StackRadar

CVE-2026-76642

High

Advisory

Published 3 Sept 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
8.5
base score, highest
EPSS
0.002
7th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,798
of 17,821 indexed, latest versions
Container images
2,815
deployed by those charts
Fix available
2 of 3
affected packages

CVE-2026-76642 affecting package util-linux 2.40.2-5

Carried by container images the latest versions of 2,798 of 17,821 indexed charts deploy, on 2,815 images.

Affected packageAffected versionsFixed inImages
util-linuxdeb1:2.27.1-6ubuntu3.3, 1:2.38.1-5+deb12u1, 1:2.41.5-0+deb13u1+dhi3, 1:4.16.0-2+really2.41-5+47 more2.41.5-0+deb13u1+e22,547
util-linuxapk2.41-r9, 2.41.2-r0, 2.41.4-r0, 2.42-r0+1 more2.41.6-r0, 2.42.3-r0267
util-linuxrpm2.40.2-4.azl3no fix listed1
OSV records
ALPINE-CVE-2026-76642DEBIAN-CVE-2026-76642UBUNTU-CVE-2026-76642AZL-99081ECHO-b20e-705a-6d36

Charts affected

2,798 by stars
ChartLatestAffected imagesRadar Score
dgraphromholdings0.0.201 of 1See more

dgraph romholdings 0.0.20

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
dgraph/dgraph:v21.12.03b55ea83fffe
util-linux@2.34-0.1ubuntu9.1
no fix listed

Open the chart page →

12,001
migration-incluster-cdromholdings0.10.01 of 1See more

migration-incluster-cd romholdings 0.10.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/postgres:122f2a8c2a7d10
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

3,963
rommromm-helm-chartVerified publisher1.5.52 of 3See more

romm romm-helm-chart 1.5.5

2 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/mariadb:112439dcd7d140
util-linux@2.39.3-9ubuntu6.5
no fix listed
rommapp/romm:5.2.03512f2ca4557
util-linux@2.41.2-r0
2.41.6-r0

Open the chart page →

3,473
pagesronan-pages1.0.02 of 3See more

pages ronan-pages 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
util-linux@2.34-0.1ubuntu9.1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
util-linux@2.31.1-0.4ubuntu3.6
no fix listed

Open the chart page →

20,287
endeavorrotationalVerified publisher1.3.12 of 2See more

endeavor rotational 1.3.1

2 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
rotationalio/endeavor:1.3.0ac566baddc06
util-linux@2.38.1-5+deb12u3
no fix listed
rotationalio/quarterdeck:0.16.00e7ad3a031dc
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

2,306
genoarotationalVerified publisher1.4.01 of 1See more

genoa rotational 1.4.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
rotationalio/genoa:1.2.03ab583519215
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

1,023
honurotationalVerified publisher0.5.31 of 1See more

honu rotational 0.5.3

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
rotationalio/honu:0.5.069fd30c2e31c
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

2,133
imgtagrotationalVerified publisher0.2.01 of 1See more

imgtag rotational 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
gcr.io/rotationalio-habanero/imgtag:89ec287a534a3170d03
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

3,300
quarterdeckrotationalVerified publisher0.16.01 of 1See more

quarterdeck rotational 0.16.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
rotationalio/quarterdeck:0.16.00e7ad3a031dc
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

1,194
routehub-serverroutehub-helm1.0.12 of 3See more

routehub-server routehub-helm 1.0.1

2 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
eqalpha/keydb:latest6537505c4235
util-linux@2.34-0.1ubuntu9.4
no fix listed
library/postgres:latest4ef4dbc939d6
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

6,943
agentdatarss30.1.01 of 1See more

agentdata rss3 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/rss3-network/agentdata:0.1.0fd8d3e6e4cdf
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

3,599
noderss30.7.21 of 3See more

node rss3 0.7.2

1 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/rss3-network/agentdata:0.1.0fd8d3e6e4cdf
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

4,806
prepull-daemonsetrstudioVerified publisher0.0.51 of 2See more

prepull-daemonset rstudio 0.0.5

1 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/ubuntu:bionic152dc042452c
util-linux@2.31.1-0.4ubuntu3.7
no fix listed

Open the chart page →

1,740
checkmkrtomik-helm-chartsVerified publisher0.1.01 of 1See more

checkmk rtomik-helm-charts 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
checkmk/check-mk-community:2.5.0p6c11b422210c4
util-linux@2.37.2-4ubuntu3.5
no fix listed

Open the chart page →

7,820
karakeeprtomik-helm-chartsVerified publisher0.0.11 of 3See more

karakeep rtomik-helm-charts 0.0.1

1 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/karakeep-app/karakeep:0.26.0f575a34ed3f8
util-linux@2.41-r9
2.41.6-r0

Open the chart page →

5,365
paperless-ngxrtomik-helm-chartsVerified publisher0.0.51 of 1See more

paperless-ngx rtomik-helm-charts 0.0.5

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/paperless-ngx/paperless-ngx:2.20.357ad9565bff3
util-linux@2.41-5
no fix listed

Open the chart page →

10,857
tandoorrtomik-helm-chartsVerified publisher0.0.11 of 1See more

tandoor rtomik-helm-charts 0.0.1

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
vabene1111/recipes:2.3.50f8d061895e9
util-linux@2.41-r9
2.41.6-r0

Open the chart page →

4,602
audiobookshelfrubxkubeVerified publisher0.1.31 of 1See more

audiobookshelf rubxkube 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/advplyr/audiobookshelf:2.36.0180acad33d69
util-linux@2.41.4-r0
2.41.6-r0

Open the chart page →

1,739
flaresolverrrubxkubeVerified publisher0.1.11 of 1See more

flaresolverr rubxkube 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
flaresolverr/flaresolverr:v3.5.0139dfee1c6f8
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

27,831
jellyfinrubxkubeVerified publisher1.3.11 of 1See more

jellyfin rubxkube 1.3.1

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
util-linux@2.41-5
no fix listed

Open the chart page →

2,603
joplinrubxkubeVerified publisher1.3.11 of 2See more

joplin rubxkube 1.3.1

1 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.2.0-debian-12-r2e6fa49bb0347
util-linux@2.38.1-5+deb12u2
no fix listed

Open the chart page →

7,421
komgarubxkubeVerified publisher0.1.31 of 1See more

komga rubxkube 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
gotson/komga:1.26.36c2a967bbe9a
util-linux@2.41.3-3ubuntu2
no fix listed

Open the chart page →

34,743
linkdingrubxkubeVerified publisher1.2.41 of 1See more

linkding rubxkube 1.2.4

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
sissbruecker/linkding:1.47.0e35cb50e0581
util-linux@2.41-5
no fix listed

Open the chart page →

2,102
simple-coffeerubxkubeVerified publisher0.1.01 of 1See more

simple-coffee rubxkube 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
qjoly/kubernetes-coffee-image:simpleec94d3bdc035
util-linux@2.41-5
no fix listed

Open the chart page →

2,609
spindlerubxkubeVerified publisher0.1.21 of 2See more

spindle rubxkube 0.1.2

1 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/qjoly/spindle:v1.16.1-alphaaab0c99d313f
util-linux@2.42.1-r0
2.42.3-r0

Open the chart page →

1,175
stirling-pdfrubxkubeVerified publisher0.1.21 of 1See more

stirling-pdf rubxkube 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/stirling-tools/stirling-pdf:2.14.33b3670fce70b
util-linux@2.39.3-9ubuntu6.5
no fix listed

Open the chart page →

6,348
suwayomirubxkubeVerified publisher0.1.21 of 1See more

suwayomi rubxkube 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/suwayomi/suwayomi-server:v2.3.2320d2c3218c7f9f
util-linux@2.39.3-9ubuntu6.5
no fix listed

Open the chart page →

1,692
tranquil-pdsrubxkubeVerified publisher0.2.01 of 2See more

tranquil-pds rubxkube 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/postgres:18-alpined3e1620b530c
util-linux@2.42.1-r0
2.42.3-r0

Open the chart page →

635
trmnl-serverrubxkubeVerified publisher0.1.01 of 2See more

trmnl-server rubxkube 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/python:3.14-slimcad9a2c87176
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

2,960
uptime-kumarubxkubeVerified publisher1.2.11 of 1See more

uptime-kuma rubxkube 1.2.1

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
louislam/uptime-kuma:2.4.091e963bfda56
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

30,919
vaultwardenrubxkubeVerified publisher1.2.41 of 1See more

vaultwarden rubxkube 1.2.4

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
vaultwarden/server:1.37.2094b5689ed81
util-linux@2.41-5
no fix listed

Open the chart page →

1,711
your-spotifyrubxkubeVerified publisher1.0.11 of 3See more

your-spotify rubxkube 1.0.1

1 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
bitnamilegacy/mongodb:latestb0652af9c8d0
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

5,478
runwhen-localrunwhen-contribVerified publisher0.6.171 of 3See more

runwhen-local runwhen-contrib 0.6.17

1 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/runwhen-contrib/runwhen-local:0.12.0533ce58c6e02
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

3,845
rybbitrybbit-helm1.3.22 of 7See more

rybbit rybbit-helm 1.3.2

2 of the 7 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
valkey/valkey:9.1.1-alpine15568b9cb7eb
util-linux@2.42.1-r0
2.42.3-r0
valkey/valkey:9.1.164e361b630ec
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

6,145
nadekobotryuunosukeds30.1.22 of 2See more

nadekobot ryuunosukeds3 0.1.2

2 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/ubuntu:latest2260313b31c8
util-linux@2.41.3-3ubuntu2
no fix listed
ryuunosukeds3/nadeko-bot-docker:latestc0398f13e8a9
util-linux@2.37.2-4ubuntu3.4
no fix listed

Open the chart page →

8,825
orbitalryuunosukeds30.2.01 of 1See more

orbital ryuunosukeds3 0.2.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ryuunosukeds3/orbital:latest0879f7261b10
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

2,707
transmissionryuunosukeds31.6.21 of 2See more

transmission ryuunosukeds3 1.6.2

1 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/python:3.9da5aee29682d
util-linux@2.41-5
no fix listed

Open the chart page →

9,891
vrisingryuunosukeds30.1.01 of 1See more

vrising ryuunosukeds3 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
trueosiris/vrising:latest9356f98ad561
util-linux@2.37.2-4ubuntu3.5
no fix listed

Open the chart page →

7,496
test-helm-app1saam-helm-test0.1.01 of 1See more

test-helm-app1 saam-helm-test 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
hamidyousefi93/saam-test:latestc34f071f6ed0
util-linux@2.38.1-5+b1
no fix listed

Open the chart page →

3,970
hivechart-1sabryp3-charts0.2.01 of 2See more

hivechart-1 sabryp3-charts 0.2.0

1 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
valkey/valkey:latestc123e3715db6
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

862
safe-config-servicesafe-global0.1.02 of 3See more

safe-config-service safe-global 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/nginx:alpine72ba65eb42c1
util-linux@2.42.1-r0
2.42.3-r0
safeglobal/safe-config-service:latest09a5e495c219
util-linux@2.41-5
no fix listed

Open the chart page →

1,638
safe-stacksafe-global0.1.04 of 9See more

safe-stack safe-global 0.1.0

4 of the 9 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
gjeanmart/safe-ganache-node:latest926264c8f2d1
util-linux@2.38.1-5+b1
no fix listed
library/nginx:alpine72ba65eb42c1
util-linux@2.42.1-r0
2.42.3-r0
safeglobal/safe-config-service:latest09a5e495c219
util-linux@2.41-5
no fix listed
safeglobal/safe-transaction-service:latest80db836cc5d5
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

19,943
safe-transaction-servicesafe-global0.1.03 of 6See more

safe-transaction-service safe-global 0.1.0

3 of the 6 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
gjeanmart/safe-ganache-node:latest926264c8f2d1
util-linux@2.38.1-5+b1
no fix listed
library/nginx:alpine72ba65eb42c1
util-linux@2.42.1-r0
2.42.3-r0
safeglobal/safe-transaction-service:latest80db836cc5d5
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

16,936
sagawisesagawiseVerified publisher0.1.01 of 3See more

sagawise sagawise 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
venturenox/redis:latest83b471c193ba
util-linux@2.38.1-5+deb12u2
no fix listed

Open the chart page →

4,396
fmtok8s-conference-chartsalaboy0.1.41 of 6See more

fmtok8s-conference-chart salaboy 0.1.4

1 of the 6 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
util-linux@2.37.2-4ubuntu3
no fix listed

Open the chart page →

16,313
fmtok8s-frontendsalaboy0.1.31 of 1See more

fmtok8s-frontend salaboy 0.1.3

1 of the 1 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
ghcr.io/salaboy/fmtok8s-frontend:v0.1.103fd01b4f56e
util-linux@2.37.2-4ubuntu3
no fix listed

Open the chart page →

8,166
pagessamanvithkaranth1.0.02 of 3See more

pages samanvithkaranth 1.0.0

2 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
dellcloud/pages:monitor6ba7b22caacd
util-linux@2.34-0.1ubuntu9.1
no fix listed
flyway/flyway:6.4.422d97ceb0c47
util-linux@2.31.1-0.4ubuntu3.6
no fix listed

Open the chart page →

20,287
samplesample0.1.01 of 2See more

sample sample 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/mongo:noble6ede2806c78e
util-linux@2.39.3-9ubuntu6.5
no fix listed

Open the chart page →

2,382
evsantisbon0.2.02 of 5See more

ev santisbon 0.2.0

2 of the 5 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
santisbon/evwatcher:latestc4e994ca4540
util-linux@2.38.1-5+b1
no fix listed
santisbon/evworker:lateste807283f8d69
util-linux@2.38.1-5+b1
no fix listed

Open the chart page →

14,559
speedtestsantisbon0.1.02 of 3See more

speedtest santisbon 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-76642.

Container imageDigestPackageFixed in
library/influxdb:2.7b8d940ca9376
util-linux@2.38.1-5+deb12u3
no fix listed
santisbon/speedtest:latest8ee3a1697227
util-linux@2.38.1-5+b1
no fix listed

Open the chart page →

12,937

Container images carrying it

2,815 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
registry.gitlab.com/gitlab-org/build/cng/gitlab-workhorse-ee:v19.4.02256b49461fa
util-linux@2.41.5-0+deb13u1
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/kubectl:v19.4.048ee51dd67d4
util-linux@2.41.5-0+deb13u1
no fix listed
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
util-linux@2.34-0.1ubuntu9.1
no fix listed
1
registry.gitlab.com/prisme.ai/prisme.ai/prisme.ai-platform:prod61ff9287923a
util-linux@2.42.1-r0
2.42.3-r0
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
util-linux@2.38.1-5+deb12u3
no fix listed
1
registry.gitlab.com/technostructures/posca/posca:latesta693021686ca
util-linux@2.41.4-r0
2.41.6-r0
1
registry.gitlab.com/xrow-public/helm-smtp/postfix:1.3.37eea4f0883dd
util-linux@2.41.4-r0
2.41.6-r0
1
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
util-linux@2.38.1-5+deb12u3
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
util-linux@2.41-5
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
util-linux@2.38.1-5+deb12u1
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
util-linux@2.38.1-5+deb12u3
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.8.03e2bf2eaef9f
util-linux@2.38.1-5+deb12u3
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.9.0f9d65db8bda2
util-linux@2.38.1-5+deb12u3
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
util-linux@2.38.1-5+deb12u3
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
util-linux@2.38.1-5+deb12u3
no fix listed
1

syft 1.42.1 · advisories as of 21 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.