StackRadar

CVE-2026-76642

High

Advisory

Published 3 Sept 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.5
base score, highest
EPSS
0.002
7th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,738
of 17,828 indexed, latest versions
Container images
2,748
deployed by those charts
Fix available
2 of 3
affected packages

CVE-2026-76642 affecting package util-linux 2.40.2-5

Carried by container images the latest versions of 2,738 of 17,828 indexed charts deploy, on 2,748 images.

Affected packageAffected versionsFixed inImages
util-linuxdeb1:2.27.1-6ubuntu3.3, 1:2.38.1-5+deb12u1, 1:2.41.5-0+deb13u1+dhi3, 1:4.16.0-2+really2.41-5+47 more2.41.5-0+deb13u1+e22,488
util-linuxapk2.41-r9, 2.41.2-r0, 2.41.4-r0, 2.42-r0+1 more2.41.6-r0, 2.42.3-r0259
util-linuxrpm2.40.2-4.azl3no fix listed1
OSV records
ALPINE-CVE-2026-76642DEBIAN-CVE-2026-76642UBUNTU-CVE-2026-76642AZL-99081ECHO-b20e-705a-6d36

Charts affected

2,738 by stars
ChartLatestAffected imagesRadar Score
iris-webappiris-webapp0.2.41 of 2See more

iris-webapp iris-webapp 0.2.4

1 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/dfir-iris/iriswebapp_app:v2.4.26e59ebde55709
util-linux@2.41-5
no fix listed

Open the chart page →

12,000
cniistio1.10.31 of 1See more

cni istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
istio/install-cni:1.10.32232f365aed6
util-linux@2.31.1-0.4ubuntu3.7
no fix listed

Open the chart page →

74,823
discoveryistio1.10.31 of 1See more

discovery istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
istio/pilot:1.10.3e7e110a421c2
util-linux@2.31.1-0.4ubuntu3.7
no fix listed

Open the chart page →

74,898
egressistio1.10.31 of 1See more

egress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
util-linux@2.31.1-0.4ubuntu3.7
no fix listed

Open the chart page →

74,843
ingressistio1.10.31 of 1See more

ingress istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
istio/proxyv2:1.10.3a78b7a165744
util-linux@2.31.1-0.4ubuntu3.7
no fix listed

Open the chart page →

74,843
operatoristio1.10.31 of 1See more

operator istio 1.10.3

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
istio/operator:1.10.3655eefa11c84
util-linux@2.31.1-0.4ubuntu3.7
no fix listed

Open the chart page →

75,124
jellyfinjellyfinVerified publisher0.3.301 of 1See more

jellyfin jellyfin 0.3.30

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/jellyfin/jellyfin:10.11.1145f648c382a0
util-linux@2.41-5
no fix listed

Open the chart page →

2,685
jenkinsjenkins-cicd-tool0.1.01 of 1See more

jenkins jenkins-cicd-tool 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
jenkins/jenkins:ltsc1e4c349365f
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

2,451
jessejesse-chartVerified publisher0.0.462 of 6See more

jesse jesse-chart 0.0.46

2 of the 6 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/postgres:alpined3e1620b530c
util-linux@2.42.1-r0
2.42.3-r0
library/redis:alpinebecdda6c7f4b
util-linux@2.41.4-r0
2.41.6-r0

Open the chart page →

3,442
jenkinsjkimVerified publisher5.5.141 of 2See more

jenkins jkim 5.5.14

1 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
jenkins/jenkins:2.462.2-jdk1795313257a8cd
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

7,356
ejabberdjuniorjpdj0.1.481 of 1See more

ejabberd juniorjpdj 0.1.48

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/juniorjpdj/containers/ejabberd-captcha:26.07-r110c57cbc7ad0
util-linux@2.41-r9
2.41.6-r0

Open the chart page →

277
jupyterhub-outpostjupyter-jscVerified publisher2.4.11 of 1See more

jupyterhub-outpost jupyter-jsc 2.4.1

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
jupyterjsc/jupyterhub-outpost:2.3.1aea53b13f235
util-linux@2.41.4-r0
2.41.6-r0

Open the chart page →

1,722
k8s-grafana-stackk8s-grafana-stackVerified publisher0.2.323 of 17See more

k8s-grafana-stack k8s-grafana-stack 0.2.32

3 of the 17 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
grafana/alloy:v1.14.0f50931848bd8
util-linux@2.39.3-9ubuntu6.4
no fix listed
nginxinc/nginx-unprivileged:1.29-alpine0c79d56aee56
util-linux@2.41.4-r0
2.41.6-r0
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
util-linux@2.41-r9
2.41.6-r0

Open the chart page →

15,797
ombik8s-home-lab-repo12.2.11 of 1See more

ombi k8s-home-lab-repo 12.2.1

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/ombi:4.53.50caadf03b804
util-linux@2.39.3-9ubuntu6.5
no fix listed

Open the chart page →

1,486
tautullik8s-home-lab-repo12.3.01 of 1See more

tautulli k8s-home-lab-repo 12.3.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/home-operations/tautulli:2.17.12183820d45a1
util-linux@2.41.4-r0
2.41.6-r0

Open the chart page →

1,124
kafka-kraft-on-k8skafka-kraft-on-k8sVerified publisher1.1.03 of 3See more

kafka-kraft-on-k8s kafka-kraft-on-k8s 1.1.0

3 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
kafkakraft/kafka-connect:3.7.0062d697db7e5
util-linux@2.37.2-4ubuntu3
no fix listed
kafkakraft/kafka-controller:3.7.0f261ad288fce
util-linux@2.37.2-4ubuntu3
no fix listed
kafkakraft/kafkakraft:3.7.02e4b593b878b
util-linux@2.37.2-4ubuntu3
no fix listed

Open the chart page →

14,512
kangalkangal2.3.11 of 2See more

kangal kangal 2.3.1

1 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
swaggerapi/swagger-ui:latestf9b8432be04e
util-linux@2.42.1-r0
2.42.3-r0

Open the chart page →

34
web-chartkbt-ktcloudlab0.1.01 of 1See more

web-chart kbt-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

1,593
kdiffkdiff-snapshotsVerified publisher0.0.2032 of 2See more

kdiff kdiff-snapshots 0.0.203

2 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
filegator/filegator:latest34bf565a11a4
util-linux@2.41.5-0+deb13u1
no fix listed
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.2035bc5ca66d55a
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

8,134
kdiff-snapshotskdiff-snapshotsVerified publisher0.0.551 of 1See more

kdiff-snapshots kdiff-snapshots 0.0.55

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/oguzhan-yilmaz/kdiff-snapshots:0.0.55d7f93d2182fe
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

5,782
app-componentkeltio-helm-chartsVerified publisher3.14.01 of 1See more

app-component keltio-helm-charts 3.14.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

1,593
kenerkenerVerified publisher0.2.01 of 1See more

kener kener 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
rajnandan1/kener:3.2.1930407afca731
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

5,213
keycloak-reporterkeycloak-reporterVerified publisher1.4.151 of 1See more

keycloak-reporter keycloak-reporter 1.4.15

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
continuoussecuritytooling/keycloak-reporting-cli:1.3.3f04ecefab64e
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

1,379
keydbkeydb-helmVerified publisher1.0.61 of 1See more

keydb keydb-helm 1.0.6

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
eqalpha/keydb:x86_64_v6.3.4eceb1806730c
util-linux@2.34-0.1ubuntu9.4
no fix listed

Open the chart page →

5,325
kikplatekikplateVerified publisher0.22.01 of 3See more

kikplate kikplate 0.22.0

1 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/postgres:16a3b7f434b2dc
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

2,564
netbirdkitstream-netbird0.7.11 of 3See more

netbird kitstream-netbird 0.7.1

1 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
netbirdio/netbird-server:0.78.2ac6317722f6f
util-linux@2.39.3-9ubuntu6.6
no fix listed

Open the chart page →

833
glpikitsune-itopsVerified publisher1.0.72 of 3See more

glpi kitsune-itops 1.0.7

2 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
glpi/glpi:latest7b50172cdb7d
util-linux@2.41.5-0+deb13u1
no fix listed
library/mariadb:latestd4fdec0510ad
util-linux@2.41.3-3ubuntu2.2
no fix listed

Open the chart page →

3,750
powerdns-recursorklicktippVerified publisher0.4.101 of 1See more

powerdns-recursor klicktipp 0.4.10

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
powerdns/pdns-recursor-54:5.4.533aadc74a8d6
util-linux@2.41-5
no fix listed

Open the chart page →

1,805
knot-resolverknot-resolverVerified publisher1.0.51 of 1See more

knot-resolver knot-resolver 1.0.5

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
cznic/knot-resolver:v6.4.24ad2e1894b78
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

1,819
nginx-php-fpmkokuwa0.1.41 of 2See more

nginx-php-fpm kokuwa 0.1.4

1 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
nginxinc/nginx-unprivileged:1.29.0-alpine3.2282dcf28da5a8
util-linux@2.41-r9
2.41.6-r0

Open the chart page →

1,846
difykubeblocksVerified publisher0.5.12 of 5See more

dify kubeblocks 0.5.1

2 of the 5 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
langgenius/dify-api:0.6.11fca918260dd6
util-linux@2.38.1-5+deb12u1
no fix listed
langgenius/dify-sandbox:0.2.009b7e8705673
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

20,466
pgbouncerkubernetes-helm-chart-pgbouncer1.0.151 of 1See more

pgbouncer kubernetes-helm-chart-pgbouncer 1.0.15

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
cradlepoint/pgbouncer:1.0.18f5720b0cd03
util-linux@2.31.1-0.4ubuntu3.1
no fix listed

Open the chart page →

5,840
owncloudkubernetes-homelab-helm-chartsVerified publisher0.1.03 of 3See more

owncloud kubernetes-homelab-helm-charts 0.1.0

3 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/mariadb:10.117f22313fc130
util-linux@2.37.2-4ubuntu3.6
no fix listed
library/redis:6e7b96daa9a18
util-linux@2.38.1-5+deb12u3
no fix listed
owncloud/server:10.16.274c53d341076
util-linux@2.37.2-4ubuntu3.5
no fix listed

Open the chart page →

9,909
kubeseal-webguikubeseal-webgui6.0.41 of 2See more

kubeseal-webgui kubeseal-webgui 6.0.4

1 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/jaydee94/kubeseal-webgui/api:4.5.33cceb9462ae1
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

4,233
kubesendkubesend0.1.91 of 1See more

kubesend kubesend 0.1.9

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
v3xl/kubesend:0.1.06f62ca96be82
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

1,347
hertzbeatkubesphere-testVerified publisher1.4.11 of 4See more

hertzbeat kubesphere-test 1.4.1

1 of the 4 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
apache/iotdb:0.13.3-nodeafa47bf1692a
util-linux@2.34-0.1ubuntu9.3
no fix listed

Open the chart page →

7,779
kuma-ingress-watcherkuma-ingress-watcherVerified publisher1.4.01 of 1See more

kuma-ingress-watcher kuma-ingress-watcher 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/squent/kuma-ingress-watcher:1.7.014d45b2a1f00
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

2,633
kubefarmkvaps0.13.41 of 6See more

kubefarm kvaps 0.13.4

1 of the 6 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/kvaps/kubefarm-ltsp:v0.13.424efef013a53
util-linux@2.34-0.1ubuntu9.3
no fix listed

Open the chart page →

12,519
opennebulakvaps2.1.15 of 9See more

opennebula kvaps 2.1.1

5 of the 9 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/kvaps/opennebula:v5.12.0.4-1e28e0e7de11b
util-linux@2.34-0.1ubuntu9.1
no fix listed
ghcr.io/kvaps/opennebula-exporter:v5.12.0.401563adc95fd
util-linux@2.34-0.1ubuntu9.1
no fix listed
ghcr.io/kvaps/opennebula-exporter:v5.12.0.4-12b92df1143b9
util-linux@2.34-0.1ubuntu9.1
no fix listed
ghcr.io/kvaps/opennebula-flow:v5.12.0.4-1600221f0f43f
util-linux@2.34-0.1ubuntu9.1
no fix listed
ghcr.io/kvaps/opennebula-gate:v5.12.0.4-1a85e03d8bc1d
util-linux@2.34-0.1ubuntu9.1
no fix listed

Open the chart page →

267,484
ohifkylesferrazzaVerified publisher0.1.01 of 2See more

ohif kylesferrazza 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
jodogne/orthanc-plugins:latest6ff510aa29c2
util-linux@2.41-5
no fix listed

Open the chart page →

3,577
chibisafel4gVerified publisher0.1.11 of 3See more

chibisafe l4g 0.1.1

1 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
chibisafe/chibisafe-server:latest3da4fcbc1a18
util-linux@2.41-r9
2.41.6-r0

Open the chart page →

5,076
overpass-apil4gVerified publisher0.1.21 of 1See more

overpass-api l4g 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
wiktorn/overpass-api:latest9bb5f4a9b54c
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

3,513
api-docslabs64io-helm-chartsVerified publisher0.9.21See more

api-docs labs64io-helm-charts 0.9.2

1 container image this version deploys carries CVE-2026-76642.

Container imageDigestPackageFixed in
swaggerapi/swagger-ui:v5.33.0f9b8432be04e
util-linux@2.42.1-r0
2.42.3-r0

Open the chart page →

api-gatewaylabs64io-helm-chartsVerified publisher0.14.21See more

api-gateway labs64io-helm-charts 0.14.2

1 container image this version deploys carries CVE-2026-76642.

Container imageDigestPackageFixed in
labs64/traefik-authproxy:0.0.3dfc6086dfbce
util-linux@2.41-5
no fix listed

Open the chart page →

auditflowlabs64io-helm-chartsVerified publisher0.15.23See more

auditflow labs64io-helm-charts 0.15.2

3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
labs64/auditflowdigest-pinnedc7b26d3ca11c
util-linux@2.41.3-3ubuntu2
no fix listed
labs64/auditflow-sinkdigest-pinnedbc4b7684b612
util-linux@2.42.1-r0
2.42.3-r0
labs64/auditflow-transformerdigest-pinned0af0ab7a50ee
util-linux@2.42.1-r0
2.42.3-r0

Open the chart page →

checkoutlabs64io-helm-chartsVerified publisher0.11.21See more

checkout labs64io-helm-charts 0.11.2

1 container image this version deploys carries CVE-2026-76642.

Container imageDigestPackageFixed in
library/postgres:1886c951e05bf5
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

payment-gatewaylabs64io-helm-chartsVerified publisher0.10.22See more

payment-gateway labs64io-helm-charts 0.10.2

2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
labs64/payment-gateway:0.0.10c66feefca17
util-linux@2.41.3-3ubuntu2
no fix listed
library/postgres:1886c951e05bf5
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

langflow-idelangflow0.1.21 of 2See more

langflow-ide langflow 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
langflowai/langflow-frontend:latest54f67f1961fe
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

3,959
lgtmlgtmVerified publisher0.27.11 of 9See more

lgtm lgtm 0.27.1

1 of the 9 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.11.22912be006f62
util-linux@2.41-r9
2.41.6-r0

Open the chart page →

1,017
lgtm-stacklgtm-stackVerified publisher0.1.31 of 8See more

lgtm-stack lgtm-stack 0.1.3

1 of the 8 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
grafana/alloy:v1.18.10f4434c92b3e
util-linux@2.39.3-9ubuntu6.5
no fix listed

Open the chart page →

2,527

Container images carrying it

2,748 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

No deployed image carries CVE-2026-76642.

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.