StackRadar

CVE-2026-77117

Medium

Advisory

Published 27 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.004
35th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,630
of 17,844 indexed, latest versions
Container images
2,673
deployed by those charts
Fix available
1 of 2
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 2,630 of 17,844 indexed charts deploy, on 2,673 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+63 more2.35-0ubuntu3.15, 2.39-0ubuntu8.9, 2.41-12+deb13u3+e6, 2.43-2ubuntu2.42,666
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 moreno fix listed7
OSV records
DEBIAN-CVE-2026-77117UBUNTU-CVE-2026-77117ECHO-52f8-53b9-ae20
Also known as
USN-8737-1, USN-8737-2

Charts affected

2,630 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

2,673 by charts deploying them

A fixed version is listed for 1 of the 2 affected packages.

Container imageDigestPackageFixed inUsed by
espocrm/espocrm:9.3.101b5a24504ed9
glibc@2.41-12+deb13u3
no fix listed
1
esteban1930/backend-1:1.31.01ebe075675de
glibc@2.36-9+deb12u10
no fix listed
1
ethanbergstrom/duoauthproxy:5.5.0345c2a46c103
glibc@2.31-0ubuntu9.2
no fix listed
1
ethereumex/eth-stats-dashboard:v0.0.1a7603aa8df4c
glibc@2.23-0ubuntu9
no fix listed
1
ethersphere/bee:2.2.0a884fd84b72f
glibc@2.36-9+deb12u4
no fix listed
1
ethersphere/beekeeper:lateste3bc0da9ffde
glibc@2.36-9+deb12u13
no fix listed
1
ethpandaops/assertoor:latest1efa2fba6711
glibc@2.41-12+deb13u3
no fix listed
1
ethpandaops/buildoor:mainb3dc726f8ba5
glibc@2.41-12+deb13u3
no fix listed
1
ethpandaops/dora:mastere7c0ed360365
glibc@2.41-12+deb13u3
no fix listed
1
ethpandaops/eleel:mainb8f1b707aee0
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.9
1
ethpandaops/forky:debian-latestc937f4ba737c
glibc@2.41-12+deb13u3
no fix listed
1
ethpandaops/observoor:masterc7e5055defcb
glibc@2.36-9+deb12u13
no fix listed
1
ethpandaops/rpc-snooper:latestc0b30fcf64bc
glibc@2.41-12+deb13u3
no fix listed
1
ethpandaops/spamoor:latestc8c6ab0816c4
glibc@2.41-12+deb13u3
no fix listed
1
ethpandaops/splitoor:latest989da6bea4bd
glibc@2.36-9+deb12u13
no fix listed
1
ethpandaops/xatu:sentry-logs-latestf9b6217ba009
glibc@2.36-9+deb12u9
no fix listed
1
f3ktech/recaptcha-v3-verifier:1.1.048e78987cf91
glibc@2.36-9+deb12u13
no fix listed
1
factoriotools/factorio:latest18c07a80cacc
glibc@2.41-12+deb13u3
no fix listed
1
factoriotools/factorio:stable4ec5fea2e06b
glibc@2.41-12+deb13u3
no fix listed
1
factoriotools/factorio:2.0.67-rootlessf7909f7361d6
glibc@2.41-12
no fix listed
1
falcosecurity/event-generator:latest932956d86c99
glibc@2.36-9+deb12u13
no fix listed
1
falcosecurity/falco-driver-loader:0.45.0d7d287d4dcee
glibc@2.36-9+deb12u14
no fix listed
1
federid/webhook:0.1.0fbfb7c6510a7
glibc@2.36-9+deb12u9
no fix listed
1
felipecs8/app-db-connection-test:v129e06c9c6385
glibc@2.36-9+deb12u9
no fix listed
1
filegator/filegator:latest34bf565a11a4
glibc@2.41-12+deb13u3
no fix listed
1
firefart/requesttracker:5.0.40d6249906d8c
glibc@2.36-9+deb12u3
no fix listed
1
fireflyiii/core:version-6.6.6ae69fdd95cde
glibc@2.41-12+deb13u3
no fix listed
1
fiware/biz-ecosystem-charging-backend:11.7.029456835bb2c
glibc@2.31-0ubuntu9.17
no fix listed
1
fiware/biz-ecosystem-logic-proxy:11.20.3d551a13e8278
glibc@2.36-9+deb12u10
no fix listed
1
flanksource/apm-hub:v0.0.471dacc3195bf9
glibc@2.35-0ubuntu3.1
2.35-0ubuntu3.15
1
flanksource/batch-runner:v1.0.44689687a7cf95
glibc@2.39-0ubuntu8.5
2.39-0ubuntu8.9
1
flanksource/canary-checker-ui:v1.4.281764c84e550db
glibc@2.36-9+deb12u10
no fix listed
1
flanksource/incident-manager-ui:v1.4.319953948a194c9
glibc@2.36-9+deb12u10
no fix listed
1
flashcatcloud/nightingale:8.5.1421acb36181b
glibc@2.41-12+deb13u1
no fix listed
1
flashcatcloud/nightingale:8.0.0-beta.11ea1b0aaabe09
glibc@2.36-9+deb12u10
no fix listed
1
fluent/fluent-bit:4.2.6a52221a2a3eb
glibc@2.41-12+deb13u3
no fix listed
1
fluent/fluent-bit:4.0.4ca08b7d2df5b
glibc@2.36-9+deb12u10
no fix listed
1
fluent/fluent-bit:4.0-debuge76397ef3983
glibc@2.36-9+deb12u13
no fix listed
1
fluent/fluentd-kubernetes-daemonset:v1.19.3-debian-elasticsearch7-1.1de9cf5f1127a
glibc@2.41-12+deb13u3
no fix listed
1
fluent/fluentd-kubernetes-daemonset:v1-debian-graylogfda93f768f98
glibc@2.41-12+deb13u3
no fix listed
1
flyway/flyway:9.1545b5d7cdc75a
glibc@2.31-0ubuntu9.9
no fix listed
1
fnzv/dump1090:latestb3079b95c336
glibc@2.35-0ubuntu3.5
2.35-0ubuntu3.15
1
foldingathome/fah-gpu:latest5ef7742d1eb4
glibc@2.27-3ubuntu1.4
no fix listed
1
folioci/mod-z3950:latest2493041ce880
glibc@2.41-12+deb13u2
no fix listed
1
fosrl/pangolin:latest00cfb631097a
glibc@2.36-9+deb12u14
no fix listed
1
frankescobar/allure-docker-service:2.27.00815040339a9
glibc@2.27-3ubuntu1.2
no fix listed
1
frankescobar/allure-docker-service:2.35.14154286c0209
glibc@2.39-0ubuntu8.6
2.39-0ubuntu8.9
1
frankescobar/allure-docker-service:2.21.08a4d7e9308de
glibc@2.27-3ubuntu1.2
no fix listed
1
frankescobar/allure-docker-service:2.19.0cafa03b94dac
glibc@2.27-3ubuntu1.2
no fix listed
1
frankescobar/allure-docker-service:latestdc171ec796d5
glibc@2.39-0ubuntu8.7
2.39-0ubuntu8.9
1

syft 1.42.1 · advisories as of 24 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.