StackRadar

CVE-2024-33599

High

Advisory

Published 6 May 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.1
base score, highest
EPSS
0.013
69th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
766
of 17,787 indexed, latest versions
Container images
731
deployed by those charts
Fix available
3 of 4
affected packages

glibc-2.39-6.1 on GA media

Carried by container images the latest versions of 766 of 17,787 indexed charts deploy, on 731 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+29 more2.23-0ubuntu11.3+esm7, 2.27-3ubuntu1.6+esm3, 2.31-0ubuntu9.16, 2.35-0ubuntu3.8+2 more720
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 moreno fix listed7
glibcapk2.37-r6, 2.38-r62.39-r52
glibcrpm2.26-lp151.18.72.39-6.12
OSV records
CGA-7w7q-764g-3jg9DEBIAN-CVE-2024-33599UBUNTU-CVE-2024-33599openSUSE-SU-2024:13935-1
Also known as
CGA-wh7m-8f42-c5qg, USN-6804-1

Charts affected

766 by stars
ChartLatestAffected imagesRadar Score
wbaas-backupwbstack0.1.01 of 1See more

wbaas-backup wbstack 0.1.0

1 of the 1 container images this version deploys carry CVE-2024-33599.

Container imageDigestPackageFixed in
ghcr.io/wmde/wbaas-backup:v0.1.78e6a9516eac0
glibc@2.27-3ubuntu1.5
2.27-3ubuntu1.6+esm3

Open the chart page →

9,743
myweatherhelmwebapp11.3.501 of 8See more

myweatherhelm webapp1 1.3.50

1 of the 8 container images this version deploys carry CVE-2024-33599.

Container imageDigestPackageFixed in
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.16

Open the chart page →

9,130
myweatherhelm-schedulingwebapp11.3.921 of 9See more

myweatherhelm-scheduling webapp1 1.3.92

1 of the 9 container images this version deploys carry CVE-2024-33599.

Container imageDigestPackageFixed in
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.16

Open the chart page →

9,130
web-dvwaweb-dvwa1.16.01 of 2See more

web-dvwa web-dvwa 1.16.0

1 of the 2 container images this version deploys carry CVE-2024-33599.

Container imageDigestPackageFixed in
gulacedia/web-dvwa-new:v367b467d961ca
glibc@2.36-9
2.36-9+deb12u7

Open the chart page →

10,001
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-33599.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.16

Open the chart page →

14,364
webhookie-allwebhookie0.1.21 of 3See more

webhookie-all webhookie 0.1.2

1 of the 3 container images this version deploys carry CVE-2024-33599.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.16

Open the chart page →

28,605
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2024-33599.

Container imageDigestPackageFixed in
istio/kubectl:1.5.10dbb7726d1bf0
glibc@2.27-3ubuntu1.2
2.27-3ubuntu1.6+esm3

Open the chart page →

10,843
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2024-33599.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.16

Open the chart page →

15,230
openebswenerme3.10.02 of 3See more

openebs wenerme 3.10.0

2 of the 3 container images this version deploys carry CVE-2024-33599.

Container imageDigestPackageFixed in
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.8
openebs/node-disk-operator:2.1.06afe2123c457
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.8

Open the chart page →

10,489
wexa-studiowexa-studio1.2.01 of 15See more

wexa-studio wexa-studio 1.2.0

1 of the 15 container images this version deploys carry CVE-2024-33599.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.7.45f2a56b95266
glibc@2.36-9+deb12u3
2.36-9+deb12u7

Open the chart page →

14,983
jaegerwikimedia3.1.21 of 4See more

jaeger wikimedia 3.1.2

1 of the 4 container images this version deploys carry CVE-2024-33599.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
glibc@2.35-0ubuntu3.5
2.35-0ubuntu3.8

Open the chart page →

9,248
marge-botwiremindVerified publisher1.4.41 of 1See more

marge-bot wiremind 1.4.4

1 of the 1 container images this version deploys carry CVE-2024-33599.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.14.0dcffb926e563
glibc@2.36-9+deb12u3
2.36-9+deb12u7

Open the chart page →

5,542
xlinexline0.0.11 of 1See more

xline xline 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-33599.

Container imageDigestPackageFixed in
ghcr.io/liangyuanpeng/xline:latest3d2eceb44a3b
glibc@2.39-0ubuntu8.1
2.39-0ubuntu8.2

Open the chart page →

2,097
api-snapyoukadevVerified publisher0.1.11 of 1See more

api-snap youkadev 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-33599.

Container imageDigestPackageFixed in
youkadev/api-snap:0.1.14db0f9428e67
glibc@2.36-9+deb12u4
2.36-9+deb12u7

Open the chart page →

2,661
zahori-schedulerzahoriVerified publisher1.0.11 of 1See more

zahori-scheduler zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-33599.

Container imageDigestPackageFixed in
zahoriaut/zahori-scheduler:1.0.047d0979b1184
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm3

Open the chart page →

2,458
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2024-33599.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm3
yandex/clickhouse-server:21.3.204eccfffb01d7
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.16

Open the chart page →

9,207

Container images carrying it

731 by charts deploying them

A fixed version is listed for 3 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
bicarus/mx-notifier:1.1.8bed688d16762
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.16
1
bitnamilegacy/elasticsearch:8.12.215d4647fd491
glibc@2.36-9+deb12u4
2.36-9+deb12u7
1
bitnamilegacy/kubectl:1.29.3f5fc0d561d9e
glibc@2.36-9+deb12u4
2.36-9+deb12u7
1
bitnamilegacy/memcached:1.6.24-debian-12-r01d80b6a96f00
glibc@2.36-9+deb12u4
2.36-9+deb12u7
1
bitnamilegacy/mongodb:7.0.8-debian-12-r23163c3842bfd
glibc@2.36-9+deb12u4
2.36-9+deb12u7
1
bitnamilegacy/os-shell:12-debian-12-r16d24925821dd2
glibc@2.36-9+deb12u4
2.36-9+deb12u7
1
bitnamilegacy/postgresql:16.2.0-debian-12-r890fda44bfa42
glibc@2.36-9+deb12u4
2.36-9+deb12u7
1
bitnamilegacy/postgresql:16.2.0-debian-12-r6ea55532b6f75
glibc@2.36-9+deb12u4
2.36-9+deb12u7
1
bitnamilegacy/redis:7.2.4-debian-12-r139c6fecd24bf3
glibc@2.36-9+deb12u6
2.36-9+deb12u7
1
blakeblackshear/frigate:0.10.0-amd64ae269270ad9e
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.16
1
boxcutter/meshcmd:1.1.384e13f01bcab
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.8
1
browserless/chrome:1.48.0-chrome-stablec81ae5585b47
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.16
1
btcpayserver/tor:0.4.8.10e9585b68dc6b
glibc@2.36-9+deb12u3
2.36-9+deb12u7
1
camunda/zeebe:8.4.5ab5abc09e407
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.8
1
cfcontainerization/cf-operator:v2.3.0-0.g27a91cdf82fa261c18a8
glibc@2.26-lp151.18.7
2.39-6.1
1
cfcontainerization/quarks-job:v0.0.0-0.g70ae34b58fb1c173a46
glibc@2.26-lp151.18.7
2.39-6.1
1
chaerr/kridge:demo-operator-v0.1.266833deec017
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.16
1
chetangautamm/repo:Opensips_Buildb4b94155ff5a
eglibc@2.19-0ubuntu6.15
no fix listed
1
chetangautamm/repo:sipp.v3e7f7049e1544
glibc@2.31-0ubuntu9.1
2.31-0ubuntu9.16
1
cheyang/distributed-tf:1.6.046cc34755493
glibc@2.23-0ubuntu10
2.23-0ubuntu11.3+esm7
1
ciscolabs/msm-nc:0710202336d02faad958
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.8
1
citizenstig/httpbin:latestb81c818ccb86
glibc@2.23-0ubuntu5
2.23-0ubuntu11.3+esm7
1
clickhouse/clickhouse-server:24.4.12e6587b81a26
glibc@2.31-0ubuntu9.15
2.31-0ubuntu9.16
1
clickhouse/clickhouse-server:23.4.2.11dc5658853ce1
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.8
1
cloudve/janis-terminal:latestaf56e77ca587
glibc@2.27-3ubuntu1
2.27-3ubuntu1.6+esm3
1
cloudve/ttyd:latestd79c1c5881c0
glibc@2.27-3ubuntu1
2.27-3ubuntu1.6+esm3
1
collabora/code:23.05.10.1.105299b452f7f
glibc@2.36-9+deb12u4
2.36-9+deb12u7
1
countly/countly-server:25.05.4e3c238248f99
glibc@2.31-0ubuntu9.7
2.31-0ubuntu9.16
1
cradlepoint/pgbouncer:1.0.18f5720b0cd03
glibc@2.27-3ubuntu1
2.27-3ubuntu1.6+esm3
1
cribl/cribl:3.0.2762747cb6796
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm3
1
csiplugin/csi-neonsan:v1.2.21fa83d45417f
glibc@2.23-0ubuntu11.3
2.23-0ubuntu11.3+esm7
1
dachichang/basic-auth-s3-nginx:1.0.07ccac90a935e
glibc@2.36-9+deb12u3
2.36-9+deb12u7
1
daedalusproject/base_kubectl:latest6f72b5119eda
glibc@2.31-0ubuntu9.1
2.31-0ubuntu9.16
1
dariomader/twampy:v0.0.2d2f4a8c5e690
glibc@2.38-r6
2.39-r5
1
daskdev/dask-notebook:1.1.0052630f5ca04
glibc@2.27-3ubuntu1
2.27-3ubuntu1.6+esm3
1
dasmeta/mongodb-bi-connector:1.0.3fa657960dfec
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm3
1
datafuselabs/databend-meta:v1.2.279ba877ee6cb4d
glibc@2.36-9+deb12u3
2.36-9+deb12u7
1
datafuselabs/databend-query:v1.2.279a936843b85b4
glibc@2.36-9+deb12u3
2.36-9+deb12u7
1
datalust/seq:5.0.832-pre9c731bb207a6
glibc@2.23-0ubuntu10
2.23-0ubuntu11.3+esm7
1
datalust/seq-input-gelf:3.0.441-x643de34aed5642
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.16
1
dblaci/ubuntu-ssh-rsync:20231020eea697611af4
glibc@2.35-0ubuntu3.4
2.35-0ubuntu3.8
1
ddosify/selfhosted_alaz_backend:1.0.6a43c5155fa1c
glibc@2.36-9+deb12u4
2.36-9+deb12u7
1
ddosify/selfhosted_backend:3.2.93c11e3182652
glibc@2.36-9+deb12u4
2.36-9+deb12u7
1
ddosify/selfhosted_backend:2.6.11ac323d52bfb4
glibc@2.36-9+deb12u4
2.36-9+deb12u7
1
ddosify/selfhosted_hammermanager:2.0.2b796b8c73011
glibc@2.36-9+deb12u4
2.36-9+deb12u7
1
deepflowce/clickhouse-server:22.8.6.71bc1882f75c18
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.16
1
deepflowce/deepflow-agent:v6.2.6.529332fee7fc2
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.8
1
dellcloud/category:distributed02fc234353a9
glibc@2.31-0ubuntu9.1
2.31-0ubuntu9.16
1
dellcloud/pages:1.04d2eb25b9225
glibc@2.31-0ubuntu9.1
2.31-0ubuntu9.16
1
dgraziotin/nginx-webdav-nononsense:1.23.138f2de42bed0
glibc@2.31-0ubuntu9.7
2.31-0ubuntu9.16
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.