StackRadar

CVE-2024-29018

High

Advisory

Published 20 Mar 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.007
53rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
290
of 17,781 indexed, latest versions
Container images
262
deployed by those charts
Fix available
1 of 2
affected packages

Moby's external DNS requests from 'internal' networks could lead to data exfiltration

Carried by container images the latest versions of 290 of 17,781 indexed charts deploy, on 262 images.

Affected packageAffected versionsFixed inImages
docker.iodeb20.10.24+dfsg1-1+deb12u1+b6no fix listed1
github.com/docker/dockergolangv0.0.0-20180620051407-e2593239d949, v0.7.3-0.20190327010347-be7ac8be2ae0, v1.4.2-0.20190924003213-a8608b5b67c7, v1.4.2-0.20191121165722-d1d5f6476656+41 more23.0.11, 25.0.5261
OSV records
DEBIAN-CVE-2024-29018GHSA-mq39-4gv4-mvpx
Also known as
GO-2024-2659

Charts affected

290 by stars
ChartLatestAffected imagesRadar Score
argocd-operatorredhat-cop1.2.21 of 1See more

argocd-operator redhat-cop 1.2.2

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.7464a3af4dfe0
github.com/docker/docker@v1.4.2-0.20191121165722-d1d5f6476656
23.0.11

Open the chart page →

15,291
ploigosredhat-cop0.0.91 of 2See more

ploigos redhat-cop 0.0.9

1 of the 2 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/openshift/origin-cli:4.66722d5041b47
github.com/docker/docker@v1.4.2-0.20191121165722-d1d5f6476656
23.0.11

Open the chart page →

11,437
stackrox-chartredhat-cop0.0.101 of 1See more

stackrox-chart redhat-cop 0.0.10

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/rht-labs/stack-do500:3.0.86ba82beff18e
github.com/docker/docker@v20.10.3+incompatible
23.0.11

Open the chart page →

29,227
review-componentreview-component1.0.01 of 3See more

review-component review-component 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/review-component-php:latestafe623824b82
github.com/docker/docker@v1.4.2-0.20200203170920-46ec8731fbce
23.0.11

Open the chart page →

7,491
krr-enforcerrobusta0.3.51 of 2See more

krr-enforcer robusta 0.3.5

1 of the 2 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
alpine/k8s:1.30.0bd01dae02676
github.com/docker/docker@v20.10.24+incompatible
23.0.11

Open the chart page →

4,038
gitlab-operatorrock8sVerified publisher0.7.01 of 2See more

gitlab-operator rock8s 0.7.0

1 of the 2 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
registry.gitlab.com/gitlab-org/cloud-native/gitlab-operator:0.5.136b19b72120e
github.com/docker/docker@v17.12.1-ce+incompatible
23.0.11

Open the chart page →

5,422
argocdromholdings1.8.11 of 3See more

argocd romholdings 1.8.1

1 of the 3 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
argoproj/argocd:v1.8.1830e86cacefd
github.com/docker/docker@v0.7.3-0.20190327010347-be7ac8be2ae0
23.0.11

Open the chart page →

10,466
argocd-certificate-refreshromholdings0.10.81 of 1See more

argocd-certificate-refresh romholdings 0.10.8

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
github.com/docker/docker@v20.10.17+incompatible
23.0.11

Open the chart page →

12,949
argo-workflowromholdings0.1.61 of 1See more

argo-workflow romholdings 0.1.6

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/argoproj/workflow-controller:v3.4.7f0c6fba81a24
github.com/docker/docker@v20.10.24+incompatible
23.0.11

Open the chart page →

1,580
clairromholdings0.1.141 of 2See more

clair romholdings 0.1.14

1 of the 2 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/devtron/clair:4.3.675fb847ac045
github.com/docker/docker@v20.10.7+incompatible
23.0.11

Open the chart page →

6,237
devtron-enterpriseromholdings48.0.01 of 28See more

devtron-enterprise romholdings 48.0.0

1 of the 28 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/devtron/kubectl:latest2ad610626658
github.com/docker/docker@v20.10.17+incompatible
23.0.11

Open the chart page →

68,240
devtron-operatorromholdings0.23.31 of 11See more

devtron-operator romholdings 0.23.3

1 of the 11 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/devtron/kubectl:latest2ad610626658
github.com/docker/docker@v20.10.17+incompatible
23.0.11

Open the chart page →

32,902
securityromholdings0.2.21 of 1See more

security romholdings 0.2.2

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/devtron/image-scanner:b278f42b-334-1111988c64b1b6ec8
github.com/docker/docker@v20.10.7+incompatible
23.0.11

Open the chart page →

2,435
ed-traefik2scaleway-charts0.2.01 of 1See more

ed-traefik2 scaleway-charts 0.2.0

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
library/traefik:2.5.62f603f8d3abe
github.com/docker/docker@v20.10.7+incompatible
23.0.11

Open the chart page →

3,160
centralbrainsciencemeshVerified publisher0.0.31 of 5See more

centralbrain sciencemesh 0.0.3

1 of the 5 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/prometheus/prometheus:v2.22.1b899dbd1b901
github.com/docker/docker@v17.12.0-ce-rc1.0.20200706150819-a40b877fbb9e+incompatible
23.0.11

Open the chart page →

9,754
gitlab-runnerslamdev0.0.11 of 1See more

gitlab-runner slamdev 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
gitlab/gitlab-runner:v15.3.0860d4a3fec7a
github.com/docker/docker@v20.10.12+incompatible
23.0.11

Open the chart page →

9,196
smarter-k3s-edgesmarterVerified publisher0.0.121 of 2See more

smarter-k3s-edge smarter 0.0.12

1 of the 2 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
rancher/k3s:v1.25.3-k3s1eaa270df79cc
github.com/docker/docker@v20.10.7+incompatible
23.0.11

Open the chart page →

3,462
harborsoftonic1.13.01 of 8See more

harbor softonic 1.13.0

1 of the 8 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
goharbor/trivy-adapter-photon:v2.9.0dc5b882a7db4
github.com/docker/docker@v23.0.7-0.20230714215826-f00e7af96042+incompatible
23.0.11

Open the chart page →

7,672
testing-multitoolsomeblackmagic0.1.21 of 1See more

testing-multitool someblackmagic 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
someblackmagic/k8s-testing-multitool:v0.1.06eca64b6b440
github.com/docker/docker@v20.10.12+incompatible
23.0.11

Open the chart page →

30,687
allurestakaterVerified publisher1.0.11 of 1See more

allure stakater 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/eformat/jenkins-agent-graalvm:latesta3b9a07648b6
github.com/docker/docker@v17.12.0-ce-rc1.0.20200618181300-9dc6525e6118+incompatible
23.0.11

Open the chart page →

28,165
vaultstakaterVerified publisher0.8.41 of 2See more

vault stakater 0.8.4

1 of the 2 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
hashicorp/vault:1.8.4dfc3500beb0e
github.com/docker/docker@v17.12.0-ce-rc1.0.20200309214505-aa6a9891b09c+incompatible
23.0.11

Open the chart page →

5,864
cost-analyzerstatcan1.82.21 of 9See more

cost-analyzer statcan 1.82.2

1 of the 9 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
prom/prometheus:v2.22.2f7ffebdd428b
github.com/docker/docker@v17.12.0-ce-rc1.0.20200706150819-a40b877fbb9e+incompatible
23.0.11

Open the chart page →

16,506
minio-operatorstatcan4.1.01 of 2See more

minio-operator statcan 4.1.0

1 of the 2 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
minio/operator:v4.1.02adc5be088f5
github.com/docker/docker@v1.4.2-0.20190924003213-a8608b5b67c7
23.0.11

Open the chart page →

6,596
sn-platform-slimstreamnative1.11.441 of 6See more

sn-platform-slim streamnative 1.11.44

1 of the 6 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/prometheus/prometheus:v2.43.0f5c29683a301
github.com/docker/docker@v23.0.1+incompatible
23.0.11

Open the chart page →

10,134
taalhuizen-servicetaalhuizen-service1.0.01 of 3See more

taalhuizen-service taalhuizen-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/taalhuizen-service-php:latest04f1b7f0d573
github.com/docker/docker@v1.4.2-0.20200203170920-46ec8731fbce
23.0.11

Open the chart page →

7,480
telegraf-ds-k3stelegraf-ds-k3s1.0.01 of 1See more

telegraf-ds-k3s telegraf-ds-k3s 1.0.0

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
library/telegraf:1.19.0-alpine794079a7f241
github.com/docker/docker@v20.10.6+incompatible
23.0.11

Open the chart page →

3,764
temporaltemporal0.28.91 of 13See more

temporal temporal 0.28.9

1 of the 13 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
quay.io/prometheus/prometheus:v2.31.1a8779cfe553e
github.com/docker/docker@v20.10.9+incompatible
23.0.11

Open the chart page →

21,005
mc-routerthl-chartsVerified publisher0.1.01 of 1See more

mc-router thl-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
itzg/mc-router:1.16.1bb552b59fb53
github.com/docker/docker@v20.10.17+incompatible
23.0.11

Open the chart page →

1,855
monitoringthl-chartsVerified publisher0.1.12 of 10See more

monitoring thl-charts 0.1.1

2 of the 10 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
grafana/promtail:2.4.2626900031c4e
github.com/docker/docker@v20.10.8+incompatible
23.0.11
quay.io/prometheus/prometheus:v2.34.0b37103e03399
github.com/docker/docker@v20.10.12+incompatible
23.0.11

Open the chart page →

18,908
posteetrivy-operator2.14.02 of 3See more

postee trivy-operator 2.14.0

2 of the 3 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
aquasec/postee:2.12.0-amd640795cba777e7
github.com/docker/docker@v20.10.24+incompatible
23.0.11
aquasec/postee-ui:2.12.0-amd64c0467c3941dc
github.com/docker/docker@v20.10.24+incompatible
23.0.11

Open the chart page →

4,815
trouw-servicetrouw-service1.0.01 of 3See more

trouw-service trouw-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/trouw-service-php:latestf745e2870692
github.com/docker/docker@v1.4.2-0.20200203170920-46ec8731fbce
23.0.11

Open the chart page →

7,510
tfy-lokitruefoundryVerified publisher0.1.61 of 2See more

tfy-loki truefoundry 0.1.6

1 of the 2 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
grafana/promtail:2.9.1063a2e57a5b14
github.com/docker/docker@v23.0.8+incompatible
23.0.11

Open the chart page →

2,813
verhuis-serviceverhuis-service1.0.01 of 3See more

verhuis-service verhuis-service 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verhuis-service-php:latest66bbaf95a123
github.com/docker/docker@v1.4.2-0.20200203170920-46ec8731fbce
23.0.11

Open the chart page →

7,510
verzoekconversieserviceverzoekconversieservice1.0.01 of 3See more

verzoekconversieservice verzoekconversieservice 1.0.0

1 of the 3 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekconversieservice-php:lateste918014fb8d3
github.com/docker/docker@v1.4.2-0.20200203170920-46ec8731fbce
23.0.11

Open the chart page →

7,528
verzoekregistratiecomponentverzoekregistratiecomponent1.1.01 of 4See more

verzoekregistratiecomponent verzoekregistratiecomponent 1.1.0

1 of the 4 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoekregistratiecomponent-php:latestc4f6c03af5d3
github.com/docker/docker@v1.4.2-0.20200203170920-46ec8731fbce
23.0.11

Open the chart page →

7,429
verzoektypecatalogusverzoektypecatalogus1.1.01 of 4See more

verzoektypecatalogus verzoektypecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/verzoektypecatalogus-php:latest64f5eb7a398b
github.com/docker/docker@v1.4.2-0.20200203170920-46ec8731fbce
23.0.11

Open the chart page →

7,429
istio-service-meshwbstack0.0.11 of 1See more

istio-service-mesh wbstack 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
istio/pilot:1.17.1ce9d87606701
github.com/docker/docker@v23.0.0-rc.2+incompatible
23.0.11

Open the chart page →

6,232
webresourcecataloguswebresourcecatalogus1.1.01 of 4See more

webresourcecatalogus webresourcecatalogus 1.1.0

1 of the 4 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
ghcr.io/conductionnl/webresourcecatalogus-php:latest8f1bbd5cda85
github.com/docker/docker@v1.4.2-0.20200203170920-46ec8731fbce
23.0.11

Open the chart page →

7,552
wireguardwireguard-bananas1.5.01 of 1See more

wireguard wireguard-bananas 1.5.0

1 of the 1 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
place1/wg-access-server:v0.4.62b2f3ea80ed6
github.com/docker/docker@v1.13.1
23.0.11

Open the chart page →

2,745
xkopsxkops0.1.01 of 5See more

xkops xkops 0.1.0

1 of the 5 container images this version deploys carry CVE-2024-29018.

Container imageDigestPackageFixed in
murtazashah46/helmfile:latest4d11726cf803
github.com/docker/docker@v20.10.21+incompatible
23.0.11

Open the chart page →

13,677

Container images carrying it

262 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
wurstmeister/kafka:latest2d4bbf9cc83d
github.com/docker/docker@v20.10.3-0.20220121014307-40bb9831756f+incompatible
23.0.11
7
quay.io/devtron/kubectl:latest2ad610626658
github.com/docker/docker@v20.10.17+incompatible
23.0.11
6
hyperledger/fabric-peer:2.46ff36af21eb1
github.com/docker/docker@v20.10.0-beta1.0.20201113105859-b6bfff2a628f+incompatible
23.0.11
4
hyperledger/fabric-tools:2.4b1194f509085
github.com/docker/docker@v20.10.0-beta1.0.20201113105859-b6bfff2a628f+incompatible
23.0.11
4
ghcr.io/loft-sh/vcluster-pro:0.0.0-ci-run.10ab2e1fa19dd4
github.com/docker/docker@v20.10.21+incompatible
23.0.11
4
quay.io/jetstack/cert-manager-ctl:v1.13.1c10bde7ff9ad
github.com/docker/docker@v23.0.3+incompatible
23.0.11
4
argoproj/argocd:v1.8.1830e86cacefd
github.com/docker/docker@v0.7.3-0.20190327010347-be7ac8be2ae0
23.0.11
3
grafana/promtail:2.4.2626900031c4e
github.com/docker/docker@v20.10.8+incompatible
23.0.11
3
library/docker:20.10-dind:20-dindaf96c680a7e1
github.com/docker/docker@v23.0.0-rc.1+incompatible
23.0.11
3
quay.io/argoproj/workflow-controller:v3.4.7f0c6fba81a24
github.com/docker/docker@v20.10.24+incompatible
23.0.11
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
github.com/docker/docker@v20.10.17+incompatible
23.0.11
3
quay.io/devtron/clair:4.3.675fb847ac045
github.com/docker/docker@v20.10.7+incompatible
23.0.11
3
quay.io/devtron/image-scanner:b278f42b-334-1111988c64b1b6ec8
github.com/docker/docker@v20.10.7+incompatible
23.0.11
3
quay.io/prometheus/prometheus:v2.41.01a3e9a878e50
github.com/docker/docker@v20.10.21+incompatible
23.0.11
3
quay.io/prometheus/prometheus:v2.26.038d40a760569
github.com/docker/docker@v20.10.5+incompatible
23.0.11
3
quay.io/prometheus/prometheus:v2.31.1a8779cfe553e
github.com/docker/docker@v20.10.9+incompatible
23.0.11
3
quay.io/prometheus/prometheus:v2.43.0f5c29683a301
github.com/docker/docker@v23.0.1+incompatible
23.0.11
3
dmilhdef/missing-container-metrics:v0.21.0fada1a6e7638
github.com/docker/docker@v1.13.1
23.0.11
2
hashicorp/vault:1.8.34db614d40d0e
github.com/docker/docker@v17.12.0-ce-rc1.0.20200309214505-aa6a9891b09c+incompatible
23.0.11
2
hashicorp/vault:1.12.18de4d5f31b38
github.com/docker/docker@v20.10.18+incompatible
23.0.11
2
inaccel/daemon:latest093e1ea90ab8
github.com/docker/docker@v25.0.2+incompatible
25.0.5
2
istio/proxyv2:1.18.0757d28c24100
github.com/docker/docker@v23.0.3+incompatible
23.0.11
2
k0sproject/k0s:v1.26.0-k0s.0f04635825d51
github.com/docker/docker@v20.10.17+incompatible
23.0.11
2
library/traefik:v2.57d5a6ae66572
github.com/docker/docker@v20.10.7+incompatible
23.0.11
2
minio/operator:v4.3.754393e03f3b2
github.com/docker/docker@v1.4.2-0.20190924003213-a8608b5b67c7
23.0.11
2
oryd/kratos:v1.0.0d06fc5845f63
github.com/docker/docker@v20.10.24+incompatible
23.0.11
2
place1/wg-access-server:v0.4.62b2f3ea80ed6
github.com/docker/docker@v1.13.1
23.0.11
2
prom/prometheus:v2.37.98176adea328e
github.com/docker/docker@v20.10.24+incompatible
23.0.11
2
prom/prometheus:v2.21.0d43417c260e5
github.com/docker/docker@v17.12.0-ce-rc1.0.20200706150819-a40b877fbb9e+incompatible
23.0.11
2
rancher/k3s:v1.26.0-k3s19380f5dbae9a
github.com/docker/docker@v20.10.12+incompatible
23.0.11
2
xelalex/dregsy:0.4.3574054e1c417
github.com/docker/docker@v20.10.14+incompatible
23.0.11
2
ghcr.io/containerd/nydus-snapshotter:v0.9.056f8617363b4
github.com/docker/docker@v20.10.3-0.20211206061157-934f955e3d62+incompatible
23.0.11
2
quay.io/jetstack/cert-manager-ctl:v1.11.074611761f052
github.com/docker/docker@v20.10.17+incompatible
23.0.11
2
quay.io/openshift/origin-cli:4.7464a3af4dfe0
github.com/docker/docker@v1.4.2-0.20191121165722-d1d5f6476656
23.0.11
2
quay.io/openshift/origin-cli:4.8bb5e052770e5
github.com/docker/docker@v20.10.3+incompatible
23.0.11
2
quay.io/prometheus/prometheus:v2.22.1b899dbd1b901
github.com/docker/docker@v17.12.0-ce-rc1.0.20200706150819-a40b877fbb9e+incompatible
23.0.11
2
quay.io/prometheus/prometheus:v2.36.2df0cd5887887
github.com/docker/docker@v20.10.16+incompatible
23.0.11
2
alpine/k8s:1.22.600ac10bcb759
github.com/docker/docker@v17.12.0-ce-rc1.0.20200618181300-9dc6525e6118+incompatible
23.0.11
1
alpine/k8s:1.27.321b24e6bf801
github.com/docker/docker@v20.10.24+incompatible
23.0.11
1
alpine/k8s:1.31.106dbe6f391eda
github.com/docker/docker@v20.10.24+incompatible
23.0.11
1
alpine/k8s:1.31.137a319b15cfc9
github.com/docker/docker@v20.10.24+incompatible
23.0.11
1
alpine/k8s:1.32.47e1e7d5b7a96
github.com/docker/docker@v20.10.24+incompatible
23.0.11
1
alpine/k8s:1.31.49c4976d47656
github.com/docker/docker@v20.10.24+incompatible
23.0.11
1
alpine/k8s:1.18.16a41efe02a041
github.com/docker/docker@v17.12.0-ce-rc1.0.20200618181300-9dc6525e6118+incompatible
23.0.11
1
alpine/k8s:1.30.0bd01dae02676
github.com/docker/docker@v20.10.24+incompatible
23.0.11
1
alpine/k8s:1.30.2cd560fce90f7
github.com/docker/docker@v20.10.24+incompatible
23.0.11
1
alpine/k8s:1.28.13e5c0b053fed7
github.com/docker/docker@v20.10.24+incompatible
23.0.11
1
alpine/k8s:1.32.3eec354133193
github.com/docker/docker@v20.10.24+incompatible
23.0.11
1
alpine/k8s:1.28.2fc059f056ad0
github.com/docker/docker@v20.10.24+incompatible
23.0.11
1
amazon/aws-otel-collector:v0.27.0d8ab0eef5074
github.com/docker/docker@v23.0.1+incompatible
23.0.11
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.