara:latestbd7fbf4505b5
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-frontend-proxy1c53bfb59697
pam@1.4.0-11ubuntu2.6
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-imageprovider4e322858fe56
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-accountingservice6d051840bb29
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-accounting74c490f862da
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-quoteservice87eb325d306f
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-frontendproxy9fdec1be03e4
pam@1.4.0-11ubuntu2.4
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-emailservicea1f5cebb5240
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-shippingservicea3ca4c02a5df
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-adservicea59e5eead495
pam@1.5.3-5ubuntu5.1
no fix listed
1
ghcr.io/open-telemetry/demo:1.12.0-recommendationserviceb294a4278407
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/open-telemetry/demo:3.0.0-ade6c593fe75eb
pam@1.5.3-5ubuntu5.4
no fix listed
1
ghcr.io/openunison/openunison-k8s:1.0.51128081dae281
pam@1.5.3-5ubuntu5.7
no fix listed
1
ghcr.io/openunison/openunison-k8s-react:1.0.2afb3e9282952
pam@1.4.0-11ubuntu2.6
no fix listed
1
ghcr.io/oznu/homebridge:2022-07-08ff2af53897e7
pam@1.3.1-5ubuntu4.3
no fix listed
1
ghcr.io/pabloromeo/clusterplex_orchestrator:1.4.160fe80de2d22c
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.13.10642357c5dbd
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/paperless-ngx/paperless-ngx:2.0.1ab255bea133e
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/paradigmxyz/reth:v1.3.121e5290e8b743
pam@1.4.0-11ubuntu2.5
no fix listed
1
ghcr.io/paradigmxyz/reth:v2.2.0505fca5e87d6
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/paradigmxyz/reth:latest68e76b32ad9a
pam@1.5.3-5ubuntu5.6
no fix listed
1
ghcr.io/parmincloud/haproxy-redis-sentinel:1.0.040a00a6456ae
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/perceptolab/devops-demo-app:0.0.2cdc0658c40fb
pam@1.1.8-3.6ubuntu2.18.04.3
no fix listed
1
ghcr.io/platformrelay/kollect:v0.20.0c95fa31ead03
pam@1.5.2-6+deb12u2
no fix listed
1
ghcr.io/postgresml/pgcat:v1.2.0627761f6dcbc
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/privacyengineering/hawk-service:latestbfedf47bb5e0
pam@1.4.0-11ubuntu2.4
no fix listed
1
ghcr.io/radar-base/radar-app-config/radar-app-config:0.6.24431db7b486b
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/radar-base/radar-data-dashboard-backend/radar-data-dashboard-backend:0.2.4d1e55350923c
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/radar-base/radar-gateway/radar-gateway:0.9.4219d894aa7a6
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/radar-base/radar-output-restructure/radar-output-restructure:3.0.67fb9c70e96a4
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/radar-base/radar-schemas/radar-schemas-tools:0.8.16c442e8bfe6b4
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/radar-base/radar-upload-source-connector/radar-upload-connect-backend:0.6.46a04b43b8d9a
pam@1.5.3-5ubuntu5.5
no fix listed
1
ghcr.io/rajnandan1/kener:3.2.182b993cb232eb
pam@1.5.2-6+deb12u1
no fix listed
1
ghcr.io/rodg/rtmp-controller:latest67f99a5beab7
pam@1.5.2-6
no fix listed
1
ghcr.io/rss-bridge/rss-bridge:latest606896116558
pam@1.5.2-6+deb12u2
no fix listed
1

syft 1.42.1 · advisories as of 18 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.