StackRadar

CVE-2024-29018

High

Advisory

Published 20 Mar 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.007
53rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
290
of 17,781 indexed, latest versions
Container images
262
deployed by those charts
Fix available
1 of 2
affected packages

Moby's external DNS requests from 'internal' networks could lead to data exfiltration

Carried by container images the latest versions of 290 of 17,781 indexed charts deploy, on 262 images.

Affected packageAffected versionsFixed inImages
docker.iodeb20.10.24+dfsg1-1+deb12u1+b6no fix listed1
github.com/docker/dockergolangv0.0.0-20180620051407-e2593239d949, v0.7.3-0.20190327010347-be7ac8be2ae0, v1.4.2-0.20190924003213-a8608b5b67c7, v1.4.2-0.20191121165722-d1d5f6476656+41 more23.0.11, 25.0.5261
OSV records
DEBIAN-CVE-2024-29018GHSA-mq39-4gv4-mvpx
Also known as
GO-2024-2659

Charts affected

290 by stars
ChartLatestAffected imagesRadar Score
argocd-operatorredhat-cop1.2.21 of 1See more

argocd-operator redhat-cop 1.2.2

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.7464a3af4dfe0
github.com/docker/docker@v1.4.2-0.20191121165722-d1d5f6476656
23.0.11

Open the chart page →

15,291
ploigosredhat-cop0.0.91 of 2See more

ploigos redhat-cop 0.0.9

1 of the 2 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.66722d5041b47
github.com/docker/docker@v1.4.2-0.20191121165722-d1d5f6476656
23.0.11

Open the chart page →

11,437
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
github.com/docker/docker@v20.10.3+incompatible
23.0.11

Open the chart page →

29,227
review-componentreview-component1.0.01 of 3See more

review-component review-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/review-component-php:latestafe623824b82
github.com/docker/docker@v1.4.2-0.20200203170920-46ec8731fbce
23.0.11

Open the chart page →

7,491
krr-enforcerrobusta0.3.51 of 2See more

krr-enforcer robusta 0.3.5

1 of the 2 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
alpine/k8s:1.30.0bd01dae02676
github.com/docker/docker@v20.10.24+incompatible
23.0.11

Open the chart page →

4,038
gitlab-operatorrock8sVerified publisher0.7.01 of 2See more

gitlab-operator rock8s 0.7.0

1 of the 2 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
registry.gitlab.com/gitlab-org/cloud-native/gitlab-operator:0.5.136b19b72120e
github.com/docker/docker@v17.12.1-ce+incompatible
23.0.11

Open the chart page →

5,422
argocdromholdings1.8.11 of 3See more

argocd romholdings 1.8.1

1 of the 3 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
github.com/docker/docker@v0.7.3-0.20190327010347-be7ac8be2ae0
23.0.11

Open the chart page →

10,466
argocd-certificate-refreshromholdings0.10.81 of 1See more

argocd-certificate-refresh romholdings 0.10.8

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
github.com/docker/docker@v20.10.17+incompatible
23.0.11

Open the chart page →

12,949
argo-workflowromholdings0.1.61 of 1See more

argo-workflow romholdings 0.1.6

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/argoproj/workflow-controller:v3.4.7f0c6fba81a24
github.com/docker/docker@v20.10.24+incompatible
23.0.11

Open the chart page →

1,580
clairromholdings0.1.141 of 2See more

clair romholdings 0.1.14

1 of the 2 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
github.com/docker/docker@v20.10.7+incompatible
23.0.11

Open the chart page →

6,237
devtron-enterpriseromholdings48.0.01 of 28See more

devtron-enterprise romholdings 48.0.0

1 of the 28 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/devtron/kubectl:latest2ad610626658
github.com/docker/docker@v20.10.17+incompatible
23.0.11

Open the chart page →

68,240
devtron-operatorromholdings0.23.31 of 11See more

devtron-operator romholdings 0.23.3

1 of the 11 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/devtron/kubectl:latest2ad610626658
github.com/docker/docker@v20.10.17+incompatible
23.0.11

Open the chart page →

32,902
securityromholdings0.2.21 of 1See more

security romholdings 0.2.2

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/devtron/image-scanner:b278f42b-334-1111988c64b1b6ec8
github.com/docker/docker@v20.10.7+incompatible
23.0.11

Open the chart page →

2,435
ed-traefik2scaleway-charts0.2.01 of 1See more

ed-traefik2 scaleway-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
library/traefik:2.5.62f603f8d3abe
github.com/docker/docker@v20.10.7+incompatible
23.0.11

Open the chart page →

3,160
centralbrainsciencemeshVerified publisher0.0.31 of 5See more

centralbrain sciencemesh 0.0.3

1 of the 5 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/prometheus/prometheus:v2.22.1b899dbd1b901
github.com/docker/docker@v17.12.0-ce-rc1.0.20200706150819-a40b877fbb9e+incompatible
23.0.11

Open the chart page →

9,754
gitlab-runnerslamdev0.0.11 of 1See more

gitlab-runner slamdev 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
gitlab/gitlab-runner:v15.3.0860d4a3fec7a
github.com/docker/docker@v20.10.12+incompatible
23.0.11

Open the chart page →

9,196
smarter-k3s-edgesmarterVerified publisher0.0.121 of 2See more

smarter-k3s-edge smarter 0.0.12

1 of the 2 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
rancher/k3s:v1.25.3-k3s1eaa270df79cc
github.com/docker/docker@v20.10.7+incompatible
23.0.11

Open the chart page →

3,462
harborsoftonic1.13.01 of 8See more

harbor softonic 1.13.0

1 of the 8 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
goharbor/trivy-adapter-photon:v2.9.0dc5b882a7db4
github.com/docker/docker@v23.0.7-0.20230714215826-f00e7af96042+incompatible
23.0.11

Open the chart page →

7,672
testing-multitoolsomeblackmagic0.1.21 of 1See more

testing-multitool someblackmagic 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
github.com/docker/docker@v20.10.12+incompatible
23.0.11

Open the chart page →

30,687
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
github.com/docker/docker@v17.12.0-ce-rc1.0.20200618181300-9dc6525e6118+incompatible
23.0.11

Open the chart page →

28,165
vaultstakaterVerified publisher0.8.41 of 2See more

vault stakater 0.8.4

1 of the 2 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
hashicorp/vault:1.8.4dfc3500beb0e
github.com/docker/docker@v17.12.0-ce-rc1.0.20200309214505-aa6a9891b09c+incompatible
23.0.11

Open the chart page →

5,864
cost-analyzerstatcan1.82.21 of 9See more

cost-analyzer statcan 1.82.2

1 of the 9 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
prom/prometheus:v2.22.2f7ffebdd428b
github.com/docker/docker@v17.12.0-ce-rc1.0.20200706150819-a40b877fbb9e+incompatible
23.0.11

Open the chart page →

16,506
minio-operatorstatcan4.1.01 of 2See more

minio-operator statcan 4.1.0

1 of the 2 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
minio/operator:v4.1.02adc5be088f5
github.com/docker/docker@v1.4.2-0.20190924003213-a8608b5b67c7
23.0.11

Open the chart page →

6,596
sn-platform-slimstreamnative1.11.441 of 6See more

sn-platform-slim streamnative 1.11.44

1 of the 6 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/prometheus/prometheus:v2.43.0f5c29683a301
github.com/docker/docker@v23.0.1+incompatible
23.0.11

Open the chart page →

10,134
taalhuizen-servicetaalhuizen-service1.0.01 of 3See more

taalhuizen-service taalhuizen-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/taalhuizen-service-php:latest04f1b7f0d573
github.com/docker/docker@v1.4.2-0.20200203170920-46ec8731fbce
23.0.11

Open the chart page →

7,480
telegraf-ds-k3stelegraf-ds-k3s1.0.01 of 1See more

telegraf-ds-k3s telegraf-ds-k3s 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
library/telegraf:1.19.0-alpine794079a7f241
github.com/docker/docker@v20.10.6+incompatible
23.0.11

Open the chart page →

3,764
temporaltemporal0.28.91 of 13See more

temporal temporal 0.28.9

1 of the 13 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/prometheus/prometheus:v2.31.1a8779cfe553e
github.com/docker/docker@v20.10.9+incompatible
23.0.11

Open the chart page →

21,005
mc-routerthl-chartsVerified publisher0.1.01 of 1See more

mc-router thl-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
itzg/mc-router:1.16.1bb552b59fb53
github.com/docker/docker@v20.10.17+incompatible
23.0.11

Open the chart page →

1,855
monitoringthl-chartsVerified publisher0.1.12 of 10See more

monitoring thl-charts 0.1.1

2 of the 10 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
grafana/promtail:2.4.2626900031c4e
github.com/docker/docker@v20.10.8+incompatible
23.0.11
quay.io/prometheus/prometheus:v2.34.0b37103e03399
github.com/docker/docker@v20.10.12+incompatible
23.0.11

Open the chart page →

18,908
posteetrivy-operator2.14.02 of 3See more

postee trivy-operator 2.14.0

2 of the 3 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
aquasec/postee:2.12.0-amd640795cba777e7
github.com/docker/docker@v20.10.24+incompatible
23.0.11
aquasec/postee-ui:2.12.0-amd64c0467c3941dc
github.com/docker/docker@v20.10.24+incompatible
23.0.11

Open the chart page →

4,815
trouw-servicetrouw-service1.0.01 of 3See more

trouw-service trouw-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/trouw-service-php:latestf745e2870692
github.com/docker/docker@v1.4.2-0.20200203170920-46ec8731fbce
23.0.11

Open the chart page →

7,510
tfy-lokitruefoundryVerified publisher0.1.61 of 2See more

tfy-loki truefoundry 0.1.6

1 of the 2 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
grafana/promtail:2.9.1063a2e57a5b14
github.com/docker/docker@v23.0.8+incompatible
23.0.11

Open the chart page →

2,813
verhuis-serviceverhuis-service1.0.01 of 3See more

verhuis-service verhuis-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verhuis-service-php:latest66bbaf95a123
github.com/docker/docker@v1.4.2-0.20200203170920-46ec8731fbce
23.0.11

Open the chart page →

7,510
verzoekconversieserviceverzoekconversieservice1.0.01 of 3See more

verzoekconversieservice verzoekconversieservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekconversieservice-php:lateste918014fb8d3
github.com/docker/docker@v1.4.2-0.20200203170920-46ec8731fbce
23.0.11

Open the chart page →

7,528
verzoekregistratiecomponentverzoekregistratiecomponent1.1.01 of 4See more

verzoekregistratiecomponent verzoekregistratiecomponent 1.1.0

1 of the 4 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekregistratiecomponent-php:latestc4f6c03af5d3
github.com/docker/docker@v1.4.2-0.20200203170920-46ec8731fbce
23.0.11

Open the chart page →

7,429
verzoektypecatalogusverzoektypecatalogus1.1.01 of 4See more

verzoektypecatalogus verzoektypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoektypecatalogus-php:latest64f5eb7a398b
github.com/docker/docker@v1.4.2-0.20200203170920-46ec8731fbce
23.0.11

Open the chart page →

7,429
istio-service-meshwbstack0.0.11 of 1See more

istio-service-mesh wbstack 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
istio/pilot:1.17.1ce9d87606701
github.com/docker/docker@v23.0.0-rc.2+incompatible
23.0.11

Open the chart page →

6,232
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-php:latest8f1bbd5cda85
github.com/docker/docker@v1.4.2-0.20200203170920-46ec8731fbce
23.0.11

Open the chart page →

7,552
wireguardwireguard-bananas1.5.01 of 1See more

wireguard wireguard-bananas 1.5.0

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
place1/wg-access-server:v0.4.62b2f3ea80ed6
github.com/docker/docker@v1.13.1
23.0.11

Open the chart page →

2,745
xkopsxkops0.1.01 of 5See more

xkops xkops 0.1.0

1 of the 5 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
murtazashah46/helmfile:latest4d11726cf803
github.com/docker/docker@v20.10.21+incompatible
23.0.11

Open the chart page →

13,677

Container images carrying it

262 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
hyperledgerk8s/bc-explorer:v202305041f1a06b61f18
github.com/docker/docker@v20.10.12+incompatible
23.0.11
1
hyperledgerk8s/bc-saas:v0.0.1-20230524d8bc31176257
github.com/docker/docker@v20.10.12+incompatible
23.0.11
1
hyperledgerk8s/fabric-operator:7776e7129a8af8be270
github.com/docker/docker@v20.10.12+incompatible
23.0.11
1
istio/operator:1.18.270f9d1fe5fff
github.com/docker/docker@v23.0.3+incompatible
23.0.11
1
istio/pilot:1.16.0ac0284d75ec9
github.com/docker/docker@v20.10.17+incompatible
23.0.11
1
istio/pilot:1.17.1ce9d87606701
github.com/docker/docker@v23.0.0-rc.2+incompatible
23.0.11
1
istio/pilot:1.15.2db08d6963975
github.com/docker/docker@v20.10.17+incompatible
23.0.11
1
istio/proxyv2:1.14.1df69c1a7af7c
github.com/docker/docker@v20.10.12+incompatible
23.0.11
1
itzg/mc-router:1.16.1bb552b59fb53
github.com/docker/docker@v20.10.17+incompatible
23.0.11
1
kubebb/core:v0.1.62b9e7f451d6b
github.com/docker/docker@v20.10.17+incompatible
23.0.11
1
kubebb/core:lateste366c34a9b8d
github.com/docker/docker@v20.10.17+incompatible
23.0.11
1
kubebb/kube-oidc-proxy-ce:v0.3.0-2022100858d5efec568b
github.com/docker/docker@v20.10.17+incompatible
23.0.11
1
kubebb/mesh-operator:v5.7.0163ebbfc7a82
github.com/docker/docker@v20.10.17+incompatible
23.0.11
1
kubeflowkatib/katib-controller:v0.12.012a28c8a0b41
github.com/docker/docker@v1.4.2-0.20190924003213-a8608b5b67c7
23.0.11
1
kubeoperator/webkubectl:v2.4.0be8f0d624640
github.com/docker/docker@v1.4.2-0.20200203170920-46ec8731fbce
23.0.11
1
kubesphere/ks-extensions-museum:latest29681958f220
github.com/docker/docker@v23.0.3+incompatible
23.0.11
1
kubesphere/kubectl:v1.27.1649b445b1b732
github.com/docker/docker@v20.10.21+incompatible
23.0.11
1
kubesphere/openelb:v0.5.0b5b665c4672c
github.com/docker/docker@v0.7.3-0.20190327010347-be7ac8be2ae0
23.0.11
1
kubesphere/openelb:v0.4.4ed7311a0f9e4
github.com/docker/docker@v0.7.3-0.20190327010347-be7ac8be2ae0
23.0.11
1
kubesphere/porter:v0.4.38d1ed5ee1d2e
github.com/docker/docker@v0.7.3-0.20190327010347-be7ac8be2ae0
23.0.11
1
layer5/meshery-app-mesh:stable-latest77d59943b3d6
github.com/docker/docker@v20.10.17+incompatible
23.0.11
1
layer5/meshery-kuma:stable-latest9d25f029a8a2
github.com/docker/docker@v20.10.21+incompatible
23.0.11
1
layer5/meshery-nginx-sm:stable-latestb3864dfd47ad
github.com/docker/docker@v20.10.21+incompatible
23.0.11
1
layer5/meshery-nsm:stable-latestebd6a8faf21f
github.com/docker/docker@v1.4.2-0.20200203170920-46ec8731fbce
23.0.11
1
layer5/meshery-osm:stable-latestec898e5786c6
github.com/docker/docker@v20.10.21+incompatible
23.0.11
1
layer5/meshery-traefik-mesh:stable-latest797fa7a03570
github.com/docker/docker@v20.10.21+incompatible
23.0.11
1
library/docker:20.10.21-dind3153fa63f546
github.com/docker/docker@v20.10.3-0.20221021173910-5aac513617f0+incompatible
23.0.11
1
library/docker:23.0.1-dindd9a0fd8bdd15
github.com/docker/docker@v23.0.1+incompatible
23.0.11
1
library/kapacitor:1.6.37232f6388a4d
github.com/docker/docker@v20.10.5+incompatible
23.0.11
1
library/telegraf:1.20.428e98eece020
github.com/docker/docker@v20.10.9+incompatible
23.0.11
1
library/telegraf:1.19.0-alpine794079a7f241
github.com/docker/docker@v20.10.6+incompatible
23.0.11
1
library/telegraf:1.19-alpineaddb86c0c520
github.com/docker/docker@v20.10.7+incompatible
23.0.11
1
library/traefik:v2.10.11489caffaedb
github.com/docker/docker@v20.10.21+incompatible
23.0.11
1
library/traefik:2.10.61957e3314f43
github.com/docker/docker@v20.10.21+incompatible
23.0.11
1
library/traefik:2.5.62f603f8d3abe
github.com/docker/docker@v20.10.7+incompatible
23.0.11
1
library/traefik:2.5.47d0228d19042
github.com/docker/docker@v17.12.0-ce-rc1.0.20200204220554-5f6d6f3f2203+incompatible
23.0.11
1
library/traefik:2.4.8eda951fd29a8
github.com/docker/docker@v17.12.0-ce-rc1.0.20200204220554-5f6d6f3f2203+incompatible
23.0.11
1
linuxserver/cloud9:latest45c5fe102ff3
github.com/docker/docker@v20.10.3-0.20220121014307-40bb9831756f+incompatible
23.0.11
1
lumenvox/cloud-license:2.0.09a69862e1248
github.com/docker/docker@v20.10.8+incompatible
23.0.11
1
mattermost/calls-offloader:v0.9.0b440b282599e
github.com/docker/docker@v20.10.9+incompatible
23.0.11
1
mavrick1/kubestellar-b:latest45ca0429a1d4
github.com/docker/docker@v20.10.24+incompatible
23.0.11
1
mesosphere/kommander-federation-utility-apiserver:v0.21.2f9b769c65e24
github.com/docker/docker@v20.10.2+incompatible
23.0.11
1
mesosphere/kubeaddons-addon-initializer:v0.5.15efa21defcbc
github.com/docker/docker@v1.13.1
23.0.11
1
mesosphere/kubeaddons-addon-initializer:v0.2.09f863160127b
github.com/docker/docker@v1.13.1
23.0.11
1
mesosphere/kubeaddons-addon-initializer:v0.2.8c10011f866f2
github.com/docker/docker@v1.13.1
23.0.11
1
minio/operator:v5.0.9170b154d2c61
github.com/docker/docker@v20.10.24+incompatible
23.0.11
1
minio/operator:v4.1.02adc5be088f5
github.com/docker/docker@v1.4.2-0.20190924003213-a8608b5b67c7
23.0.11
1
moby/buildkit:v0.10.0c2aeafaed434
github.com/docker/docker@v20.10.3-0.20220224222438-c78f6963a1c0+incompatible
23.0.11
1
moul/sshportal:v1.19.3332b603727c3
github.com/docker/docker@v20.10.12+incompatible
23.0.11
1
murtazashah46/helmfile:latest4d11726cf803
github.com/docker/docker@v20.10.21+incompatible
23.0.11
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.