StackRadar

CVE-2024-24788

Unscored

Advisory

Published 7 May 2024In the index since 5 Sept 2026
Severity
Unscored
worst across findings
CVSS
base score, highest
EPSS
0.010
61st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
121
of 17,781 indexed, latest versions
Container images
111
deployed by those charts
Fix available
1 of 1
affected package

Malformed DNS message can cause infinite loop in net

Carried by container images the latest versions of 121 of 17,781 indexed charts deploy, on 111 images.

Affected packageAffected versionsFixed inImages
stdlibgolanggo1.22.0, go1.22.1, go1.22.2, go1.22.2-devel-cf1.22.3111
OSV records
GO-2024-2824
Also known as
BIT-golang-2024-24788

Charts affected

121 by stars
ChartLatestAffected imagesRadar Score
cloudflare-tunnelportefaix-hub0.4.01 of 1See more

cloudflare-tunnel portefaix-hub 0.4.0

1 of the 1 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
cloudflare/cloudflared:2024.8.314d9c6b01b29
stdlib@go1.22.2-devel-cf
1.22.3

Open the chart page →

1,306
game-serverpvillaverdeVerified publisher1.0.51 of 1See more

game-server pvillaverde 1.0.5

1 of the 1 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
ghcr.io/itzg/minecraft-server:latestc1a267d9ed6d
stdlib@go1.22.2
1.22.3

Open the chart page →

4,253
rancher-metricspy-kube-downscalerVerified publisher0.0.81 of 4See more

rancher-metrics py-kube-downscaler 0.0.8

1 of the 4 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
ghcr.io/eumel8/rancher-servicemonitor:0.2.1f34428cac187
stdlib@go1.22.1
1.22.3

Open the chart page →

638
regoregoOfficialVerified publisher0.1.31 of 1See more

rego rego 0.1.3

1 of the 1 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
drorivry4/rego:lateste035d49b15ca
stdlib@go1.22.0
1.22.3

Open the chart page →

2,919
ntfyrm3lVerified publisher0.1.11 of 1See more

ntfy rm3l 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
binwiederhier/ntfy:v2.11.04a7d0f0adc6d
stdlib@go1.22.2
1.22.3

Open the chart page →

1,276
olivetinrm3lVerified publisher0.2.01 of 1See more

olivetin rm3l 0.2.0

1 of the 1 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
ghcr.io/olivetin/olivetin:2025.2.19a89958921526
stdlib@go1.22.0
1.22.3

Open the chart page →

1,370
krr-enforcerrobusta0.3.51 of 2See more

krr-enforcer robusta 0.3.5

1 of the 2 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
alpine/k8s:1.30.0bd01dae02676
stdlib@go1.22.1
1.22.3

Open the chart page →

4,038
recipyartomik-helm-chartsVerified publisher0.0.21 of 2See more

recipya rtomik-helm-charts 0.0.2

1 of the 2 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
reaper99/recipya:v1.2.27f7ec3aeb88c
stdlib@go1.22.0
1.22.3

Open the chart page →

2,066
sagawisesagawiseVerified publisher0.1.01 of 3See more

sagawise sagawise 0.1.0

1 of the 3 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
venturenox/sagawise:latestc11d32f18718
stdlib@go1.22.2
1.22.3

Open the chart page →

4,178
sample-applicationsample-application1.0.61 of 1See more

sample-application sample-application 1.0.6

1 of the 1 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
ghcr.io/patricklaabs/sample-application:0.0.1f0935fa2eee3
stdlib@go1.22.0
1.22.3

Open the chart page →

532
photonschichtelVerified publisher0.2.01 of 1See more

photon schichtel 0.2.0

1 of the 1 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
rtuszik/photon-docker:2.4.021549c60f9e6
stdlib@go1.22.2
1.22.3

Open the chart page →

2,816
mimirskyloud-helm-chartsVerified publisher5.5.11 of 5See more

mimir skyloud-helm-charts 5.5.1

1 of the 5 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
grafana/rollout-operator:v0.14.03409edfb45c7
stdlib@go1.22.1
1.22.3

Open the chart page →

10,651
redis-high-availabilitysomeblackmagic1.3.101 of 3See more

redis-high-availability someblackmagic 1.3.10

1 of the 3 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
haproxytech/haproxy-alpine:2.9.57f3dc8c7e031
stdlib@go1.22.0
1.22.3

Open the chart page →

3,148
ocean-vpaspot1.0.71 of 4See more

ocean-vpa spot 1.0.7

1 of the 4 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/kube-webhook-certgen:v1.4.136d05b4077fb
stdlib@go1.22.2
1.22.3

Open the chart page →

1,195
stakefishstakefish0.1.03 of 8See more

stakefish stakefish 0.1.0

3 of the 8 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
quay.io/prometheus-operator/prometheus-config-reloader:v0.73.2706cde441321
stdlib@go1.22.2
1.22.3
quay.io/prometheus/node-exporter:v1.8.08a57af80a4c7
stdlib@go1.22.2
1.22.3
quay.io/prometheus/pushgateway:v1.8.0c159e946abf4
stdlib@go1.22.1
1.22.3

Open the chart page →

20,223
orchestratorsubstraVerified publisher8.8.01 of 3See more

orchestrator substra 8.8.0

1 of the 3 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
ghcr.io/substra/orchestrator-server:1.0.0647e45284a80
stdlib@go1.22.1
1.22.3

Open the chart page →

2,991
ingress-nginx-external-lbsuminhong1.0.01 of 2See more

ingress-nginx-external-lb suminhong 1.0.0

1 of the 2 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
registry.k8s.io/ingress-nginx/controller:v1.10.042b3f0e5d084
stdlib@go1.22.0
1.22.3

Open the chart page →

2,094
ping-exporterth-chartsVerified publisher0.1.11 of 1See more

ping-exporter th-charts 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
czerwonk/ping_exporter:v1.1.394f51e1ef1e2
stdlib@go1.22.1
1.22.3

Open the chart page →

1,236
wallarm-oobwallarmVerified publisher0.23.01 of 3See more

wallarm-oob wallarm 0.23.0

1 of the 3 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
wallarm/ebpf-agent:0.11.0-rc0c8920e60c726
stdlib@go1.22.1
1.22.3

Open the chart page →

2,824
myweatherhelmwebapp11.3.501 of 8See more

myweatherhelm webapp1 1.3.50

1 of the 8 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
library/rabbitmq:3-managemente582c0bc7766
stdlib@go1.22.2
1.22.3

Open the chart page →

9,130
myweatherhelm-schedulingwebapp11.3.921 of 9See more

myweatherhelm-scheduling webapp1 1.3.92

1 of the 9 container images this version deploys carry CVE-2024-24788.

Container imageDigestPackageFixed in
library/rabbitmq:3-managemente582c0bc7766
stdlib@go1.22.2
1.22.3

Open the chart page →

9,130

Container images carrying it

111 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
library/rabbitmq:4.3.4-managementeb5295d08332
stdlib@go1.22.2
1.22.3
1
library/traefik:v2.11.00a5157f742d2
stdlib@go1.22.0
1.22.3
1
lightstep/microsatellite:2024-01-22_17-52-59Zc800e05e1eff
stdlib@go1.22.1
1.22.3
1
natsio/nats-box:0.14.31cc420186664
stdlib@go1.22.1
1.22.3
1
opendatacube/explorer:latest120457ffcd69
stdlib@go1.22.2
1.22.3
1
openmined/syft-seaweedfs:0.9.53a4144c0bb82
stdlib@go1.22.1
1.22.3
1
opennms/sentinel:36.0.288869082a14f
stdlib@go1.22.2
1.22.3
1
otel/opentelemetry-collector:0.100.09e36620d6c2c
stdlib@go1.22.2
1.22.3
1
prom/blackbox-exporter:v0.25.0b04a9fef4fa0
stdlib@go1.22.2
1.22.3
1
prom/prometheus:v2.51.24f6c47e39a90
stdlib@go1.22.2
1.22.3
1
reaper99/recipya:v1.2.27f7ec3aeb88c
stdlib@go1.22.0
1.22.3
1
rtuszik/photon-docker:2.4.021549c60f9e6
stdlib@go1.22.2
1.22.3
1
tailwarden/komiser:3.1.103f68c8ae7993
stdlib@go1.22.0
1.22.3
1
temporalio/ui:2.30.25c2a3645d09c
stdlib@go1.22.1
1.22.3
1
temporalio/ui:2.33.05c586a3c8ec5
stdlib@go1.22.1
1.22.3
1
tiredofit/freescout:php8.2-1.17.725b7cc0658f07
stdlib@go1.22.2
1.22.3
1
traefik/whoami:v1.10.21474027c3166
stdlib@go1.22.2
1.22.3
1
venturenox/sagawise:latestc11d32f18718
stdlib@go1.22.2
1.22.3
1
wallarm/ebpf-agent:0.11.0-rc0c8920e60c726
stdlib@go1.22.1
1.22.3
1
ghcr.io/aetrius/msockperf-client/msockperf-client:main820af919c5e2
stdlib@go1.22.1
1.22.3
1
ghcr.io/appscode/license-proxyserver:v0.0.8d6c2532ea386
stdlib@go1.22.1
1.22.3
1
ghcr.io/automata-network/multi-prover-avs/operator:v0.6.0752f1aa02438
stdlib@go1.22.1
1.22.3
1
ghcr.io/ckotzbauer/access-managerdd584fcda0ff
stdlib@go1.22.1
1.22.3
1
ghcr.io/clastix/kamaji-console:v0.2.129ecf8d4fa65
stdlib@go1.22.2
1.22.3
1
ghcr.io/cleanuparr/cleanuparr:2.10.5c7cd53ad559a
stdlib@go1.22.2
1.22.3
1
ghcr.io/dysnix/docker-bitcoind:0.29.0490ca8e3dd21
stdlib@go1.22.2
1.22.3
1
ghcr.io/eugenmayer/whatsmyip:0.0.14b6700cc0e2d
stdlib@go1.22.1
1.22.3
1
ghcr.io/eumel8/rancher-servicemonitor:0.2.1f34428cac187
stdlib@go1.22.1
1.22.3
1
ghcr.io/fpetr/readium-lcp-server-docker-helm/lcpserver:1.9.0324f9b7b689c
stdlib@go1.22.0
1.22.3
1
ghcr.io/fpetr/readium-lcp-server-docker-helm/lsdserver:1.9.0cdba39e3f3d0
stdlib@go1.22.0
1.22.3
1
ghcr.io/gabe565/matrimony:latestd39a9d7c3e1b
stdlib@go1.22.0
1.22.3
1
ghcr.io/itzg/minecraft-server:latestc1a267d9ed6d
stdlib@go1.22.2
1.22.3
1
ghcr.io/jodevsa/wireguard-operator/manager:v2.0.2839412bdd403b
stdlib@go1.22.2
1.22.3
1
ghcr.io/kluster-manager/managed-serviceaccount:latest365183f83ac9
stdlib@go1.22.0
1.22.3
1
ghcr.io/kubelauncher/rabbitmqff5a36a457f1
stdlib@go1.22.2
1.22.3
1
ghcr.io/loft-sh/devpod-pro:0.0.0-ci.4-do-not-use5dfa86b6451f
stdlib@go1.22.0
1.22.3
1
ghcr.io/loft-sh/vcluster-control-plane:0.0.0-ci.4-do-not-use45e744fc623f
stdlib@go1.22.0
1.22.3
1
ghcr.io/olivetin/olivetin:2025.2.19a89958921526
stdlib@go1.22.0
1.22.3
1
ghcr.io/openfaasltd/jetstream-queue-worker:0.3.37d96366e208b1
stdlib@go1.22.1
1.22.3
1
ghcr.io/patricklaabs/sample-application:0.0.1f0935fa2eee3
stdlib@go1.22.0
1.22.3
1
ghcr.io/punchplatform/operator:8.1-dev2a9536c8cee2
stdlib@go1.22.0
1.22.3
1
ghcr.io/runatlantis/atlantis:v0.47.1511231955463
stdlib@go1.22.1
1.22.3
1
ghcr.io/sintef/cert-manager-webhook-gandi:0.6.06819b34ccac8
stdlib@go1.22.0
1.22.3
1
ghcr.io/slskd/slskd:0.25.1ab9ed50e028b
stdlib@go1.22.2
1.22.3
1
ghcr.io/streamingfast/blockmeta-service:2f971e04f0a86e490b6
stdlib@go1.22.1
1.22.3
1
ghcr.io/substra/orchestrator-server:1.0.0647e45284a80
stdlib@go1.22.1
1.22.3
1
ghcr.io/vshn/stardog-userrole-operator:v0.3.04774237c9e86
stdlib@go1.22.2
1.22.3
1
quay.io/aerokube/boot:1.0.13c269612053f
stdlib@go1.22.2
1.22.3
1
quay.io/aerokube/browser-ops:2.6.7807c1bb67086
stdlib@go1.22.2
1.22.3
1
quay.io/aerokube/reloader:1.0.1e4a3661416a5
stdlib@go1.22.2
1.22.3
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.