CVE-2026-19542
MediumAdvisory
Published 23 Aug 2026In the index since 5 Sept 2026
- Severity
- Medium
- worst across findings
- CVSS
- 5.6
- base score, highest
- EPSS
- 0.003
- 20th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 2,761
- of 17,813 indexed, latest versions
- Container images
- 2,831
- deployed by those charts
- Fix available
- 1 of 5
- affected packages
CVE-2026-19542 affecting package glibc 2.38-21
Carried by container images the latest versions of 2,761 of 17,813 indexed charts deploy, on 2,831 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| glibcdeb | 2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+63 more | 2.35-0ubuntu3.15, 2.39-0ubuntu8.9, 2.41-12+deb13u3+e4, 2.43-2ubuntu2.4 | 2,670 |
| glibc-2.44apk | 2.44-r1, 2.44-r4, 2.44-r5, 2.44-r6 | no fix listed | 132 |
| eglibcdeb | 2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 more | no fix listed | 7 |
| glibc-2.43apk | 2.43-r14 | no fix listed | 3 |
| glibcrpm | 2.38-16.azl3, 2.38-18.azl3, 2.38-20.azl3 | no fix listed | 19 |
- OSV records
- CGA-2r3h-47g9-hgx9CGA-38xj-w8c4-xxmqCGA-57wv-g28x-9rmqCGA-c425-c7xw-pw6pDEBIAN-CVE-2026-19542UBUNTU-CVE-2026-19542AZL-100968ECHO-4020-d607-ea47
- Also known as
- CGA-2vv5-wqpw-phh3, CGA-59c5-x25f-hh29, CGA-6mw4-h5gw-xj38, CGA-6qw5-7jm9-j8c2, CGA-6wfx-wfgf-7wrp, CGA-79gq-j3x2-jxmj, CGA-7h4h-6hfg-58w5, CGA-9m95-c5q8-cjxh, CGA-c8qw-p3qf-h2x7, CGA-fcwv-v8r6-pj2w, CGA-jxxv-q239-r47q, CGA-m5rq-xw3m-hvm8, CGA-mjjq-2jmj-j6f2, CGA-q6r5-wrc6-fj7p, CGA-vr5c-x2c2-g568, CGA-w4w3-pjj7-8g4h, CGA-wq6h-25qr-mxm6, CGA-xv9v-762f-jr2v, USN-8737-1, USN-8737-2
Charts affected
2,761 by stars
| Chart | Latest | Affected images | Radar Score |
|---|---|---|---|
| pgcatxxl-job-adminVerified publisher | 0.3.3 | 1 of 1See more | 3,196 |
| nginx-chartxxoznge-nginx | 0.1.0 | 1 of 1See more | 1,956 |
| helm-demoyahoon-helm-demoVerified publisher | 1.0.0 | 1 of 1See more | 1,338 |
| my-nginx-appyasser-nginx-app | 0.1.0 | 1 of 1See more | 1,956 |
| api-snapyoukadevVerified publisher | 0.1.1 | 1 of 1See more | 2,718 |
| zahori-schedulerzahoriVerified publisher | 1.0.1 | 1 of 1See more | 2,485 |
| changedetection-iozekker6Verified publisher | 1.102.0 | 1 of 1See more | 2,697 |
| endlessh-gozekker6Verified publisher | 0.4.0 | 1 of 1See more | 493 |
| NEW_APPzekker6Verified publisher | 0.0.0 | 1 of 1See more | 1,956 |
| clickhousezloi-space | 1.2.0 | 2 of 3See more | 9,296 |
| zoo-project-druzoo-projectOfficialVerified publisher | 0.10.4 | 1 of 6See more | 7,966 |
Container images carrying it
2,831 by charts deploying them
A fixed version is listed for 1 of the 5 affected packages.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| josh5/ | 4d49c4816260 | glibc | 2.35-0ubuntu3.15 | 1 |
| journeyapps/ | 413a0c813e96 | glibc | no fix listed | 1 |
| jpgouin/ | bfdd0088c776 | glibc | no fix listed | 1 |
| jupyterhub/ | 3974ba945e65 | glibc | 2.39-0ubuntu8.9 | 1 |
| jupyterhub/ | b6b4a1a34bf0 | glibc | no fix listed | 1 |
| jupyterhub/ | e4770285aaf7 | glibc | no fix listed | 1 |
| jupyterhub/ | ec78bdae0fed | glibc | no fix listed | 1 |
| jupyterhub/ | e3e6f3051df8 | glibc | no fix listed | 1 |
| kafkace/ | 7adc206bf5a4 | glibc | 2.39-0ubuntu8.9 | 1 |
| kafkakraft/ | 062d697db7e5 | glibc | 2.35-0ubuntu3.15 | 1 |
| kafkakraft/ | f261ad288fce | glibc | 2.35-0ubuntu3.15 | 1 |
| kafkakraft/ | 2e4b593b878b | glibc | 2.35-0ubuntu3.15 | 1 |
| kayrosuno/ | f3bd44b29b0d | glibc | 2.39-0ubuntu8.9 | 1 |
| kennethreitz/ | 599fe5e50731 | glibc | no fix listed | 1 |
| kfirfer/ | 2efb4a5d74a3 | glibc | no fix listed | 1 |
| kimai/ | 3084f1e5ecdc | glibc | no fix listed | 1 |
| kinseii/ | 7160eb143728 | glibc | no fix listed | 1 |
| kitware/ | d7767d9b9da4 | glibc | no fix listed | 1 |
| kixote/ | 4e9dff179519 | glibc | no fix listed | 1 |
| kixote/ | 628f79a08cc7 | glibc | no fix listed | 1 |
| knspar/ | 09499d2dc91a | glibc | 2.39-0ubuntu8.9 | 1 |
| knspar/ | 0c4f0543ee58 | glibc | no fix listed | 1 |
| kong/ | a6ac46531193 | glibc | 2.35-0ubuntu3.15 | 1 |
| kong/ | 6addf50e6bd8 | glibc | 2.39-0ubuntu8.9 | 1 |
| kong/ | 367ed5985b76 | glibc | 2.39-0ubuntu8.9 | 1 |
| kong/ | 8191df5c7019 | glibc | no fix listed | 1 |
| krontechnology/ | 1cc7d5be6529 | glibc | 2.35-0ubuntu3.15 | 1 |
| krontechnology/ | 7feef7d2ab42 | glibc | no fix listed | 1 |
| krontechnology/ | 9dd602db8baa | glibc | 2.35-0ubuntu3.15 | 1 |
| kserve/ | 73486345a602 | glibc | no fix listed | 1 |
| kubeflownotebookswg/ | afb52057c997 | glibc | no fix listed | 1 |
| kubeflownotebookswg/ | 2060a2ede788 | glibc | no fix listed | 1 |
| kubeflownotebookswg/ | 0f14bd28fdd5 | glibc | no fix listed | 1 |
| kubeflownotebookswg/ | f05a5538ae7e | glibc | no fix listed | 1 |
| kubeflownotebookswg/ | 77f07f52a84a | glibc | no fix listed | 1 |
| kubeflownotebookswg/ | f63c3e550af3 | glibc | no fix listed | 1 |
| kubegems/ | 870ee3a77add | glibc | no fix listed | 1 |
| kubeoperator/ | be8f0d624640 | glibc | no fix listed | 1 |
| kubeovn/ | 6722b54eb5c0 | glibc | 2.39-0ubuntu8.9 | 1 |
| kubeshop/ | d48b172d99d8 | glibc | 2.39-0ubuntu8.9 | 1 |
| kubeshop/ | d8e1af6aca99 | glibc | no fix listed | 1 |
| kubesphere/ | 6d93129beb32 | glibc | no fix listed | 1 |
| kudobuilder/ | 69072d979708 | glibc | no fix listed | 1 |
| kusionstack/ | 65e3c32b64d7 | glibc | no fix listed | 1 |
| kusionstack/ | 126c8f0b0976 | glibc | 2.35-0ubuntu3.15 | 1 |
| kuzwolka/ | 1ad759b961b1 | glibc | no fix listed | 1 |
| kuzwolka/ | 3e8880fbbb96 | glibc | no fix listed | 1 |
| kuzwolka/ | 4a7707410bf1 | glibc | no fix listed | 1 |
| kuzwolka/ | 84a9d9766345 | glibc | no fix listed | 1 |
| kvalitetsit/ | f0af0ba589af | glibc | 2.35-0ubuntu3.15 | 1 |