StackRadar

CVE-2026-76642

High

Advisory

Published 3 Sept 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.5
base score, highest
EPSS
0.002
7th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,798
of 17,821 indexed, latest versions
Container images
2,815
deployed by those charts
Fix available
2 of 3
affected packages

CVE-2026-76642 affecting package util-linux 2.40.2-5

Carried by container images the latest versions of 2,798 of 17,821 indexed charts deploy, on 2,815 images.

Affected packageAffected versionsFixed inImages
util-linuxdeb1:2.27.1-6ubuntu3.3, 1:2.38.1-5+deb12u1, 1:2.41.5-0+deb13u1+dhi3, 1:4.16.0-2+really2.41-5+47 more2.41.5-0+deb13u1+e22,547
util-linuxapk2.41-r9, 2.41.2-r0, 2.41.4-r0, 2.42-r0+1 more2.41.6-r0, 2.42.3-r0267
util-linuxrpm2.40.2-4.azl3no fix listed1
OSV records
ALPINE-CVE-2026-76642DEBIAN-CVE-2026-76642UBUNTU-CVE-2026-76642AZL-99081ECHO-b20e-705a-6d36

Charts affected

2,798 by stars
ChartLatestAffected imagesRadar Score
unificloudnativeapp0.4.21 of 1See more

unifi cloudnativeapp 0.4.2

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
jacobalberty/unifi:5.10.19c409924e2463
util-linux@2.27.1-6ubuntu3.6
no fix listed

Open the chart page →

22,562
webpagetest-agentcloudnativeapp0.2.01 of 1See more

webpagetest-agent cloudnativeapp 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
timothyclarke/wptagent:2018-01-2322c41e5ca7e2
util-linux@2.27.1-6ubuntu3.3
no fix listed

Open the chart page →

137,774
robot-shopcloud-native-toolkit1.1.11 of 12See more

robot-shop cloud-native-toolkit 1.1.1

1 of the 12 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
robotshop/rs-mongodb:latest119b545823cd
util-linux@2.34-0.1ubuntu9.1
no fix listed

Open the chart page →

29,656
phpmyadmincloudpirates-phpmyadmin0.1.01 of 1See more

phpmyadmin cloudpirates-phpmyadmin 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/phpmyadmin:5.2.3-apacheadc486045303
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

2,241
fail-whalecloudposse0.1.11 of 1See more

fail-whale cloudposse 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/nginx:alpine72ba65eb42c1
util-linux@2.42.1-r0
2.42.3-r0

Open the chart page →

34
nginx-default-backendcloudposse0.5.01 of 1See more

nginx-default-backend cloudposse 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/nginx:alpine72ba65eb42c1
util-linux@2.42.1-r0
2.42.3-r0

Open the chart page →

34
nginx-ingresscloudposse0.1.81 of 2See more

nginx-ingress cloudposse 0.1.8

1 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/nginx:alpine72ba65eb42c1
util-linux@2.42.1-r0
2.42.3-r0

Open the chart page →

34
cloudpremcloudprem0.0.0-build.00306ba7288bb8d46dd8c6190af79ef5b6fbdbad2 of 6See more

cloudprem cloudprem 0.0.0-build.00306ba7288bb8d46dd8c6190af79ef5b6fbdbad

2 of the 6 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/formancehq/console:console-on.v1.1.1a4d32c2f68b3
util-linux@2.38.1-5+deb12u3
no fix listed
ghcr.io/formancehq/membership:v1.11.024a0113d5fb0
util-linux@2.37.2-4ubuntu3.4
no fix listed

Open the chart page →

18,474
cloudrevecloudreve0.2.01 of 2See more

cloudreve cloudreve 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
cloudreve/cloudreve:4.18.0f7a464100bf6
util-linux@2.41.2-r0
2.41.6-r0

Open the chart page →

2,989
cloudvaultcloudvaultOfficialVerified publisher1.0.21 of 3See more

cloudvault cloudvault 1.0.2

1 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/postgres:18.3-alpine54451ecb8ab3
util-linux@2.41.4-r0
2.41.6-r0

Open the chart page →

2,185
cloudlaunchcloudve0.6.01 of 5See more

cloudlaunch cloudve 0.6.0

1 of the 5 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
cloudve/cloudlaunch-server:latest4a3d7fae90bb
util-linux@2.34-0.1ubuntu9.1
no fix listed

Open the chart page →

12,574
cloudlaunch-servercloudve0.2.02 of 5See more

cloudlaunch-server cloudve 0.2.0

2 of the 5 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
bitnami/minideb:latestab4d5b45116e
util-linux@2.41.5-0+deb13u1
no fix listed
cloudve/cloudlaunch-server:latest4a3d7fae90bb
util-linux@2.34-0.1ubuntu9.1
no fix listed

Open the chart page →

12,303
cloudlaunchservercloudve0.6.01 of 4See more

cloudlaunchserver cloudve 0.6.0

1 of the 4 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
cloudve/cloudlaunch-server:latest4a3d7fae90bb
util-linux@2.34-0.1ubuntu9.1
no fix listed

Open the chart page →

11,709
galaxycloudve6.8.81 of 3See more

galaxy cloudve 6.8.8

1 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
quay.io/galaxyproject/galaxy-min:26.1.12c324c9789f5
util-linux@2.41-5
no fix listed

Open the chart page →

5,652
galaxy-depscloudve1.1.11 of 7See more

galaxy-deps cloudve 1.1.1

1 of the 7 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:latestcd354d5b2556
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

10,569
galaxykubemancloudve2.10.11 of 7See more

galaxykubeman cloudve 2.10.1

1 of the 7 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
galaxy/cloudman-server:lateste5c265fe9fcd
util-linux@2.34-0.1ubuntu9.3
no fix listed

Open the chart page →

16,209
galaxy-stablecloudve2.0.02 of 5See more

galaxy-stable cloudve 2.0.0

2 of the 5 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
galaxy/galaxy-init:v18.010267bad550e6
util-linux@2.20.1-5.1ubuntu20.9
no fix listed
galaxy/galaxy-stable:v18.018e577a626dfd
util-linux@2.20.1-5.1ubuntu20.9
no fix listed

Open the chart page →

172,065
janisterminalcloudve0.1.01 of 2See more

janisterminal cloudve 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
cloudve/janis-terminal:latestaf56e77ca587
util-linux@2.31.1-0.4ubuntu3.5
no fix listed

Open the chart page →

81,051
postgresqlcloudve4.0.01 of 2See more

postgresql cloudve 4.0.0

1 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
bitnami/minideb:latest835e5f8392c3
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

862
pulsarcloudve0.2.02 of 2See more

pulsar cloudve 0.2.0

2 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
galaxy/pulsar-kubernetes:0.15.7e50a890e24c9
util-linux@2.38.1-5+deb12u3
no fix listed
library/docker:dind5efed980cba3
util-linux@2.42.1-r0
2.42.3-r0

Open the chart page →

6,234
terminalmancloudve0.3.41 of 1See more

terminalman cloudve 0.3.4

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
cloudve/ttyd:latestd79c1c5881c0
util-linux@2.31.1-0.4ubuntu3.6
no fix listed

Open the chart page →

13,203
argo-cdcluster-deploy0.3.21 of 3See more

argo-cd cluster-deploy 0.3.2

1 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v3.5.10deb1a1c9176
util-linux@2.41.3-3ubuntu2
no fix listed

Open the chart page →

3,836
authentikcluster-deploy0.2.01 of 1See more

authentik cluster-deploy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/goauthentik/server:2026.5.6ed120caf710c
util-linux@2.41-5
no fix listed

Open the chart page →

2,570
chowdacluster-deploy0.2.01 of 1See more

chowda cluster-deploy 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/chowda:main86ab9effd1a5
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

1,894
metaflowcluster-deploy0.2.21 of 1See more

metaflow cluster-deploy 0.2.2

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
public.ecr.aws/outerbounds/metaflow_metadata_service:v2.4.13f7567ce3419d
util-linux@2.38.1-5+b1
no fix listed

Open the chart page →

8,215
monitoringcluster-deploy0.3.01 of 11See more

monitoring cluster-deploy 0.3.0

1 of the 11 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
util-linux@2.41-r9
2.41.6-r0

Open the chart page →

8,299
pbcore-utilcluster-deploy0.0.11 of 1See more

pbcore-util cluster-deploy 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/wgbh-mla/pbcore-util:pr-66e04659a3baa
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

9,388
clusterfactoryclusterfactory0.2.02 of 5See more

clusterfactory clusterfactory 0.2.0

2 of the 5 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
jenkins/jenkins:2.541.3-jdk21c4098086090c
util-linux@2.41-5
no fix listed
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
util-linux@2.41-r9
2.41.6-r0

Open the chart page →

7,262
gitea-jenkinsclusterfactory0.1.12 of 5See more

gitea-jenkins clusterfactory 0.1.1

2 of the 5 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
jenkins/jenkins:2.541.3-jdk21c4098086090c
util-linux@2.41-5
no fix listed
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
util-linux@2.41-r9
2.41.6-r0

Open the chart page →

7,051
clusterplexclusterplexVerified publisher1.1.102 of 3See more

clusterplex clusterplex 1.1.10

2 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
linuxserver/plex:latest1f6f97d76e7b
util-linux@2.41.3-3ubuntu2.2
no fix listed
ghcr.io/pabloromeo/clusterplex_orchestrator:1.4.160fe80de2d22c
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

3,683
web-chartcms-ktcloudlab0.1.01 of 1See more

web-chart cms-ktcloudlab 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

1,887
appcnapVerified publisher1.2.01 of 1See more

app cnap 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

1,593
castlemockcnieg2.0.11 of 1See more

castlemock cnieg 2.0.1

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
castlemock/castlemock:latestb7f3f1527ba9
util-linux@2.39.3-9ubuntu6.2
no fix listed

Open the chart page →

4,698
door-agentcnoVerified publisher3.0.152 of 15See more

door-agent cno 3.0.15

2 of the 15 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
envoyproxy/envoy:v1.31.02bf7f042e396
util-linux@2.37.2-4ubuntu3.4
no fix listed
library/redis:alpinebecdda6c7f4b
util-linux@2.41.4-r0
2.41.6-r0

Open the chart page →

19,806
cobbler-webcobbler0.2.11 of 1See more

cobbler-web cobbler 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/cobbler/cobbler-web:v1.1.0c17978fb13dd
util-linux@2.42.1-r0
2.42.3-r0

Open the chart page →

371
ms-basecodedesignplus-chartsVerified publisher0.0.321 of 1See more

ms-base codedesignplus-charts 0.0.32

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
nginxdemos/hello:0.4b28d1e16c676
util-linux@2.41-r9
2.41.6-r0

Open the chart page →

1,297
ms-emails-grpccodedesignplus-chartsVerified publisher0.0.241 of 1See more

ms-emails-grpc codedesignplus-charts 0.0.24

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
codedesignplus/ms-emails-grpc:latest4fc116f5e879
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

3,757
ms-emails-restcodedesignplus-chartsVerified publisher0.0.241 of 1See more

ms-emails-rest codedesignplus-charts 0.0.24

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
codedesignplus/ms-emails-rest:latest7629e746a5b3
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

3,757
ms-licenses-grpccodedesignplus-chartsVerified publisher0.0.241 of 1See more

ms-licenses-grpc codedesignplus-charts 0.0.24

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
codedesignplus/ms-licenses-grpc:latest794a9b8cca1b
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

1,136
ms-modules-grpccodedesignplus-chartsVerified publisher0.0.241 of 1See more

ms-modules-grpc codedesignplus-charts 0.0.24

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
codedesignplus/ms-modules-grpc:latest95b620b601d9
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

1,136
codehubcodehubVerified publisher6.2.183 of 5See more

codehub codehub 6.2.18

3 of the 5 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
util-linux@2.38.1-5+deb12u3
no fix listed
bitnamilegacy/postgresql:latest42a8200d3597
util-linux@2.38.1-5+deb12u3
no fix listed
jupyterhub/jupyterhub:5.4.63974ba945e65
util-linux@2.39.3-9ubuntu6.5
no fix listed

Open the chart page →

13,273
strapi-devcoderstudio-strapi-devVerified publisher0.0.11 of 3See more

strapi-dev coderstudio-strapi-dev 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/postgres:alpined3e1620b530c
util-linux@2.42.1-r0
2.42.3-r0

Open the chart page →

5,158
cohdicohdi0.2.21 of 3See more

cohdi cohdi 0.2.2

1 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/cohdi/composable-dra-driver:v0.2.28c05f7366981
util-linux@2.41-5
no fix listed

Open the chart page →

3,854
web3-prometheus-exportercoinpri-helm-chartsVerified publisher0.1.31 of 1See more

web3-prometheus-exporter coinpri-helm-charts 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
guillh/web3-prometheus-exporter:0.3.04fb99dbc32b2
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

3,445
genericcolearendt0.2.71 of 1See more

generic colearendt 0.2.7

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/nginx:latest05b8cb60c354
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

1,887
loki-stackcommon-chartsVerified publisher1.0.33 of 12See more

loki-stack common-charts 1.0.3

3 of the 12 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
grafana/alloy:v1.18.0491b0578c049
util-linux@2.39.3-9ubuntu6.5
no fix listed
quay.io/kiwigrid/k8s-sidecar:2.10.021b9fe7bb29d
util-linux@2.41-r9
2.41.6-r0
quay.io/kiwigrid/k8s-sidecar:2.5.0a6b3f707f883
util-linux@2.41-r9
2.41.6-r0

Open the chart page →

5,515
opencloudcommunity-opencloud3.0.01 of 11See more

opencloud community-opencloud 3.0.0

1 of the 11 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
apache/tika:latest-full80072bb73dd3
util-linux@2.41.3-3ubuntu2
no fix listed

Open the chart page →

3,864
sumo-besu-genesisconsensys0.1.751 of 1See more

sumo-besu-genesis consensys 0.1.75

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
util-linux@2.34-0.1ubuntu9.3
no fix listed

Open the chart page →

8,073
sumo-besu-nodeconsensys0.1.751 of 4See more

sumo-besu-node consensys 0.1.75

1 of the 4 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
hyperledger/besu:22.4-openjdk-latesta674d35eec9a
util-linux@2.34-0.1ubuntu9.3
no fix listed

Open the chart page →

8,073
filesystem-exportercontainerooVerified publisher1.5.21 of 1See more

filesystem-exporter containeroo 1.5.2

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/containeroo/filesystem-exporter:v1.5.2a66121e16d4e
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

1,213

Container images carrying it

2,815 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
registry.gitlab.com/gitlab-org/build/cng/gitlab-workhorse-ee:v19.4.02256b49461fa
util-linux@2.41.5-0+deb13u1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/kubectl:v19.4.048ee51dd67d4
util-linux@2.41.5-0+deb13u1
no fix listed
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
util-linux@2.34-0.1ubuntu9.1
no fix listed
1
registry.gitlab.com/prisme.ai/prisme.ai/prisme.ai-platform:prod61ff9287923a
util-linux@2.42.1-r0
2.42.3-r0
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
util-linux@2.38.1-5+deb12u3
no fix listed
1
registry.gitlab.com/technostructures/posca/posca:latesta693021686ca
util-linux@2.41.4-r0
2.41.6-r0
1
registry.gitlab.com/xrow-public/helm-smtp/postfix:1.3.37eea4f0883dd
util-linux@2.41.4-r0
2.41.6-r0
1
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
util-linux@2.38.1-5+deb12u3
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
util-linux@2.41-5
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
util-linux@2.38.1-5+deb12u1
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
util-linux@2.38.1-5+deb12u3
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.8.03e2bf2eaef9f
util-linux@2.38.1-5+deb12u3
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.9.0f9d65db8bda2
util-linux@2.38.1-5+deb12u3
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
util-linux@2.38.1-5+deb12u3
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
util-linux@2.38.1-5+deb12u3
no fix listed
1

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.