StackRadar

CVE-2024-33601

High

Advisory

Published 6 May 2024In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.3
base score, highest
EPSS
0.011
63rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
764
of 17,787 indexed, latest versions
Container images
728
deployed by those charts
Fix available
2 of 3
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 764 of 17,787 indexed charts deploy, on 728 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+29 more2.23-0ubuntu11.3+esm7, 2.27-3ubuntu1.6+esm3, 2.31-0ubuntu9.16, 2.35-0ubuntu3.8+2 more719
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 moreno fix listed7
glibcapk2.37-r6, 2.38-r62.39-r52
OSV records
CGA-34v4-vwhj-84jhDEBIAN-CVE-2024-33601UBUNTU-CVE-2024-33601
Also known as
CGA-4vwf-3pqq-r947, USN-6804-1

Charts affected

764 by stars
ChartLatestAffected imagesRadar Score
myweatherhelm-schedulingwebapp11.3.921 of 9See more

myweatherhelm-scheduling webapp1 1.3.92

1 of the 9 container images this version deploys carry CVE-2024-33601.

Container imageDigestPackageFixed in
mcr.microsoft.com/azure-sql-edge:latest902628a8be89
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.16

Open the chart page →

9,130
web-dvwaweb-dvwa1.16.01 of 2See more

web-dvwa web-dvwa 1.16.0

1 of the 2 container images this version deploys carry CVE-2024-33601.

Container imageDigestPackageFixed in
gulacedia/web-dvwa-new:v367b467d961ca
glibc@2.36-9
2.36-9+deb12u7

Open the chart page →

10,001
webhookiewebhookie0.1.21 of 1See more

webhookie webhookie 0.1.2

1 of the 1 container images this version deploys carry CVE-2024-33601.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.16

Open the chart page →

14,364
webhookie-allwebhookie0.1.21 of 3See more

webhookie-all webhookie 0.1.2

1 of the 3 container images this version deploys carry CVE-2024-33601.

Container imageDigestPackageFixed in
hookiesolutions/webhookie:latest0629694246ba
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.16

Open the chart page →

28,605
emissary-ingresswenerme8.12.21 of 2See more

emissary-ingress wenerme 8.12.2

1 of the 2 container images this version deploys carry CVE-2024-33601.

Container imageDigestPackageFixed in
istio/kubectl:1.5.10dbb7726d1bf0
glibc@2.27-3ubuntu1.2
2.27-3ubuntu1.6+esm3

Open the chart page →

10,843
longhornwenerme1.2.31 of 2See more

longhorn wenerme 1.2.3

1 of the 2 container images this version deploys carry CVE-2024-33601.

Container imageDigestPackageFixed in
longhornio/longhorn-manager:v1.2.3dca34321452c
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.16

Open the chart page →

15,230
openebswenerme3.10.02 of 3See more

openebs wenerme 3.10.0

2 of the 3 container images this version deploys carry CVE-2024-33601.

Container imageDigestPackageFixed in
openebs/node-disk-manager:2.1.0f6c18b0f8c8a
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.8
openebs/node-disk-operator:2.1.06afe2123c457
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.8

Open the chart page →

10,489
wexa-studiowexa-studio1.2.01 of 15See more

wexa-studio wexa-studio 1.2.0

1 of the 15 container images this version deploys carry CVE-2024-33601.

Container imageDigestPackageFixed in
qdrant/qdrant:v1.7.45f2a56b95266
glibc@2.36-9+deb12u3
2.36-9+deb12u7

Open the chart page →

14,983
jaegerwikimedia3.1.21 of 4See more

jaeger wikimedia 3.1.2

1 of the 4 container images this version deploys carry CVE-2024-33601.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
glibc@2.35-0ubuntu3.5
2.35-0ubuntu3.8

Open the chart page →

9,248
marge-botwiremindVerified publisher1.4.41 of 1See more

marge-bot wiremind 1.4.4

1 of the 1 container images this version deploys carry CVE-2024-33601.

Container imageDigestPackageFixed in
hiboxsystems/marge-bot:0.14.0dcffb926e563
glibc@2.36-9+deb12u3
2.36-9+deb12u7

Open the chart page →

5,542
xlinexline0.0.11 of 1See more

xline xline 0.0.1

1 of the 1 container images this version deploys carry CVE-2024-33601.

Container imageDigestPackageFixed in
ghcr.io/liangyuanpeng/xline:latest3d2eceb44a3b
glibc@2.39-0ubuntu8.1
2.39-0ubuntu8.2

Open the chart page →

2,097
api-snapyoukadevVerified publisher0.1.11 of 1See more

api-snap youkadev 0.1.1

1 of the 1 container images this version deploys carry CVE-2024-33601.

Container imageDigestPackageFixed in
youkadev/api-snap:0.1.14db0f9428e67
glibc@2.36-9+deb12u4
2.36-9+deb12u7

Open the chart page →

2,661
zahori-schedulerzahoriVerified publisher1.0.11 of 1See more

zahori-scheduler zahori 1.0.1

1 of the 1 container images this version deploys carry CVE-2024-33601.

Container imageDigestPackageFixed in
zahoriaut/zahori-scheduler:1.0.047d0979b1184
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm3

Open the chart page →

2,458
clickhousezloi-space1.2.02 of 3See more

clickhouse zloi-space 1.2.0

2 of the 3 container images this version deploys carry CVE-2024-33601.

Container imageDigestPackageFixed in
yandex/clickhouse-client:21.3863f94a0f607
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm3
yandex/clickhouse-server:21.3.204eccfffb01d7
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.16

Open the chart page →

9,207

Container images carrying it

728 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
dellcloud/pages:monitor6ba7b22caacd
glibc@2.31-0ubuntu9.1
2.31-0ubuntu9.16
79
flyway/flyway:6.4.422d97ceb0c47
glibc@2.27-3ubuntu1
2.27-3ubuntu1.6+esm3
79
codeurjc/toposervice:v1.0:v1.239fb4c11e6a49
glibc@2.27-3ubuntu1.6
2.27-3ubuntu1.6+esm3
13
oomk8s/readiness-check:2.0.2875814cc853d
glibc@2.23-0ubuntu11
2.23-0ubuntu11.3+esm7
11
library/mongo:5.0.6-focal8e70544b6c76
glibc@2.31-0ubuntu9.7
2.31-0ubuntu9.16
10
library/rabbitmq:3.9-management8a279e9396a8
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.8
10
oomk8s/readiness-check:2.0.07daa08b81954
glibc@2.23-0ubuntu9
2.23-0ubuntu11.3+esm7
6
quay.io/devtron/devtron-utils:dup-chart-repo-v1.1.095d6f0e05636
glibc@2.36-9+deb12u3
2.36-9+deb12u7
6
quay.io/devtron/postgres:14.91b594392f7cb
glibc@2.36-9+deb12u3
2.36-9+deb12u7
6
bitnamilegacy/kubectl:1.29.2c74b703deed2
glibc@2.36-9+deb12u4
2.36-9+deb12u7
5
solsson/kafka:latest41e5d8f6f290
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.16
5
hyperledger/fabric-ca-tools:latest4ce6f43ded2e
glibc@2.23-0ubuntu10
2.23-0ubuntu11.3+esm7
4
hyperledger/fabric-couchdb:0.4.15f6c724592abf
glibc@2.23-0ubuntu11
2.23-0ubuntu11.3+esm7
4
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
glibc@2.35-0ubuntu3.5
2.35-0ubuntu3.8
4
library/mongo:4.2.12-bionic628741415fc9
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm3
4
library/mongo:4.4.66efa05203990
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm3
4
library/rabbitmq:3.11-managementc3f70098e01d
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.8
4
mastercloudapps/planner:v1.2340a950b311b2
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.8
4
oscarsotosanchez/weatherservice:v1.0911ec961d10b
glibc@2.27-3ubuntu1.4
2.27-3ubuntu1.6+esm3
4
ciscolabs/rtsp-client:latesta7b60ec88285
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.16
3
ciscolabs/rtsp-server:latestb59fc10bb821
glibc@2.31-0ubuntu9.9
2.31-0ubuntu9.16
3
cloudve/cloudlaunch-server:latest4a3d7fae90bb
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.16
3
codeurjc/planner:v1.0800cf520c245
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.8
3
dgraph/dgraph:v21.12.03b55ea83fffe
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.16
3
gchq/hdfs:3.3.35ec58edbb2db
glibc@2.39-0ubuntu8.1
2.39-0ubuntu8.2
3
omecproject/cdn-video-repo:1.0.0:remote-v3d59ccb138ffb
glibc@2.23-0ubuntu10
2.23-0ubuntu11.3+esm7
3
selenium/hub:3.141.5902f251d48d5f
glibc@2.31-0ubuntu9.1
2.31-0ubuntu9.16
3
xenondb/percona:5.7.330e26872a2b67
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.16
3
ghcr.io/conductionnl/gateway-ui:stag6a5594b7b32c
glibc@2.36-9
2.36-9+deb12u7
3
quay.io/devtron/argocd-cert-refresh:v102b6db27eaf3d
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.8
3
quay.io/devtron/google-chat-alert-manager:v2.0.239f2c6e0af38
glibc@2.31-0ubuntu9.7
2.31-0ubuntu9.16
3
quay.io/devtron/inception:7beef376-948-313784c3b91bebd3d
glibc@2.23-0ubuntu11.3
2.23-0ubuntu11.3+esm7
3
quay.io/devtron/k8s-utils:807ca3c2-488-14005f296c2ec5db7
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.8
3
apache/nifi-registry:1.26.07cdfd8deec92
glibc@2.35-0ubuntu3.7
2.35-0ubuntu3.8
2
apache/tika:2.9.2.1-fullae0b86d3c4d0
glibc@2.39-0ubuntu8.1
2.39-0ubuntu8.2
2
cfssl/cfssl:latest:v1.6.5c9018c2ddf0b
glibc@2.36-9+deb12u4
2.36-9+deb12u7
2
clickhouse/clickhouse-server:24.2ed9640bfff07
glibc@2.31-0ubuntu9.15
2.31-0ubuntu9.16
2
eqalpha/keydb:latest6537505c4235
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.16
2
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
glibc@2.31-0ubuntu9.12
2.31-0ubuntu9.16
2
freeradius/freeradius-server:3.0.2121c8bfa904d8
glibc@2.27-3ubuntu1
2.27-3ubuntu1.6+esm3
2
geoservercloud/geoserver-cloud-gateway:1.0-RC3756559ee788a
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.16
2
geoservercloud/geoserver-cloud-rest:1.0-RC399540eef78ad
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.16
2
geoservercloud/geoserver-cloud-wcs:1.0-RC35c254c53a357
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.16
2
geoservercloud/geoserver-cloud-webui:1.0-RC3c687b1cbc891
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.16
2
geoservercloud/geoserver-cloud-wfs:1.0-RC35288f320cf36
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.16
2
geoservercloud/geoserver-cloud-wms:1.0-RC3a30a60ac6cd0
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.16
2
gjeanmart/safe-ganache-node:latest926264c8f2d1
glibc@2.36-9
2.36-9+deb12u7
2
hjacobs/kube-downscaler:23.2.0-6-gc9b88e84b2147f47425
glibc@2.36-9
2.36-9+deb12u7
2
honestica/kube-iptables-tailer:master-91a393242fb939
glibc@2.31-0ubuntu9.7
2.31-0ubuntu9.16
2
hookiesolutions/webhookie:latest0629694246ba
glibc@2.31-0ubuntu9.2
2.31-0ubuntu9.16
2

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.