StackRadar

CVE-2026-41992

High

Advisory

Published 29 Jun 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.004
35th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,245
of 17,803 indexed, latest versions
Container images
2,198
deployed by those charts
Fix available
3 of 3
affected packages

Security update for gzip

Carried by container images the latest versions of 2,245 of 17,803 indexed charts deploy, on 2,198 images.

Affected packageAffected versionsFixed inImages
gzipdeb1.6-3ubuntu1, 1.6-4ubuntu1, 1.6-5ubuntu1, 1.6-5ubuntu1.1+11 more1.6-4ubuntu1+esm2, 1.10-4ubuntu4.2, 1.12-1ubuntu3.2, 1.13-1+deb13u1+2 more2,189
gzipapk1.13-r0, 1.14-r21.13-r1, 1.14-r33
gziprpm1.10-150200.10.11.10-150200.16.16
OSV records
ALPINE-CVE-2026-41992DEBIAN-CVE-2026-41992UBUNTU-CVE-2026-41992ECHO-fad9-e6ab-e1e3SUSE-SU-2026:3592-1
Also known as
USN-8512-1, USN-8733-1

Charts affected

2,245 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

2,198 by charts deploying them

A fixed version is listed for 3 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
moreillon/camera-viewer:lateste418cc694bd5
gzip@1.12-1
no fix listed
1
moreillon/food-manager:lateste8fd856e593d
gzip@1.12-1
no fix listed
1
moreillon/group-manager:latest3caa8f710ee0
gzip@1.12-1
no fix listed
1
moreillon/group-manager-front:latest5f0a38498271
gzip@1.13-1
1.13-1+deb13u1
1
moreillon/user-manager-front:v5.1.06597e6b98d21
gzip@1.12-1
no fix listed
1
moreillon/user-manager-mongoose:v5.0.1d2ee0423b797
gzip@1.12-1
no fix listed
1
mshanley80/httpbin2022:latest5b189a70c0fb
gzip@1.10-0ubuntu4.1
no fix listed
1
muhammedgamal/fp23:latest74b4cd69b6fa
gzip@1.12-1
no fix listed
1
muluder/prograncontrollermcord:0.1.843b597a93da7
gzip@1.6-4ubuntu1
1.6-4ubuntu1+esm2
1
murtazashah46/helmfile:latest4d11726cf803
gzip@1.12-1
no fix listed
1
mvance/unbound:1.20.04bf67b567f39
gzip@1.12-1
no fix listed
1
mvance/unbound:1.22.076906da36d18
gzip@1.12-1
no fix listed
1
n3uronhub/n3uron:v1.22.4423a0bdd9cb9
gzip@1.13-1
1.13-1+deb13u1
1
ncsa/checks:main0b738bbc8d70
gzip@1.13-1
1.13-1+deb13u1
1
nelssec/qualys-agent-bootstrapper:v2.1.05e471f0cdeaa
gzip@1.10-4ubuntu4.1
1.10-4ubuntu4.2
1
netbirdio/management:0.45.10c9994b393ea
gzip@1.12-1ubuntu3
1.12-1ubuntu3.2
1
netbirdio/management:0.60.252682e5f48f9
gzip@1.12-1ubuntu3.1
1.12-1ubuntu3.2
1
netbirdio/management:0.46.0b0adc4ad4ec6
gzip@1.12-1ubuntu3
1.12-1ubuntu3.2
1
netboxcommunity/netbox:v3.2.83d652dca5351
gzip@1.10-4ubuntu4
1.10-4ubuntu4.2
1
nethermind/nethermind:1.14.615517708c3b6
gzip@1.10-4ubuntu4.1
1.10-4ubuntu4.2
1
nethermind/nethermind:1.31.893e57917371a
gzip@1.12-1ubuntu3
1.12-1ubuntu3.2
1
nethermind/nethermind:1.31.9aeca3b55bda5
gzip@1.12-1ubuntu3
1.12-1ubuntu3.2
1
netrisai/bare-metal-dpu-agent:4.7.0.003c271efe749d0
gzip@1.12-1ubuntu3.1
1.12-1ubuntu3.2
1
netrisai/controller-grpc:4.6.0.00753178bf173c2
gzip@1.10-0ubuntu4.1
no fix listed
1
netrisai/controller-telescope:4.6.0.00414d82948a8b2
gzip@1.10-0ubuntu4.1
no fix listed
1
netrisai/controller-telescope-notifier:3.0.455e826ef9a5d
gzip@1.10-0ubuntu4.1
no fix listed
1
netrisai/controller-web-session-generator:0.2.0a030a31289f4
gzip@1.10-0ubuntu4.1
no fix listed
1
networkboot/dhcpd:lateste99bbfbd6fb2
gzip@1.10-4ubuntu4
1.10-4ubuntu4.2
1
networkstatic/iperf3:latest0592f012c636
gzip@1.13-1
1.13-1+deb13u1
1
networktocode/nautobot:3.0-py3.13ed484336b1ad
gzip@1.13-1
1.13-1+deb13u1
1
newrelic/newrelic-agent-control-cli:0.48.01a448492b55a
gzip@1.13-1
1.13-1+deb13u1
1
newrelic/newrelic-agent-control-cli:1.24.047520b65d6b2
gzip@1.13-1
1.13-1+deb13u1
1
ngick8stesting/c3po-mme:mwca-mme-debug8dd6dea45be4
gzip@1.6-4ubuntu1
1.6-4ubuntu1+esm2
1
nginxinc/nginx-unprivileged:latest4210a3296e7c
gzip@1.13-1
1.13-1+deb13u1
1
nginxinc/nginx-unprivileged:1.29.5c5b989ebc150
gzip@1.13-1
1.13-1+deb13u1
1
nginx/nginx-ingress:edge520d439f9a9a
gzip@1.13-1
1.13-1+deb13u1
1
nirmalnaveen/supermario:latest8541a39162f3
gzip@1.12-1
no fix listed
1
nouchka/sqlite3:latestd183308f201c
gzip@1.13-1
1.13-1+deb13u1
1
nousresearch/hermes-agent:v2026.8.27e0df6adebddf
gzip@1.13-1
1.13-1+deb13u1
1
nvidia/dcgm-exporter:2.2.9-2.4.1-ubuntu20.0491b20b66d1cd
gzip@1.10-0ubuntu4
no fix listed
1
nvidia/k8s-device-plugin:v0.9.0964847cc3fd8
gzip@1.6-4ubuntu1
1.6-4ubuntu1+esm2
1
obolnetwork/helios:e10e753cb7e97d39d46
gzip@1.12-1ubuntu3
1.12-1ubuntu3.2
1
offchainlabs/nitro-node:v3.7.6-c0fe95e9f779fa84b7b
gzip@1.12-1
no fix listed
1
offchainlabs/nitro-node:v3.1.0-7d1d84ce95865866129
gzip@1.12-1
no fix listed
1
oled01/automx2:2025.1.105d3e398e675
gzip@1.12-1
no fix listed
1
oled01/db-backup:0.1.06302fd2b5333
gzip@1.10-4ubuntu4.1
1.10-4ubuntu4.2
1
olvid/bot-daemon:2.0.1e0e6b165d879
gzip@1.12-1ubuntu3.1
1.12-1ubuntu3.2
1
omecproject/c3po-hss:master-latest638671ef4842
gzip@1.6-4ubuntu1
1.6-4ubuntu1+esm2
1
omecproject/c3po-hssdb:master-latest28a90cc26716
gzip@1.10-0ubuntu4
no fix listed
1
omecproject/cdn-antmedia:1.0.0b4ae7d0d6b74
gzip@1.6-5ubuntu1
no fix listed
1

syft 1.42.1 · advisories as of 17 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.