CVE-2026-19542
MediumAdvisory
Published 23 Aug 2026In the index since 5 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 5.6
- base score, highest
- EPSS
- 0.003
- 20th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 2,766
- of 17,821 indexed, latest versions
- Container images
- 2,845
- deployed by those charts
- Fix available
- 1 of 5
- affected packages
CVE-2026-19542 affecting package glibc 2.38-21
Carried by container images the latest versions of 2,766 of 17,821 indexed charts deploy, on 2,845 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| glibcdeb | 2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+63 more | 2.35-0ubuntu3.15, 2.39-0ubuntu8.9, 2.41-12+deb13u3+e4, 2.43-2ubuntu2.4 | 2,687 |
| glibc-2.44apk | 2.44-r1, 2.44-r4, 2.44-r5, 2.44-r6 | no fix listed | 136 |
| eglibcdeb | 2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 more | no fix listed | 7 |
| glibc-2.43apk | 2.43-r14 | no fix listed | 1 |
| glibcrpm | 2.38-16.azl3, 2.38-18.azl3, 2.38-20.azl3 | no fix listed | 14 |
- OSV records
- CGA-2r3h-47g9-hgx9CGA-57wv-g28x-9rmqCGA-c425-c7xw-pw6pDEBIAN-CVE-2026-19542UBUNTU-CVE-2026-19542AZL-100968ECHO-4020-d607-ea47
- Also known as
- CGA-2vv5-wqpw-phh3, CGA-6mw4-h5gw-xj38, CGA-6qw5-7jm9-j8c2, CGA-6wfx-wfgf-7wrp, CGA-79gq-j3x2-jxmj, CGA-7h4h-6hfg-58w5, CGA-9m95-c5q8-cjxh, CGA-c8qw-p3qf-h2x7, CGA-fcwv-v8r6-pj2w, CGA-jxxv-q239-r47q, CGA-m5rq-xw3m-hvm8, CGA-mjjq-2jmj-j6f2, CGA-q6r5-wrc6-fj7p, CGA-vr5c-x2c2-g568, CGA-w4w3-pjj7-8g4h, CGA-wq6h-25qr-mxm6, CGA-xv9v-762f-jr2v, USN-8737-1, USN-8737-2
Charts affected
2,766 by stars
| Chart | Latest | Affected images | Radar Score |
|---|---|---|---|
| xkopsxkops | 0.1.0 | 4 of 5See more | 13,925 |
| xlinexline | 0.0.1 | 1 of 1See more | 2,166 |
| cloudeye-exporterxxl-job-adminVerified publisher | 0.1.2 | 1 of 1See more | 2,698 |
| dingtalk-botxxl-job-adminVerified publisher | 0.1.2 | 1 of 2See more | 3,186 |
| nightingalexxl-job-adminVerified publisher | 0.2.11 | 3 of 6See more | 9,743 |
| pgcatxxl-job-adminVerified publisher | 0.3.3 | 1 of 1See more | 3,197 |
| nginx-chartxxoznge-nginx | 0.1.0 | 1 of 1See more | 1,887 |
| helm-demoyahoon-helm-demoVerified publisher | 1.0.0 | 1 of 1See more | 1,257 |
| my-nginx-appyasser-nginx-app | 0.1.0 | 1 of 1See more | 1,887 |
| api-snapyoukadevVerified publisher | 0.1.1 | 1 of 1See more | 2,638 |
| zahori-schedulerzahoriVerified publisher | 1.0.1 | 1 of 1See more | 2,485 |
| changedetection-iozekker6Verified publisher | 1.102.0 | 1 of 1See more | 2,710 |
| endlessh-gozekker6Verified publisher | 0.4.0 | 1 of 1See more | 411 |
| NEW_APPzekker6Verified publisher | 0.0.0 | 1 of 1See more | 1,593 |
| clickhousezloi-space | 1.2.0 | 2 of 3See more | 9,297 |
| zoo-project-druzoo-projectOfficialVerified publisher | 0.10.4 | 1 of 6See more | 7,966 |
Container images carrying it
2,845 by charts deploying them
A fixed version is listed for 1 of the 5 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| geoservercloud/ | 5164f687ce4d | glibc | 2.43-2ubuntu2.4 | 1 |
| gethue/ | 11b649636e68 | glibc | no fix listed | 1 |
| gethue/ | 5702b2c37ff9 | glibc | no fix listed | 1 |
| gethue/ | 7d5c1b9f8a79 | glibc | 2.35-0ubuntu3.15 | 1 |
| getsentry/ | ba7bf9163219 | glibc | no fix listed | 1 |
| ghostfolio/ | e3c6ab53e49b | glibc | no fix listed | 1 |
| ghusta/ | 879d0919fdcc | glibc | no fix listed | 1 |
| gitlab/ | 860d4a3fec7a | glibc | no fix listed | 1 |
| glasskube/ | be5133100d63 | glibc | 2.35-0ubuntu3.15 | 1 |
| glpi/ | 7b50172cdb7d | glibc | no fix listed | 1 |
| gobitfly/ | 1d08a7986348 | glibc | 2.35-0ubuntu3.15 | 1 |
| golenski/ | c863dcb0c513 | glibc | no fix listed | 1 |
| golenski/ | 3a2b36df247b | glibc | no fix listed | 1 |
| golenski/ | 954caf4aaf6a | glibc | no fix listed | 1 |
| gopaddle/ | 435359250b63 | glibc | 2.35-0ubuntu3.15 | 1 |
| gopinatht/ | 632cb2e9c399 | glibc | no fix listed | 1 |
| gorules/ | 3cd59e25efad | glibc | no fix listed | 1 |
| gotenberg/ | 0d28ae9a9644 | glibc | no fix listed | 1 |
| gotenberg/ | 206a6c708fc6 | glibc | no fix listed | 1 |
| gotenberg/ | 67097317623a | glibc | no fix listed | 1 |
| gotenberg/ | cf0b9a7ca3cf | glibc | no fix listed | 1 |
| gotson/ | 9b15ea6bfc30 | glibc | no fix listed | 1 |
| gradiant/ | 332031245fce | glibc | 2.39-0ubuntu8.9 | 1 |
| grafana/ | 3364714a2f64 | glibc | 2.39-0ubuntu8.9 | 1 |
| grafana/ | 01a63f4e032c | glibc | 2.39-0ubuntu8.9 | 1 |
| grafana/ | 06bdcbb51fc2 | glibc | 2.39-0ubuntu8.9 | 1 |
| grafana/ | 0f4434c92b3e | glibc | 2.39-0ubuntu8.9 | 1 |
| grafana/ | 491b0578c049 | glibc | 2.39-0ubuntu8.9 | 1 |
| grafana/ | 84b76d56c594 | glibc | 2.39-0ubuntu8.9 | 1 |
| grafana/ | 8c7256f412fe | glibc | 2.39-0ubuntu8.9 | 1 |
| grafana/ | b8ec653c4423 | glibc | 2.39-0ubuntu8.9 | 1 |
| grafana/ | f50931848bd8 | glibc | 2.39-0ubuntu8.9 | 1 |
| grafana/ | 36d07f8d276e | glibc | no fix listed | 1 |
| grafana/ | 4f0438bdebb5 | glibc | no fix listed | 1 |
| grafana/ | 882e30c20683 | glibc | no fix listed | 1 |
| grafana/ | 49e03f80d361 | glibc | no fix listed | 1 |
| grafana/ | 07c6614a8f8b | glibc | no fix listed | 1 |
| grafana/ | 42f541f22063 | glibc | no fix listed | 1 |
| grafana/ | 65bfae480b57 | glibc | 2.39-0ubuntu8.9 | 1 |
| grafana/ | 8dcfdf466da0 | glibc | 2.39-0ubuntu8.9 | 1 |
| graphprotocol/ | b0436347fb24 | glibc | no fix listed | 1 |
| graphprotocol/ | f4452cdedd68 | glibc | no fix listed | 1 |
| graylog/ | 19de1aff48c2 | glibc | 2.35-0ubuntu3.15 | 1 |
| graylog/ | 598bd41fefd5 | glibc | 2.39-0ubuntu8.9 | 1 |
| graylog/ | 8a1f641cd7aa | glibc | 2.39-0ubuntu8.9 | 1 |
| greenkube/ | 0c01932282a4 | glibc | no fix listed | 1 |
| gremlin/ | 298100e062b8 | glibc-2.44 | no fix listed | 1 |
| growthbook/ | cbf1bc59e9a9 | glibc | no fix listed | 1 |
| growthbook/ | f53ead646b5f | glibc | no fix listed | 1 |
| grpl/ | c00aafee6629 | glibc | 2.39-0ubuntu8.9 | 1 |