StackRadar

CVE-2024-10963

High

Advisory

Published 7 Nov 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.4
base score, highest
EPSS
0.008
54th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
115
of 17,781 indexed, latest versions
Container images
119
deployed by those charts
Fix available
2 of 2
affected packages

Red Hat Security Advisory: pam security update

Carried by container images the latest versions of 115 of 17,781 indexed charts deploy, on 119 images.

Affected packageAffected versionsFixed inImages
pamdeb1.5.3-5ubuntu5, 1.5.3-5ubuntu5.1, 1.5.3-5ubuntu5.41.5.3-5ubuntu5.5105
pamrpm1.3.0-lp151.7.38, 1.5.1-12.el9, 1.5.1-14.el9, 1.5.1-15.el9+2 more0:1.5.1-22.el9_5, 0:1.5.1-23.el9_4, 1.7.0-2.114
OSV records
RHSA-2024:10232RHSA-2024:10244UBUNTU-CVE-2024-10963openSUSE-SU-2024:14563-1RLSA-2024:10244
Also known as
USN-7761-1

Charts affected

115 by stars
ChartLatestAffected imagesRadar Score
radar-push-endpointradar-baseVerified publisher0.6.81 of 2See more

radar-push-endpoint radar-base 0.6.8

1 of the 2 container images this version deploys carry CVE-2024-10963.

Container imageDigestPackageFixed in
radarbase/radar-push-endpoint:0.4.0e1758508e033
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5

Open the chart page →

3,018
s3-proxyradar-baseVerified publisher0.6.01 of 1See more

s3-proxy radar-base 0.6.0

1 of the 1 container images this version deploys carry CVE-2024-10963.

Container imageDigestPackageFixed in
andrewgaul/s3proxy:sha-85b0f987dc1d34174a5
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5

Open the chart page →

2,737
devtron-enterpriseromholdings48.0.04 of 28See more

devtron-enterprise romholdings 48.0.0

4 of the 28 container images this version deploys carry CVE-2024-10963.

Container imageDigestPackageFixed in
quay.io/devtron/casbin:172ef62b-9450794d-464-394225bf041aacadd
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
quay.io/devtron/chart-sync:94237c18-1021-3941960566529446a
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
quay.io/devtron/kubelink:94237c18-314-394179d25865295af
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5

Open the chart page →

68,240
devtron-operatorromholdings0.23.33 of 11See more

devtron-operator romholdings 0.23.3

3 of the 11 container images this version deploys carry CVE-2024-10963.

Container imageDigestPackageFixed in
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5

Open the chart page →

32,902
snipeitschmitzis6.1.01 of 2See more

snipeit schmitzis 6.1.0

1 of the 2 container images this version deploys carry CVE-2024-10963.

Container imageDigestPackageFixed in
snipe/snipe-it:v8.3.1141ebf2386fe
pam@1.5.3-5ubuntu5.4
1.5.3-5ubuntu5.5

Open the chart page →

6,094
mongosyncsinextraVerified publisher0.4.01 of 1See more

mongosync sinextra 0.4.0

1 of the 1 container images this version deploys carry CVE-2024-10963.

Container imageDigestPackageFixed in
ghcr.io/sergelogvinov/mongosync:1.15.0fa99ed475f03
pam@1.5.3-5ubuntu5.4
1.5.3-5ubuntu5.5

Open the chart page →

2,815
datadogspartan0.1.01 of 1See more

datadog spartan 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-10963.

Container imageDigestPackageFixed in
gcr.io/datadoghq/cluster-agent:7.61.06efe04ba4e06
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5

Open the chart page →

3,232
nethermindstakewise2.8.21 of 3See more

nethermind stakewise 2.8.2

1 of the 3 container images this version deploys carry CVE-2024-10963.

Container imageDigestPackageFixed in
nethermind/nethermind:1.31.893e57917371a
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5

Open the chart page →

2,031
teku-validatorstakewise4.3.21 of 2See more

teku-validator stakewise 4.3.2

1 of the 2 container images this version deploys carry CVE-2024-10963.

Container imageDigestPackageFixed in
consensys/teku:25.4.1bf6ecd2ea716
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5

Open the chart page →

3,153
group-challengesubshell-labVerified publisher2.1.01 of 2See more

group-challenge subshell-lab 2.1.0

1 of the 2 container images this version deploys carry CVE-2024-10963.

Container imageDigestPackageFixed in
darthsim/imgproxy:v3.29.17d12c7c8fc66
pam@1.5.3-5ubuntu5.4
1.5.3-5ubuntu5.5

Open the chart page →

2,540
substra-backendsubstraVerified publisher26.15.31 of 7See more

substra-backend substra 26.15.3

1 of the 7 container images this version deploys carry CVE-2024-10963.

Container imageDigestPackageFixed in
ghcr.io/substra/substra-backend:1.0.121967f54ec86
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5

Open the chart page →

4,731
stash-boxswuuper-githubVerified publisher0.1.11 of 2See more

stash-box swuuper-github 0.1.1

1 of the 2 container images this version deploys carry CVE-2024-10963.

Container imageDigestPackageFixed in
stashapp/stash-box:latesta534c8afdf39
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5

Open the chart page →

8,193
opencloudunxwaresVerified publisher0.2.31 of 13See more

opencloud unxwares 0.2.3

1 of the 13 container images this version deploys carry CVE-2024-10963.

Container imageDigestPackageFixed in
apache/tika:2.9.2.1-fullae0b86d3c4d0
pam@1.5.3-5ubuntu5
1.5.3-5ubuntu5.5

Open the chart page →

45,239
calibre-webvista0.1.31 of 1See more

calibre-web vista 0.1.3

1 of the 1 container images this version deploys carry CVE-2024-10963.

Container imageDigestPackageFixed in
linuxserver/calibre-web:0.6.24241009026e6f
pam@1.5.3-5ubuntu5.4
1.5.3-5ubuntu5.5

Open the chart page →

7,628
xlinexline0.0.11 of 1See more

xline xline 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-10963.

Container imageDigestPackageFixed in
ghcr.io/liangyuanpeng/xline:latest3d2eceb44a3b
pam@1.5.3-5ubuntu5
1.5.3-5ubuntu5.5

Open the chart page →

2,097

Container images carrying it

119 by charts deploying them

A fixed version is listed for 2 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
gchq/hdfs:3.3.35ec58edbb2db
pam@1.5.3-5ubuntu5
1.5.3-5ubuntu5.5
3
guacamole/guacamole:1.6.0f344085e618b
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
3
quay.io/devtron/casbin:172ef62b-9450794d-464-394225bf041aacadd
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
3
quay.io/devtron/chart-sync:94237c18-1021-3941960566529446a
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
3
quay.io/devtron/chart-sync:3b3d6d0e-836-39296721b5c9634d4
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
3
quay.io/devtron/devtron:9450794d-930-394159795f3f9f031
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
3
quay.io/devtron/hyperion:0874dcaf-280-3928701d5d8c4cecb
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
3
quay.io/devtron/kubelink:94237c18-314-394179d25865295af
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
3
quay.io/devtron/kubelink:09867a9c-564-39289ea6dd1e4ce71
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
3
apache/tika:2.9.2.1-fullae0b86d3c4d0
pam@1.5.3-5ubuntu5
1.5.3-5ubuntu5.5
2
grafana/alloy:v1.8.17790f6f7fbd8
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
2
library/rabbitmq:4.1.0-management935b3f84c1e4
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
2
opendatacube/ows:latest668cbb41473c
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
2
zabbix/zabbix-agent:ubuntu-6.4-latest349b924472a7
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
2
ghcr.io/bryopsida/k8s-dev-pod:main82d0b161161d
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
2
quay.io/argoproj/argocd:v2.14.115fc69e31c755
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
2
1dev/server:11.9.0cd5b12fe5471
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
adorsys/keycloak-config-cli:6.3.0-26.1.085be7a45a94c
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
adorsys/keycloak-config-cli:6.1.6-25.0.1eb49a2dcbbb8
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
andrewgaul/s3proxy:sha-85b0f987dc1d34174a5
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
apache/activemq-artemis:2.37.0bae523439ee3
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
apache/rocketmq:5.3.0434d8398f996
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
arunvelsriram/utils:latest655ad18fd8d6
pam@1.5.3-5ubuntu5.4
1.5.3-5ubuntu5.5
1
atlassian/jira-software:9.7.264a75aa4ec4e
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
castlemock/castlemock:latestb7f3f1527ba9
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
cfcontainerization/cf-operator:v2.3.0-0.g27a91cdf82fa261c18a8
pam@1.3.0-lp151.7.38
1.7.0-2.1
1
cfcontainerization/quarks-job:v0.0.0-0.g70ae34b58fb1c173a46
pam@1.3.0-lp151.7.38
1.7.0-2.1
1
cleveritcz/opencve:1.5.0c75c1636e0b7
pam@1.5.1-15.el9
0:1.5.1-22.el9_5
1
codetogether/codetogether:latest4348c8a38752
pam@1.5.1-19.el9
0:1.5.1-23.el9_4
1
consensys/teku:25.4.1bf6ecd2ea716
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
darthsim/imgproxy:v3.26476cb08c816a
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
darthsim/imgproxy:v3.29.17d12c7c8fc66
pam@1.5.3-5ubuntu5.4
1.5.3-5ubuntu5.5
1
datadog/agent:6aad9994de6a7
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
dgraph/dgraph:v24.1.4b57fa31f9b7f
pam@1.5.3-5ubuntu5.4
1.5.3-5ubuntu5.5
1
dzikoysk/reposilite:3.5.264128c2d7a6ba
pam@1.5.3-5ubuntu5.4
1.5.3-5ubuntu5.5
1
flanksource/batch-runner:v1.0.44689687a7cf95
pam@1.5.3-5ubuntu5.4
1.5.3-5ubuntu5.5
1
foundationdb/fdb-kubernetes-operator:v2.3.07d7b6985291e
pam@1.5.1-20.el9
0:1.5.1-22.el9_5
1
gchq/accumulo:2.0.1c460bb587d6d
pam@1.5.3-5ubuntu5
1.5.3-5ubuntu5.5
1
gradiant/open5gs-dbctl:0.10.3332031245fce
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
grafana/agent:v0.44.23364714a2f64
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
grafana/alloy:v1.5.101a63f4e032c
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
grafana/alloy:v1.4.306bdcbb51fc2
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
grafana/promtail:3.5.165bfae480b57
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
iomesh/node-disk-manager:1.8.0-2292ad270082e
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
iomesh/node-disk-operator:1.8.0-1de4aa40684ad
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
istio/install-cni:1.23.6ab34c4740f44
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
istio/pilot:1.23.69c3d6a218181
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
istio/ztunnel:1.25.005f3972d80a9
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
kafkace/kafka:v3.7.1-63ba8d27adc206bf5a4
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1
knspar/phronetis:0.1.4609499d2dc91a
pam@1.5.3-5ubuntu5.1
1.5.3-5ubuntu5.5
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.