StackRadar

CVE-2026-77117

Medium

Advisory

Published 27 Aug 2026In the index since 5 Sept 2026
Severity
Medium
worst across findings
CVSS
5.9
base score, highest
EPSS
0.004
33rd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,808
of 17,879 indexed, latest versions
Container images
2,866
deployed by those charts
Fix available
1 of 4
affected packages

The matching OSV records carry no description.

Carried by container images the latest versions of 2,808 of 17,879 indexed charts deploy, on 2,866 images.

Affected packageAffected versionsFixed inImages
glibcdeb2.23-0ubuntu5, 2.23-0ubuntu7, 2.23-0ubuntu9, 2.23-0ubuntu10+63 more2.35-0ubuntu3.15, 2.39-0ubuntu8.9, 2.41-12+deb13u3+e6, 2.43-2ubuntu2.42,705
eglibcdeb2.19-0ubuntu6.3, 2.19-0ubuntu6.6, 2.19-0ubuntu6.13, 2.19-0ubuntu6.14+1 moreno fix listed7
glibc-2.44apk2.44-r1, 2.44-r4, 2.44-r5, 2.44-r6no fix listed153
glibc-2.43apk2.43-r14no fix listed1
OSV records
DEBIAN-CVE-2026-77117UBUNTU-CVE-2026-77117CGA-26xq-9jxj-rw6fCGA-3mpj-r23j-gqxpCGA-6rxh-7rcg-6vm6CGA-86q6-jgw4-4qvqCGA-gm49-5xmv-9mwgCGA-gvr8-r35v-jwr6CGA-p9hr-458p-2fj5ECHO-52f8-53b9-ae20
Also known as
CGA-58cc-vw33-fmgw, CGA-965p-4jfr-2ph7, CGA-h2mc-94cg-jh7f, CGA-h7q9-f494-wj26, CGA-h9gc-g4cr-r6c4, CGA-hcvr-63qq-w73g, CGA-hm69-mxvx-ff6j, CGA-jjr2-x4j3-gqwr, CGA-jvq4-83m5-3qqg, CGA-m5f2-g9g8-q69p, CGA-qwjw-qj9j-qrf5, CGA-xxjm-mj25-24q2, USN-8737-1, USN-8737-2

Charts affected

2,808 by stars
ChartLatestAffected imagesRadar Score
nvidiamesosphere0.4.42 of 2See more

nvidia mesosphere 0.4.4

2 of the 2 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
nvidia/dcgm-exporter:2.2.9-2.4.1-ubuntu20.0491b20b66d1cd
glibc@2.31-0ubuntu9.2
no fix listed
nvidia/k8s-device-plugin:v0.9.0964847cc3fd8
glibc@2.23-0ubuntu11.2
no fix listed

Open the chart page →

10,726
testmesosphere0.1.01 of 1See more

test mesosphere 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
library/nginx:stableb972f831f200
glibc@2.41-12+deb13u4
no fix listed

Open the chart page →

1,672
dexmesosphere-stable2.14.22 of 5See more

dex mesosphere-stable 2.14.2

2 of the 5 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
glibc@2.36-9+deb12u4
no fix listed
gcr.io/google_containers/kubernetes-dashboard-init-amd64:v1.0.0fbe12aa24de6
glibc@2.23-0ubuntu9
no fix listed

Open the chart page →

20,163
istiomesosphere-stable1.25.11 of 2See more

istio mesosphere-stable 1.25.1

1 of the 2 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
glibc@2.36-9+deb12u4
no fix listed

Open the chart page →

5,620
istio-helm-cnimesosphere-stable1.23.61 of 1See more

istio-helm-cni mesosphere-stable 1.23.6

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
istio/install-cni:1.23.6ab34c4740f44
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.9

Open the chart page →

3,486
istio-helm-istiodmesosphere-stable1.23.61 of 2See more

istio-helm-istiod mesosphere-stable 1.23.6

1 of the 2 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
istio/pilot:1.23.69c3d6a218181
glibc@2.39-0ubuntu8.4
2.39-0ubuntu8.9

Open the chart page →

4,845
kommandermesosphere-stable0.39.21 of 29See more

kommander mesosphere-stable 0.39.2

1 of the 29 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
mesosphere/kubeaddons-catalog:v0.11.4073db43d0b8b
glibc@2.31-0ubuntu9.1
no fix listed

Open the chart page →

68,662
kube-prometheus-stackmesosphere-stable75.9.11 of 7See more

kube-prometheus-stack mesosphere-stable 75.9.1

1 of the 7 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
bitnamilegacy/kubectl:1.29.2c74b703deed2
glibc@2.36-9+deb12u4
no fix listed

Open the chart page →

10,822
localpathprovisionermesosphere-stable0.1.21 of 1See more

localpathprovisioner mesosphere-stable 0.1.2

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
rancher/local-path-provisioner:v0.0.5e66f32d19eb9
glibc@2.23-0ubuntu10
no fix listed

Open the chart page →

18,474
multusmesosphere-stable0.1.11 of 1See more

multus mesosphere-stable 0.1.1

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
ghcr.io/k8snetworkplumbingwg/multus-cni:v4.2.4-thick3c20900b5381
glibc@2.41-12+deb13u1
no fix listed

Open the chart page →

1,934
valkeymesosphere-stable3.0.221 of 1See more

valkey mesosphere-stable 3.0.22

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
bitnamilegacy/valkey:8.1.3-debian-12-r1a185655855b3
glibc@2.36-9+deb12u10
no fix listed

Open the chart page →

2,794
istio-operatormetakube1.12.01 of 1See more

istio-operator metakube 1.12.0

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
istio/operator:1.12.06cfce8a071b9
glibc@2.31-0ubuntu9.2
no fix listed

Open the chart page →

9,065
elasticmicroboxlabs0.3.01 of 1See more

elastic microboxlabs 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
library/elasticsearch:8.17.32cc40b15dff8
glibc@2.31-0ubuntu9.17
no fix listed

Open the chart page →

4,561
miot-harnessmicroboxlabs0.7.01 of 1See more

miot-harness microboxlabs 0.7.0

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
ghcr.io/microboxlabs/miot-harness:0.1.0d548e9ae4b84
glibc@2.41-12+deb13u3
no fix listed

Open the chart page →

1,309
postgresmicroboxlabs0.3.01 of 1See more

postgres microboxlabs 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
library/postgres:16.6557fea37a744
glibc@2.36-9+deb12u9
no fix listed

Open the chart page →

4,082
resource-servicemicroservices-learningVerified publisher1.5.01 of 2See more

resource-service microservices-learning 1.5.0

1 of the 2 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
library/postgres:latest86c951e05bf5
glibc@2.41-12+deb13u4
no fix listed

Open the chart page →

4,904
song-servicemicroservices-learningVerified publisher1.2.01 of 2See more

song-service microservices-learning 1.2.0

1 of the 2 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
library/postgres:latest86c951e05bf5
glibc@2.41-12+deb13u4
no fix listed

Open the chart page →

4,357
apimicroslacVerified publisher0.1.01 of 2See more

api microslac 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
library/kong:3.6a42d2b4503e7
glibc@2.35-0ubuntu3.10
2.35-0ubuntu3.15

Open the chart page →

3,535
argomicroslacVerified publisher0.1.01 of 4See more

argo microslac 0.1.0

1 of the 4 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
quay.io/argoproj/argocd:v2.10.783c86003b781
glibc@2.35-0ubuntu3.6
2.35-0ubuntu3.15

Open the chart page →

10,159
servicesmicroslacVerified publisher0.4.04 of 8See more

services microslac 0.4.0

4 of the 8 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
microslac/auth:latest5c1eb1f5c64d
glibc@2.36-9+deb12u1
no fix listed
microslac/conversations:latest1b24afcd71ff
glibc@2.36-9+deb12u1
no fix listed
microslac/teams:latest0f75997fcbe5
glibc@2.36-9+deb12u1
no fix listed
microslac/users:latest216ea6832a56
glibc@2.36-9+deb12u1
no fix listed

Open the chart page →

32,470
alluremidokura-communityVerified publisher0.1.31 of 2See more

allure midokura-community 0.1.3

1 of the 2 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
frankescobar/allure-docker-service:2.19.0cafa03b94dac
glibc@2.27-3ubuntu1.2
no fix listed

Open the chart page →

74,409
folding-at-homemidokura-communityVerified publisher0.0.31 of 1See more

folding-at-home midokura-community 0.0.3

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
linuxserver/foldingathome:7.6.219a997426d71e
glibc@2.39-0ubuntu8.2
2.39-0ubuntu8.9

Open the chart page →

3,082
unifimidokura-communityVerified publisher0.0.61 of 1See more

unifi midokura-community 0.0.6

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
linuxserver/unifi-controller:7.3.83ab105cc50322
glibc@2.31-0ubuntu9.9
no fix listed

Open the chart page →

11,682
parent-chartmid-proje0.1.01 of 3See more

parent-chart mid-proje 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
youssef11gaber10/flask-service:latest9c727fcfde76
glibc@2.41-12+deb13u2
no fix listed

Open the chart page →

1,934
teimilvus-helm1.6.01 of 1See more

tei milvus-helm 1.6.0

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
ghcr.io/huggingface/text-embeddings-inference:cpu-1.666db77d7856c
glibc@2.36-9+deb12u10
no fix listed

Open the chart page →

3,470
mini-blogmini-blog-helm0.1.02 of 3See more

mini-blog mini-blog-helm 0.1.0

2 of the 3 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
beyzkaya/blog-backend:v1.0.112a6a3d1c5f9
glibc@2.36-9+deb12u10
no fix listed
library/postgres:15dfbbb0ad8cab
glibc@2.41-12+deb13u4
no fix listed

Open the chart page →

13,436
MINTmint8.0.24 of 15See more

MINT mint 8.0.2

4 of the 15 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
glibc@2.41-12+deb13u4
no fix listed
library/redis:latest718f745deb7d
glibc@2.41-12+deb13u4
no fix listed
mintproject/graphql-engine:305c0dbeba1878eafe348f21fc300fbfc017d9dc83aade2c1855
glibc@2.31-0ubuntu9.9
no fix listed
mintproject/model-catalog-fastapi:7dd88dc5bf1fe6a6d4703ea0a077afee45cb256102260d20a21f
glibc@2.36-9+deb12u10
no fix listed

Open the chart page →

117,611
aws-api-gateway-operatormintel0.1.21 of 11See more

aws-api-gateway-operator mintel 0.1.2

1 of the 11 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
localstack/localstack:latest4abc29e923e5
glibc@2.41-12+deb13u3
no fix listed

Open the chart page →

10,857
standard-application-stackmintel11.5.01 of 12See more

standard-application-stack mintel 11.5.0

1 of the 12 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
localstack/localstack:latest4abc29e923e5
glibc@2.41-12+deb13u3
no fix listed

Open the chart page →

10,857
session-scalermiqm0.1.01 of 1See more

session-scaler miqm 0.1.0

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
miqm/session-scaler:0.1.0c5c211717d9b
glibc@2.36-9+deb12u4
no fix listed

Open the chart page →

3,350
mira-operatormiraOfficialVerified publisher0.3.01 of 1See more

mira-operator mira 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
ghcr.io/trianalab/mira-operator:0.3.08adf5978b7eb
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

284
helmmirasys-chart0.1.02 of 4See more

helm mirasys-chart 0.1.0

2 of the 4 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
library/redis:latest718f745deb7d
glibc@2.41-12+deb13u4
no fix listed
sepehrmdn/mirasys-assignment:1.0.12567228e33c8
glibc@2.36-9+deb12u13
no fix listed

Open the chart page →

3,831
mitosmitosVerified publisher1.6.01 of 7See more

mitos mitos 1.6.0

1 of the 7 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
ghcr.io/mitos-run/mitos-forkd:v1.6.0979b462ab7d6
glibc@2.35-0ubuntu3.13
2.35-0ubuntu3.15

Open the chart page →

3,222
simplewebappmlohrVerified publisher1.1.01 of 1See more

simplewebapp mlohr 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
library/nginx:latestabe47724e466
glibc@2.41-12+deb13u4
no fix listed

Open the chart page →

1,672
mariadbmmontesVerified publisher0.3.01 of 1See more

mariadb mmontes 0.3.0

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
library/mariadb:10.7.307e06f2e7ae9
glibc@2.31-0ubuntu9.7
no fix listed

Open the chart page →

10,344
mongodbmmontesVerified publisher0.5.01 of 1See more

mongodb mmontes 0.5.0

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
library/mongo:4.4.1305678ae4e5e1
glibc@2.31-0ubuntu9.7
no fix listed

Open the chart page →

7,285
account-lookup-servicemojaloop13.0.01 of 4See more

account-lookup-service mojaloop 13.0.0

1 of the 4 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
solsson/kafka:latest41e5d8f6f290
glibc@2.31-0ubuntu9.9
no fix listed

Open the chart page →

12,125
account-lookup-service-adminmojaloop13.0.01 of 4See more

account-lookup-service-admin mojaloop 13.0.0

1 of the 4 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
solsson/kafka:latest41e5d8f6f290
glibc@2.31-0ubuntu9.9
no fix listed

Open the chart page →

12,125
admin-api-svcmojaloop12.0.01 of 4See more

admin-api-svc mojaloop 12.0.0

1 of the 4 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
solsson/kafka:latest41e5d8f6f290
glibc@2.31-0ubuntu9.9
no fix listed

Open the chart page →

12,546
backendmojaloop0.1.01 of 6See more

backend mojaloop 0.1.0

1 of the 6 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
bitnamilegacy/mysql:8.4.5-debian-12-r07089d796fc9b
glibc@2.36-9+deb12u10
no fix listed

Open the chart page →

16,594
fspiop-transfer-api-svcmojaloop12.0.11 of 3See more

fspiop-transfer-api-svc mojaloop 12.0.1

1 of the 3 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
solsson/kafka:latest41e5d8f6f290
glibc@2.31-0ubuntu9.9
no fix listed

Open the chart page →

11,900
mojaloopmojaloop14.0.01 of 6See more

mojaloop mojaloop 14.0.0

1 of the 6 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
solsson/kafka:latest41e5d8f6f290
glibc@2.31-0ubuntu9.9
no fix listed

Open the chart page →

19,781
reporting-nifi-processor-svcmojaloop0.0.21 of 3See more

reporting-nifi-processor-svc mojaloop 0.0.2

1 of the 3 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
library/mongo:6.0.271a63fc2438e
glibc@2.31-0ubuntu9.9
no fix listed

Open the chart page →

6,355
mollysocketmollysocketVerified publisher0.2.81 of 1See more

mollysocket mollysocket 0.2.8

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
ghcr.io/mollyim/mollysocket:1.1.12a687393f8c8
glibc@2.36-9+deb12u3
no fix listed

Open the chart page →

3,181
mollysocketmollysocket-wrenixVerified publisher0.1.141 of 2See more

mollysocket mollysocket-wrenix 0.1.14

1 of the 2 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
ghcr.io/mollyim/mollysocket:1.7.1c675622546a4
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

2,669
mongo-compassmongo-compass-webVerified publisher1.1.41 of 1See more

mongo-compass mongo-compass-web 1.1.4

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
haohanyang/compass-web:0.5.1f4f8fe4e21f1
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

1,887
mongo-compassmongo-compass-web-helm1.1.01 of 1See more

mongo-compass mongo-compass-web-helm 1.1.0

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
haohanyang/compass-web:0.5.054f2112602ee
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

2,556
mongodb-admin-interfacemongo-db-admin-interfaceVerified publisher0.1.01 of 2See more

mongodb-admin-interface mongo-db-admin-interface 0.1.0

1 of the 2 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
library/mongo:5.041108d183e97
glibc@2.31-0ubuntu9.17
no fix listed

Open the chart page →

5,380
moodlemoodle1.0.31 of 2See more

moodle moodle 1.0.3

1 of the 2 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
cloudtooling/moodle:5.2.3f4f04e0fc401
glibc@2.36-9+deb12u14
no fix listed

Open the chart page →

4,316
cloudflare-tunnel-remotemoonswitchVerified publisher0.1.41 of 1See more

cloudflare-tunnel-remote moonswitch 0.1.4

1 of the 1 container images this version deploys carry CVE-2026-77117.

Container imageDigestPackageFixed in
cloudflare/cloudflared:latestb269e8abd07a
glibc@2.41-12+deb13u3
no fix listed

Open the chart page →

380

Container images carrying it

2,866 by charts deploying them

A fixed version is listed for 1 of the 4 affected packages.

Container imageDigestPackageFixed inUsed by
registry.gitlab.com/gitlab-org/build/cng/gitlab-workhorse-ee:v19.4.17419aa33eb17
glibc@2.41-12+deb13u4
no fix listed
1
registry.gitlab.com/gitlab-org/build/cng/kubectl:v19.4.1a072f0a41f28
glibc@2.41-12+deb13u4
no fix listed
1
registry.gitlab.com/infinitydon/registry/open5gs-aio:v2.2.2f6385712935f
glibc@2.31-0ubuntu9.2
no fix listed
1
registry.gitlab.com/school_guy/docker-typo3:13.4.30-197d868ed76185d7270d
glibc@2.36-9+deb12u14
no fix listed
1
registry.k8s.io/csi-secrets-store/driver:v1.6.1b48d7d13dd06
glibc@2.36-9+deb12u14
no fix listed
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.081a13703d6b8
glibc@2.36-9+deb12u3
no fix listed
1
registry.k8s.io/dns/k8s-dns-node-cache:1.26.78b9a78d101a1
glibc@2.36-9+deb12u13
no fix listed
1
registry.k8s.io/dns/k8s-dns-node-cache:1.23.1e3dccb1a21d1
glibc@2.36-9+deb12u7
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.5.00e64aedb0d0a
glibc@2.41-12
no fix listed
1
registry.k8s.io/git-sync/git-sync:v4.1.0fd9722fd02e3
glibc@2.36-9+deb12u3
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v0.8.2052f0618e9bc2
glibc@2.36-9+deb12u8
no fix listed
1
registry.k8s.io/node-problem-detector/node-problem-detector:v1.35.1c380751accc5
glibc@2.36-9+deb12u13
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.8.03e2bf2eaef9f
glibc@2.36-9+deb12u10
no fix listed
1
registry.k8s.io/sig-storage/local-volume-provisioner:v2.9.0f9d65db8bda2
glibc@2.36-9+deb12u14
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.13.41eb5a85180a4
glibc@2.36-9+deb12u14
no fix listed
1
registry.k8s.io/sig-storage/nfsplugin:v4.11.0ce5b5ccd5eb0
glibc@2.36-9+deb12u10
no fix listed
1

syft 1.42.1 · advisories as of 26 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.