StackRadar

CVE-2024-23342

High

Advisory

Published 22 Jan 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.4
base score, highest
EPSS
0.010
60th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
57
of 17,781 indexed, latest versions
Container images
62
deployed by those charts
Fix available
None
affected packages

Minerva timing attack on P-256 in python-ecdsa

Carried by container images the latest versions of 57 of 17,781 indexed charts deploy, on 62 images.

Affected packageAffected versionsFixed inImages
ecdsapypi0.13, 0.13.2, 0.13.3, 0.14.1+7 moreno fix listed62
python-ecdsadeb0.18.0-3no fix listed1
OSV records
DEBIAN-CVE-2024-23342GHSA-wj6h-64fc-37mp
Also known as
PYSEC-2026-1325

Charts affected

57 by stars
ChartLatestAffected imagesRadar Score
home-assistantpascaliskeVerified publisher0.1.11 of 1See more

home-assistant pascaliske 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-23342.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2025.12.59a5a3eb4a213
ecdsa@0.19.1
no fix listed

Open the chart page →

4,749
prompt-dbprompt-dbVerified publisher1.0.71 of 3See more

prompt-db prompt-db 1.0.7

1 of the 3 container images this version deploys carry CVE-2024-23342.

Container imageDigestPackageFixed in
ghcr.io/erlkoenig91/prompt-db-backend:1.0.7ab120359810d
ecdsa@0.19.2
no fix listed

Open the chart page →

3,332
esphomeretsamedocVerified publisher2026.2.51 of 1See more

esphome retsamedoc 2026.2.5

1 of the 1 container images this version deploys carry CVE-2024-23342.

Container imageDigestPackageFixed in
esphome/esphome:2024.3.09ab8cc88b28c
ecdsa@0.18.0
no fix listed

Open the chart page →

7,431
kresusrm3lVerified publisher0.2.11 of 3See more

kresus rm3l 0.2.1

1 of the 3 container images this version deploys carry CVE-2024-23342.

Container imageDigestPackageFixed in
bnjbvr/kresus:0.22.137e216b182c8
ecdsa@0.18.0
python-ecdsa@0.18.0-3
no fix listed
no fix listed

Open the chart page →

15,591
weblateslamdev0.0.111 of 2See more

weblate slamdev 0.0.11

1 of the 2 container images this version deploys carry CVE-2024-23342.

Container imageDigestPackageFixed in
weblate/weblate:3.11.3-182848df56ecd
ecdsa@0.15
no fix listed

Open the chart page →

8,694
mealiesmarthallVerified publisher0.0.101 of 1See more

mealie smarthall 0.0.10

1 of the 1 container images this version deploys carry CVE-2024-23342.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
ecdsa@0.18.0
no fix listed

Open the chart page →

5,565
wazuh-manager-filebeatwazuh-manager-filebeat0.1.0-gamma1 of 1See more

wazuh-manager-filebeat wazuh-manager-filebeat 0.1.0-gamma

1 of the 1 container images this version deploys carry CVE-2024-23342.

Container imageDigestPackageFixed in
iosifache/wazuh-manager-filebeat:latest85df3f04b5da
ecdsa@0.16.1
no fix listed

Open the chart page →

11,119

Container images carrying it

62 by charts deploying them

A fixed version is listed for 0 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/home-assistant/home-assistant:2022.5.4ec6d67fbedfa
ecdsa@0.17.0
no fix listed
1
ghcr.io/home-assistant/home-assistant:2023.11.3feffc0b8227d
ecdsa@0.18.0
no fix listed
1
ghcr.io/home-operations/home-assistant:2026.3.1067e54e2e107
ecdsa@0.19.1
no fix listed
1
ghcr.io/htunn/ansible-inspec:0.2.12cd25a5cc3f1b
ecdsa@0.19.1
no fix listed
1
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
ecdsa@0.18.0
no fix listed
1
ghcr.io/openrelik/openrelik-mediator:latest42efc445b19e
ecdsa@0.19.2
no fix listed
1
ghcr.io/openrelik/openrelik-metrics:latest3d0f1ddeebf5
ecdsa@0.19.1
no fix listed
1
ghcr.io/openrelik/openrelik-server:latestce1132261523
ecdsa@0.19.2
no fix listed
1
ghcr.io/securo-finance/securo-backend:0.15.162e030110745
ecdsa@0.19.2
no fix listed
1
quay.io/hewlettpackardenterprise/squest:2.8.465694109877e
ecdsa@0.19.1
no fix listed
1
registry.gitlab.com/dyff/dyff-api:0.57.4911acf4052e5
ecdsa@0.19.2
no fix listed
1
registry.gitlab.com/dyff/dyff-orchestrator:0.22.199bd5d93aaff7
ecdsa@0.19.2
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.