StackRadar

CVE-2024-23342

High

Advisory

Published 22 Jan 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.4
base score, highest
EPSS
0.010
60th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
57
of 17,781 indexed, latest versions
Container images
62
deployed by those charts
Fix available
None
affected packages

Minerva timing attack on P-256 in python-ecdsa

Carried by container images the latest versions of 57 of 17,781 indexed charts deploy, on 62 images.

Affected packageAffected versionsFixed inImages
ecdsapypi0.13, 0.13.2, 0.13.3, 0.14.1+7 moreno fix listed62
python-ecdsadeb0.18.0-3no fix listed1
OSV records
DEBIAN-CVE-2024-23342GHSA-wj6h-64fc-37mp
Also known as
PYSEC-2026-1325

Charts affected

57 by stars
ChartLatestAffected imagesRadar Score
home-assistantpascaliskeVerified publisher0.1.11 of 1See more

home-assistant pascaliske 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-23342.

Container imageDigestPackageFixed in
ghcr.io/home-assistant/home-assistant:2025.12.59a5a3eb4a213
ecdsa@0.19.1
no fix listed

Open the chart page →

4,749
prompt-dbprompt-dbVerified publisher1.0.71 of 3See more

prompt-db prompt-db 1.0.7

1 of the 3 container images this version deploys carry CVE-2024-23342.

Container imageDigestPackageFixed in
ghcr.io/erlkoenig91/prompt-db-backend:1.0.7ab120359810d
ecdsa@0.19.2
no fix listed

Open the chart page →

3,332
esphomeretsamedocVerified publisher2026.2.51 of 1See more

esphome retsamedoc 2026.2.5

1 of the 1 container images this version deploys carry CVE-2024-23342.

Container imageDigestPackageFixed in
esphome/esphome:2024.3.09ab8cc88b28c
ecdsa@0.18.0
no fix listed

Open the chart page →

7,431
kresusrm3lVerified publisher0.2.11 of 3See more

kresus rm3l 0.2.1

1 of the 3 container images this version deploys carry CVE-2024-23342.

Container imageDigestPackageFixed in
bnjbvr/kresus:0.22.137e216b182c8
ecdsa@0.18.0
python-ecdsa@0.18.0-3
no fix listed
no fix listed

Open the chart page →

15,591
weblateslamdev0.0.111 of 2See more

weblate slamdev 0.0.11

1 of the 2 container images this version deploys carry CVE-2024-23342.

Container imageDigestPackageFixed in
weblate/weblate:3.11.3-182848df56ecd
ecdsa@0.15
no fix listed

Open the chart page →

8,694
mealiesmarthallVerified publisher0.0.101 of 1See more

mealie smarthall 0.0.10

1 of the 1 container images this version deploys carry CVE-2024-23342.

Container imageDigestPackageFixed in
ghcr.io/mealie-recipes/mealie:v1.4.0b56da41cf178
ecdsa@0.18.0
no fix listed

Open the chart page →

5,565
wazuh-manager-filebeatwazuh-manager-filebeat0.1.0-gamma1 of 1See more

wazuh-manager-filebeat wazuh-manager-filebeat 0.1.0-gamma

1 of the 1 container images this version deploys carry CVE-2024-23342.

Container imageDigestPackageFixed in
iosifache/wazuh-manager-filebeat:latest85df3f04b5da
ecdsa@0.16.1
no fix listed

Open the chart page →

11,119

Container images carrying it

62 by charts deploying them

A fixed version is listed for 0 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
lncm/specter-desktop:v1.10.536eaa06f99f4
ecdsa@0.17.0
no fix listed
2
ghcr.io/home-assistant/home-assistant:2026.9.1:latest612d76760b54
ecdsa@0.19.2
no fix listed
2
ghcr.io/home-assistant/home-assistant:2026.9.2a1bc133af84e
ecdsa@0.19.2
no fix listed
2
assistiot/cybersecurity-monitoring_id-wzh:latest0aacefac9677
ecdsa@0.16.1
no fix listed
1
assistiot/open_api_backend:1.1.230812ba93555
ecdsa@0.18.0
no fix listed
1
bnjbvr/kresus:0.22.137e216b182c8
ecdsa@0.18.0
python-ecdsa@0.18.0-3
no fix listed
no fix listed
1
camptocamp/ekorre:0.1.035c91d5fda04
ecdsa@0.15
no fix listed
1
clowder/clowder2-backend:2.0.0-beta.411f3d844e4c0
ecdsa@0.19.0
no fix listed
1
clowder/clowder2-heartbeat:2.0.0-beta.414155326c7b9
ecdsa@0.19.0
no fix listed
1
clowder/clowder2-messages:2.0.0-beta.4bf146f1ca24f
ecdsa@0.19.0
no fix listed
1
codecov/self-hosted-api:24.4.10475cb1c3136
ecdsa@0.18.0
no fix listed
1
codecov/self-hosted-worker:24.4.1837f546b479b
ecdsa@0.19.0
no fix listed
1
dserio83/velero-api:0.3.16b3d9115fee2
ecdsa@0.19.0
no fix listed
1
esphome/esphome:1.18.03f51ec10e823
ecdsa@0.16.1
no fix listed
1
esphome/esphome:2024.3.09ab8cc88b28c
ecdsa@0.18.0
no fix listed
1
esphome/esphome:2024.12.2b2c6322700ac
ecdsa@0.19.0
no fix listed
1
esphome/esphome:2025.3.0def8b6e4f517
ecdsa@0.19.1
no fix listed
1
galaxy/galaxy-init:v18.010267bad550e6
ecdsa@0.13
no fix listed
1
guillh/web3-prometheus-exporter:0.3.04fb99dbc32b2
ecdsa@0.19.0
no fix listed
1
hkotel/mealie:api-v1.0.0beta-2a7e6b6abe087
ecdsa@0.17.0
no fix listed
1
homeassistant/home-assistant:2023.10.3021e2afc6e57
ecdsa@0.18.0
no fix listed
1
homeassistant/home-assistant:2026.75a531753cea9
ecdsa@0.19.2
no fix listed
1
homeassistant/home-assistant:2023.12.48d000332b09b
ecdsa@0.18.0
no fix listed
1
iosifache/wazuh-manager-filebeat:latest85df3f04b5da
ecdsa@0.16.1
no fix listed
1
kobotoolbox/kobocat:2.022.24ab15679454415
ecdsa@0.17.0
no fix listed
1
kyovint/kyoimgtransactions:1.0.048c19e3ae9a3
ecdsa@0.19.1
no fix listed
1
kyovint/kyoimgusers:1.0.080084149156e
ecdsa@0.19.1
no fix listed
1
labs64/traefik-authproxy:0.0.3dfc6086dfbce
ecdsa@0.19.2
no fix listed
1
lnbitsdocker/lnbits-legend:latest26fae6327477
ecdsa@0.18.0
no fix listed
1
lnbitsdocker/lnbits-legend:0.10.6a11aaa6d2b21
ecdsa@0.18.0
no fix listed
1
lncm/specter-desktop:v0.10.4bca14d04397d
ecdsa@0.13.3
no fix listed
1
localstack/localstack:3.19d278167f2b7
ecdsa@0.18.0
no fix listed
1
lsstsqre/prepuller:latest19c2dfc4e4ff
ecdsa@0.14.1
no fix listed
1
lsstsqre/sciplat-hub:latest5e0ade6bed1c
ecdsa@0.14.1
no fix listed
1
lsstsqre/wfdispatcher:lateste9feb99f524d
ecdsa@0.14.1
no fix listed
1
marcoimme/oidcmock:latestb6035c0721a8
ecdsa@0.19.1
no fix listed
1
netboxcommunity/netbox:v3.2.83d652dca5351
ecdsa@0.18.0
no fix listed
1
opencsghq/agenticflow:ee-v0.6-52f03fead54db
ecdsa@0.19.1
no fix listed
1
opendatacube/restcube:latest91870111837c
ecdsa@0.13.2
no fix listed
1
opendatacube/wms:latest1b90cdf68831
ecdsa@0.13.2
no fix listed
1
salehmir/jesse:1.10.101afa95f979e9
ecdsa@0.19.1
no fix listed
1
wazuh/wazuh-manager:4.4.121994f40e0da
ecdsa@0.16.1
no fix listed
1
weblate/weblate:3.11.3-182848df56ecd
ecdsa@0.15
no fix listed
1
zurdi15/romm:2.3.12db88fe44c89
ecdsa@0.18.0
no fix listed
1
ghcr.io/afairgiant/medikeep:v0.69.0766699daa9ac
ecdsa@0.19.2
no fix listed
1
ghcr.io/erlkoenig91/prompt-db-backend:1.0.7ab120359810d
ecdsa@0.19.2
no fix listed
1
ghcr.io/home-assistant/home-assistant:2025.3.026c51e44d932
ecdsa@0.19.0
no fix listed
1
ghcr.io/home-assistant/home-assistant:2026.9.0372d991e5888
ecdsa@0.19.2
no fix listed
1
ghcr.io/home-assistant/home-assistant:2026.8.256690a89c79a
ecdsa@0.19.2
no fix listed
1
ghcr.io/home-assistant/home-assistant:2025.12.59a5a3eb4a213
ecdsa@0.19.1
no fix listed
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.