StackRadar

CVE-2026-27456

Medium

Advisory

Published 3 Apr 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
4.7
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,170
of 17,821 indexed, latest versions
Container images
2,340
deployed by those charts
Fix available
3 of 3
affected packages

libblkid-devel-2.42-1.1 on GA media

Carried by container images the latest versions of 2,170 of 17,821 indexed charts deploy, on 2,340 images.

Affected packageAffected versionsFixed inImages
util-linuxdeb1:2.27.1-6ubuntu3.3, 1:2.38.1-5+deb12u1, 1:4.16.0-2+really2.41-5, 2.20.1-5.1ubuntu20.2+44 more2.37.2-4ubuntu3.6, 2.39.3-9ubuntu6.6, 2.41.3-3ubuntu2.2, 2.41.5-0+deb13u1+1 more2,221
util-linuxapk2.41-r9, 2.41.2-r02.41.4-r0, 2.41.6-r0105
util-linuxrpm2.33.1-lp151.3.3.2, 2.33.1-lp152.5.3.1, 2.40.4-150700.2.4, 2.40.4-150700.4.10.1+2 more2.40.4-150700.4.13.1, 2.41.1-160000.4.1, 2.42-1.114
OSV records
ALPINE-CVE-2026-27456DEBIAN-CVE-2026-27456UBUNTU-CVE-2026-27456ECHO-a95f-c9f9-a568openSUSE-SU-2026:10736-1SUSE-SU-2026:22332-1SUSE-SU-2026:2485-1
Also known as
USN-8702-1

Charts affected

2,170 by stars
ChartLatestAffected imagesRadar Score
readarrgeek-cookbookVerified publisher6.4.21 of 1See more

readarr geek-cookbook 6.4.2

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/readarr:v0.1.0.715ad943e9309e4
util-linux@2.34-0.1ubuntu9.1
no fix listed

Open the chart page →

7,831
resilio-syncgeek-cookbookVerified publisher5.4.21 of 1See more

resilio-sync geek-cookbook 5.4.2

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/resilio-sync:version-2.7.2.1375605b6d544028
util-linux@2.31.1-0.4ubuntu3.7
no fix listed

Open the chart page →

5,922
satisfactorygeek-cookbookVerified publisher1.2.21 of 1See more

satisfactory geek-cookbook 1.2.2

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
wolveix/satisfactory-server:lateste103700ae6ae
util-linux@2.37.2-4ubuntu3.4
2.37.2-4ubuntu3.6

Open the chart page →

3,490
sdtdgeek-cookbookVerified publisher0.3.21 of 1See more

sdtd geek-cookbook 0.3.2

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
ghcr.io/reitermarkus/7d2d:main39953b387b61
util-linux@2.41-5
2.41.5-0+deb13u1

Open the chart page →

2,560
seafilegeek-cookbookVerified publisher3.2.01 of 1See more

seafile geek-cookbook 3.2.0

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
seafileltd/seafile-mc:8.0.7ed0fcda5e6a9
util-linux@2.34-0.1ubuntu9.1
no fix listed

Open the chart page →

100,981
skypilotgeek-cookbookVerified publisher0.0.11 of 3See more

skypilot geek-cookbook 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
berkeleyskypilot/skypilot-nightly:latest8da2f3cda472
util-linux@2.41-5
2.41.5-0+deb13u1

Open the chart page →

9,103
teedygeek-cookbookVerified publisher6.2.01 of 1See more

teedy geek-cookbook 6.2.0

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
sismics/docs:v1.10f4b0ef019cf1
util-linux@2.30.2-0.1ubuntu2
no fix listed

Open the chart page →

27,078
transmissiongeek-cookbookVerified publisher8.4.31 of 1See more

transmission geek-cookbook 8.4.3

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/transmission:v3.006011182e3946
util-linux@2.34-0.1ubuntu9.3
no fix listed

Open the chart page →

12,101
xtevegeek-cookbookVerified publisher8.4.21 of 1See more

xteve geek-cookbook 8.4.2

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
ghcr.io/k8s-at-home/xteve:v2.2.0.200292b3614670f
util-linux@2.34-0.1ubuntu9.3
no fix listed

Open the chart page →

18,150
chproxygeneral-helm-chartsVerified publisher0.0.21 of 1See more

chproxy general-helm-charts 0.0.2

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
contentsquareplatform/chproxy:v1.26.524555f22d4be
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

3,766
dispatchoor-uigeneral-helm-chartsVerified publisher0.1.01 of 1See more

dispatchoor-ui general-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
ghcr.io/ethpandaops/dispatchoor-web:latest18e30413dac2
util-linux@2.41.2-r0
2.41.4-r0

Open the chart page →

1,336
mongogengxiankun-charts0.1.01 of 1See more

mongo gengxiankun-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
library/mongo:5.041108d183e97
util-linux@2.34-0.1ubuntu9.6
no fix listed

Open the chart page →

4,029
rocketmqgengxiankun-charts0.3.01 of 1See more

rocketmq gengxiankun-charts 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
apache/rocketmq:5.3.0434d8398f996
util-linux@2.39.3-9ubuntu6
2.39.3-9ubuntu6.6

Open the chart page →

4,981
genieacsgenieacsVerified publisher0.5.11 of 2See more

genieacs genieacs 0.5.1

1 of the 2 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
drumsergio/genieacs:1.2.16.028244054e1bf
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

4,725
geonetwork-k8sgeonetwork-k8sVerified publisher4.2.84 of 5See more

geonetwork-k8s geonetwork-k8s 4.2.8

4 of the 5 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
geonetwork/gn-cloud-ogc-api-records-service:4.2.8-020c9bb761f67
util-linux@2.31.1-0.4ubuntu3.7
no fix listed
jingking/geonetwork-hnap:4.2.843e74ab234e1
util-linux@2.34-0.1ubuntu9.4
no fix listed
library/elasticsearch:7.17.1588c2ec10c7f2
util-linux@2.34-0.1ubuntu9.4
no fix listed
library/kibana:7.17.150172f1c538e7
util-linux@2.34-0.1ubuntu9.4
no fix listed

Open the chart page →

35,011
istiogetindataVerified publisher1.11.12 of 2See more

istio getindata 1.11.1

2 of the 2 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
gcr.io/istio-release/pilot:1.11.1c552478f8f11
util-linux@2.34-0.1ubuntu9.1
no fix listed
gcr.io/istio-release/proxyv2:1.11.19538fabe49fd
util-linux@2.34-0.1ubuntu9.1
no fix listed

Open the chart page →

16,896
ghostghostVerified publisher0.1.01 of 4See more

ghost ghost 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
library/ghost:5.79.083f7bf209844
util-linux@2.38.1-5+b1
no fix listed

Open the chart page →

9,148
qryn-helmgigapipeVerified publisher0.1.91 of 1See more

qryn-helm gigapipe 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
qxip/qryn:3.2.3977acc9c7a9fd
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

3,032
redis-uigin0.0.11 of 1See more

redis-ui gin 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
patrikx3/p3x-redis-ui:latestf19eb45b0694
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

1,109
rabbitmqginger-society0.1.01 of 2See more

rabbitmq ginger-society 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
library/rabbitmq:4-managementffd1b50c522a
util-linux@2.39.3-9ubuntu6.5
2.39.3-9ubuntu6.6

Open the chart page →

1,537
knativegitlabVerified publisher0.10.03 of 10See more

knative gitlab 0.10.0

3 of the 10 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
istio/node-agent-k8s:1.2.9268ab879ea51
util-linux@2.27.1-6ubuntu3.7
no fix listed
istio/pilot:1.2.9c09319753454
util-linux@2.27.1-6ubuntu3.7
no fix listed
istio/proxyv2:1.2.90c78be035e98
util-linux@2.27.1-6ubuntu3.7
no fix listed

Open the chart page →

206,860
glassflow-etlglassflowVerified publisher0.5.211 of 16See more

glassflow-etl glassflow 0.5.21

1 of the 16 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
ghcr.io/glassflow/glassflow-notifier:v1.0.3d1b0ce10b513
util-linux@2.41-5
2.41.5-0+deb13u1

Open the chart page →

12,441
pgbouncerglassflowVerified publisher0.1.01 of 1See more

pgbouncer glassflow 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
bitnamilegacy/pgbouncer:1.23.192356da09704
util-linux@2.38.1-5+deb12u2
no fix listed

Open the chart page →

3,331
glpiglpi-chart0.1.12 of 3See more

glpi glpi-chart 0.1.1

2 of the 3 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
library/mariadb:latestdd9b303aed4f
util-linux@2.39.3-9ubuntu6.5
2.39.3-9ubuntu6.6
vdiogov/glpi-conteiner:latest6945f84f0058
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

12,501
gnp-stackgnp-stack0.0.51 of 14See more

gnp-stack gnp-stack 0.0.5

1 of the 14 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:1.30.10835d79d8fbae
util-linux@2.41-r9
2.41.6-r0

Open the chart page →

7,727
platformgoofy-chart0.1.01 of 1See more

platform goofy-chart 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
devopsgoofy/k8s-platform:latestad865312099f
util-linux@2.38.1-5+deb12u2
no fix listed

Open the chart page →

2,841
Governify-Bluejaygovernify0.1.01 of 12See more

Governify-Bluejay governify 0.1.0

1 of the 12 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
util-linux@2.39.3-9ubuntu6.5
2.39.3-9ubuntu6.6

Open the chart page →

22,729
Governify-Falcongovernify0.1.01 of 10See more

Governify-Falcon governify 0.1.0

1 of the 10 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
library/mongo:latest5211c51171f5
util-linux@2.39.3-9ubuntu6.5
2.39.3-9ubuntu6.6

Open the chart page →

24,514
jaegergpg-dev3.3.32 of 5See more

jaeger gpg-dev 3.3.3

2 of the 5 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
jaegertracing/jaeger-cassandra-schema:1.53.0d48d6dab2c65
util-linux@2.37.2-4ubuntu3
2.37.2-4ubuntu3.6
library/cassandra:3.11.65aa8400b4b3b
util-linux@2.31.1-0.4ubuntu3.6
no fix listed

Open the chart page →

19,388
kube-prometheus-stackgpg-dev84.0.01 of 6See more

kube-prometheus-stack gpg-dev 84.0.0

1 of the 6 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.6.0a6c101156d42
util-linux@2.41.2-r0
2.41.4-r0

Open the chart page →

4,334
kubernetes-dashboardgpg-dev7.5.01 of 5See more

kubernetes-dashboard gpg-dev 7.5.0

1 of the 5 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
library/kong:3.6a42d2b4503e7
util-linux@2.37.2-4ubuntu3.4
2.37.2-4ubuntu3.6

Open the chart page →

6,104
openclawgpg-dev1.5.361 of 2See more

openclaw gpg-dev 1.5.36

1 of the 2 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
chromedp/headless-shell:148.0.7778.97313ed7255ae1
util-linux@2.41-5
2.41.5-0+deb13u1

Open the chart page →

1,692
opentelemetry-demogpg-dev0.33.89 of 27See more

opentelemetry-demo gpg-dev 0.33.8

9 of the 27 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
ghcr.io/open-telemetry/demo:1.12.0-imageprovider4e322858fe56
util-linux@2.38.1-5+deb12u1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-accountingservice6d051840bb29
util-linux@2.38.1-5+deb12u1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-loadgenerator85c9935ff31b
util-linux@2.38.1-5+deb12u1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-quoteservice87eb325d306f
util-linux@2.38.1-5+deb12u1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-frontendproxy9fdec1be03e4
util-linux@2.37.2-4ubuntu3.4
2.37.2-4ubuntu3.6
ghcr.io/open-telemetry/demo:1.12.0-emailservicea1f5cebb5240
util-linux@2.38.1-5+b1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-shippingservicea3ca4c02a5df
util-linux@2.38.1-5+deb12u1
no fix listed
ghcr.io/open-telemetry/demo:1.12.0-adservicea59e5eead495
util-linux@2.39.3-9ubuntu6.1
2.39.3-9ubuntu6.6
ghcr.io/open-telemetry/demo:1.12.0-recommendationserviceb294a4278407
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

50,054
video-analytics-demogpu-operator0.1.91 of 3See more

video-analytics-demo gpu-operator 0.1.9

1 of the 3 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
anguda/ant-media:2.5c435285fc241
util-linux@2.34-0.1ubuntu9.3
no fix listed

Open the chart page →

15,948
grafana-samplinggrafana1.1.71 of 2See more

grafana-sampling grafana 1.1.7

1 of the 2 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
grafana/alloy:v1.11.38c7256f412fe
util-linux@2.39.3-9ubuntu6.3
2.39.3-9ubuntu6.6

Open the chart page →

3,412
grapple-installergrapple-installer0.3.221 of 1See more

grapple-installer grapple-installer 0.3.22

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
grpl/grapple-cli:0.2.127c00aafee6629
util-linux@2.39.3-9ubuntu6
2.39.3-9ubuntu6.6

Open the chart page →

83,510
gravitino-iceberg-rest-server-helmgravitino-iceberg-rest-server1.3.111 of 1See more

gravitino-iceberg-rest-server-helm gravitino-iceberg-rest-server 1.3.11

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
apache/gravitino-iceberg-rest:1.3.080136ae753ee
util-linux@2.37.2-4ubuntu3.4
2.37.2-4ubuntu3.6

Open the chart page →

4,705
grayloggraylogVerified publisher1.0.21 of 4See more

graylog graylog 1.0.2

1 of the 4 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
graylog/graylog:6.1.1019de1aff48c2
util-linux@2.37.2-4ubuntu3.4
2.37.2-4ubuntu3.6

Open the chart page →

5,411
gridgain9gridgainVerified publisher1.1.101 of 2See more

gridgain9 gridgain 1.1.10

1 of the 2 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
library/debian:12.12-slimd5d3f9c23164
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

3,285
routergroundcover1.12.3783See more

router groundcover 1.12.378

3 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
util-linux@2.37.2-4ubuntu3.4
2.37.2-4ubuntu3.6
public.ecr.aws/groundcovercom/postgres:18.1-20260208b7d7910c0bb0
util-linux@2.41-5+e6
2.41.5-0+deb13u1+e1
quay.io/groundcover/tools:20260719b705e0cbe171
util-linux@2.41-5+e11
2.41.5-0+deb13u1+e1

Open the chart page →

temporalgroundcover1.12.3781See more

temporal groundcover 1.12.378

1 container image this version deploys carries CVE-2026-27456.

Container imageDigestPackageFixed in
public.ecr.aws/groundcovercom/temporalio/admin-tools:1.29.7-20260730-1af8cea3b8538
util-linux@2.41-5+e11
2.41.5-0+deb13u1+e1

Open the chart page →

librechat-exporterhajowielandVerified publisher1.0.01 of 1See more

librechat-exporter hajowieland 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
ghcr.io/virtuos/librechat_exporter:2.0.050ea1cf0086f
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

2,335
rag-apihajowielandVerified publisher1.0.01 of 1See more

rag-api hajowieland 1.0.0

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
ghcr.io/danny-avila/librechat-rag-api-dev-lite:latestf9f34c8ed688
util-linux@2.41-5
2.41.5-0+deb13u1

Open the chart page →

1,755
web-checkhajowielandVerified publisher1.0.11 of 1See more

web-check hajowieland 1.0.1

1 of the 1 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
ghcr.io/lissy93/web-check:latesta4e021c0f6a9
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

9,725
hatchet-hahatchetOfficialVerified publisher0.19.02 of 8See more

hatchet-ha hatchet 0.19.0

2 of the 8 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
util-linux@2.38.1-5+deb12u3
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

7,686
hatchet-stackhatchetOfficialVerified publisher0.19.02 of 8See more

hatchet-stack hatchet 0.19.0

2 of the 8 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
util-linux@2.38.1-5+deb12u3
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

7,686
hawk-envoy-pluginhawk0.1.01 of 4See more

hawk-envoy-plugin hawk 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
kong/httpbin:latesta6ac46531193
util-linux@2.37.2-4ubuntu3.4
2.37.2-4ubuntu3.6

Open the chart page →

66,018
hdx-oss-v2hdx-oss-v20.8.41 of 5See more

hdx-oss-v2 hdx-oss-v2 0.8.4

1 of the 5 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
library/mongo:5.0.14-focal50cae5081ab4
util-linux@2.34-0.1ubuntu9.3
no fix listed

Open the chart page →

6,772
heliconehelicone0.1.423 of 14See more

helicone helicone 0.1.42

3 of the 14 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
clickhouse/clickhouse-server:23.4.2.11dc5658853ce1
util-linux@2.37.2-4ubuntu3
2.37.2-4ubuntu3.6
helicone/clickhouse-migration-runner:v2025.03.05-14c69b971a7e4
util-linux@2.34-0.1ubuntu9.6
no fix listed
helicone/supabase-migration-runner:v2025.03.05-14a913936c97b
util-linux@2.38.1-5+b1
no fix listed

Open the chart page →

77,057
helixhelix1.4.31 of 2See more

helix helix 1.4.3

1 of the 2 container images this version deploys carry CVE-2026-27456.

Container imageDigestPackageFixed in
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

5,782

Container images carrying it

2,340 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

No deployed image carries CVE-2026-27456.

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.