CVE-2026-40336
LowAdvisory
Published 18 Apr 2026In the index since 8 Sept 2026
- Severity
- Low
- worst across findings
- CVSS
- 2.4
- base score, highest
- EPSS
- 0.002
- 8th percentile
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 4
- of 17,781 indexed, latest versions
- Container images
- 4
- deployed by those charts
- Fix available
- 1 of 1
- affected package
The matching OSV records carry no description.
Carried by container images the latest versions of 4 of 17,781 indexed charts deploy, on 4 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| libgphoto2deb | 2.5.30-1, 2.5.31-4build1, 2.5.33-1ubuntu1 | 2.5.33-1ubuntu1.1 | 4 |
- OSV records
- DEBIAN-CVE-2026-40336UBUNTU-CVE-2026-40336
- Also known as
- USN-8586-1
Charts affected
4 by stars
Container images carrying it
4 by charts deploying them
A fixed version is listed for 1 of the 1 affected package.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| anujdatar/ | 685df04a643b | libgphoto2 | no fix listed | 1 |
| photoprism/ | 650c6ad5a651 | libgphoto2 | 2.5.33-1ubuntu1.1 | 1 |
| photoprism/ | db16ee6b1ba3 | libgphoto2 | no fix listed | 1 |
| sbs20/ | dad1fd6e9a98 | libgphoto2 | no fix listed | 1 |