CVE-2024-34397
MediumAdvisory
Published 7 May 2024In the index since 5 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 5.2
- base score, highest
- EPSS
- 0.008
- 53rd percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 364
- of 17,787 indexed, latest versions
- Container images
- 409
- deployed by those charts
- Fix available
- 2 of 2
- affected packages
glib2.0 - security update
Carried by container images the latest versions of 364 of 17,787 indexed charts deploy, on 409 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| glib2.0deb | 2.40.2-0ubuntu1, 2.48.2-0ubuntu1, 2.48.2-0ubuntu4.1, 2.48.2-0ubuntu4.4+25 more | 2.58.3-2+deb10u6, 2.64.6-1~ubuntu20.04.7, 2.66.8-1+deb11u2, 2.72.4-0ubuntu2.3+1 more | 379 |
| glib2rpm | 2.68.4-5.el9, 2.68.4-6.el9, 2.68.4-11.el9, 2.68.4-14.el9 | 0:2.68.4-14.el9_4.1 | 30 |
- OSV records
- DEBIAN-CVE-2024-34397UBUNTU-CVE-2024-34397RHSA-2024:6464DLA-3814-1DSA-5682-1RLSA-2024:6464
- Also known as
- RHSA-2025:10780, USN-6768-1
Charts affected
364 by stars
| Chart | Latest | Affected images | Radar Score |
|---|---|---|---|
| kongwallarmVerified publisher | 4.6.3 | 1 of 7See more | 11,405 |
| apiwbstack | 0.36.0 | 1 of 1See more | 2,019 |
| mediawikiwbstack | 0.14.0 | 1 of 1See more | 2,132 |
| tool-cradlewbstack | 0.2.0 | 1 of 1See more | 1,316 |
| tool-quickstatementswbstack | 0.4.0 | 1 of 1See more | 1,698 |
| tool-widarwbstack | 0.4.0 | 1 of 1See more | 1,480 |
| wbaas-backupwbstack | 0.1.0 | 1 of 1See more | 9,743 |
| weather-chartweather-web-app | 0.1.0 | 1 of 1See more | 2,670 |
| myweatherhelmwebapp1 | 1.3.50 | 1 of 8See more | 9,130 |
| myweatherhelm-schedulingwebapp1 | 1.3.92 | 1 of 9See more | 9,130 |
| webhookiewebhookie | 0.1.2 | 1 of 1See more | 14,364 |
| webhookie-allwebhookie | 0.1.2 | 1 of 3See more | 28,605 |
| wp-gats-helmwordpress-gatsby | 0.0.1 | 1 of 3See more | 2,021 |
| enterprise-gatewayzeet | 3.2.2 | 1 of 2See more | 1,838 |
Container images carrying it
409 by charts deploying them
A fixed version is listed for 2 of the 2 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| quay.io/ | fae21f06131f | glib2.0 | 2.58.3-2+deb10u6 | 1 |
| quay.io/ | 99ccdfd543e1 | glib2.0 | 2.58.3-2+deb10u6 | 1 |
| quay.io/ | c6a934439421 | glib2.0 | no fix listed | 1 |
| quay.io/ | 59fe607dfdf2 | glib2 | 0:2.68.4-14.el9_4.1 | 1 |
| quay.io/ | 7b4202c25b67 | glib2 | 0:2.68.4-14.el9_4.1 | 1 |
| quay.io/ | 030ade9b9428 | glib2 | 0:2.68.4-14.el9_4.1 | 1 |
| quay.io/ | e0d9b93dbf2b | glib2.0 | 2.74.6-2+deb12u1 | 1 |
| registry.gitlab.com/ | f6385712935f | glib2.0 | 2.64.6-1~ubuntu20.04.7 | 1 |
| registry.gitlab.com/ | f21f19346b29 | glib2.0 | 2.58.3-2+deb10u6 | 1 |