StackRadar

CVE-2026-78408

High

Advisory

Published 2 Sept 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.9
base score, highest
EPSS
0.001
2nd percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,718
of 17,792 indexed, latest versions
Container images
2,673
deployed by those charts
Fix available
2 of 3
affected packages

CVE-2026-78408 affecting package util-linux 2.40.2-5

Carried by container images the latest versions of 2,718 of 17,792 indexed charts deploy, on 2,673 images.

Affected packageAffected versionsFixed inImages
util-linuxdeb1:2.27.1-6ubuntu3.3, 1:2.38.1-5+deb12u1, 1:4.16.0-2+really2.41-5, 2.20.1-5.1ubuntu20.2+46 more2.41.5-0+deb13u1+e22,397
util-linuxapk2.41-r9, 2.41.2-r0, 2.41.4-r0, 2.42-r0+1 more2.41.6-r1, 2.42.3-r1275
util-linuxrpm2.40.2-4.azl3no fix listed1
OSV records
ALPINE-CVE-2026-78408DEBIAN-CVE-2026-78408UBUNTU-CVE-2026-78408AZL-99393ECHO-3f6d-9602-8caa
Trending
Rank 32 in indexed charts, since 5 Sept 2026. See the ranking →

Charts affected

2,718 by stars
ChartLatestAffected imagesRadar Score
jellyfinloeken-at-homeVerified publisher10.11.81 of 1See more

jellyfin loeken-at-home 10.11.8

1 of the 1 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
loeken/jellyfin:10.11.87efbc24e47b0
util-linux@2.41.4-r0
2.41.6-r1

Open the chart page →

887
mongooseimmongoose0.4.111 of 1See more

mongooseim mongoose 0.4.11

1 of the 1 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
erlangsolutions/mongooseim:6.6.0cc5bf032931f
util-linux@2.39.3-9ubuntu6.4
no fix listed

Open the chart page →

1,307
jira-softwaremoxVerified publisher2.7.11 of 3See more

jira-software mox 2.7.1

1 of the 3 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
atlassian/jira-software:9.7.264a75aa4ec4e
util-linux@2.39.3-9ubuntu6.2
no fix listed

Open the chart page →

8,692
nginx-ingressnginx-ingress-chartVerified publisher0.0.0-edge1 of 1See more

nginx-ingress nginx-ingress-chart 0.0.0-edge

1 of the 1 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
nginx/nginx-ingress:edge520d439f9a9a
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

1,266
technitium-dnsserverobeoneVerified publisher1.13.01 of 1See more

technitium-dnsserver obeone 1.13.0

1 of the 1 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
technitium/dns-server:15.4.0df7d90ef0f7b
util-linux@2.39.3-9ubuntu6.5
no fix listed

Open the chart page →

1,231
passboltpassbolt2.1.16 of 6See more

passbolt passbolt 2.1.1

6 of the 6 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:12.0.2-debian-12-r0888cdaae3cb9
util-linux@2.38.1-5+deb12u3
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
util-linux@2.38.1-5+deb12u3
no fix listed
bitnamilegacy/redis-sentinel:8.2.1-debian-12-r00ca3ea1d2f82
util-linux@2.38.1-5+deb12u3
no fix listed
library/haproxy:3.4.10f597665a2a6
util-linux@2.41-5
no fix listed
library/mariadb:latestdd9b303aed4f
util-linux@2.39.3-9ubuntu6.5
no fix listed
passbolt/passbolt:5.13.0-1-ceaf3a620902a0
util-linux@2.41-5
no fix listed

Open the chart page →

13,523
py-kube-downscalerpy-kube-downscalerVerified publisher0.3.121 of 1See more

py-kube-downscaler py-kube-downscaler 0.3.12

1 of the 1 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
ghcr.io/caas-team/py-kube-downscaler:26.4.0af05a098b0d2
util-linux@2.41.2-r0
2.41.6-r1

Open the chart page →

732
reposilitereposilite1.4.21 of 1See more

reposilite reposilite 1.4.2

1 of the 1 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
dzikoysk/reposilite:3.6.390de4c8e6c0e
util-linux@2.39.3-9ubuntu6.5
no fix listed

Open the chart page →

1,033
selenium-gridselenium-grid0.59.13 of 4See more

selenium-grid selenium-grid 0.59.1

3 of the 4 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
selenium/hub:4.48.0-20260905d47c27474cb4
util-linux@2.39.3-9ubuntu6.6
no fix listed
selenium/node-chrome:4.48.0-202609055ac71fd8dd1e
util-linux@2.39.3-9ubuntu6.6
no fix listed
selenium/node-firefox:4.48.0-2026090574a5c1c90f95
util-linux@2.39.3-9ubuntu6.6
no fix listed

Open the chart page →

7,174
mssqlserver-2022simcube1.2.31 of 1See more

mssqlserver-2022 simcube 1.2.3

1 of the 1 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
mcr.microsoft.com/mssql/server:2022-latestba4c8329f48f
util-linux@2.37.2-4ubuntu3.5
no fix listed

Open the chart page →

2,955
swo-k8s-collectorsolarwindsOfficialVerified publisher5.3.01 of 3See more

swo-k8s-collector solarwinds 5.3.0

1 of the 3 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
solarwinds/solarwinds-otel-collector:0.152.3-k8s3c1110e8bdfb
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

2,377
thehivestrangebee-helmOfficialVerified publisher1.0.74 of 7See more

thehive strangebee-helm 1.0.7

4 of the 7 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
bitnamilegacy/cassandra:4.1.7-debian-12-r32b7a217999a1
util-linux@2.38.1-5+deb12u2
no fix listed
bitnamilegacy/elasticsearch:9.1.2-debian-12-r000176a47afa0
util-linux@2.38.1-5+deb12u3
no fix listed
bitnamilegacy/os-shell:12-debian-12-r5177e65e9d633e
util-linux@2.38.1-5+deb12u3
no fix listed
strangebee/thehive:5.8.0-1a7f7b05fba24
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

16,220
truenas-csptruenas-cspVerified publisher1.2.41 of 11See more

truenas-csp truenas-csp 1.2.4

1 of the 11 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
quay.io/datamattsson/truenas-csp:v3.2.09e58f2127d85
util-linux@2.42-r0
2.42.3-r1

Open the chart page →

5,918
uffizzi-controlleruffizzi-controller2.4.61 of 11See more

uffizzi-controller uffizzi-controller 2.4.6

1 of the 11 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
uffizzi/controller:latest0344805f267b
util-linux@2.38.1-5+b1
no fix listed

Open the chart page →

14,327
druidwiremindVerified publisher1.22.11 of 3See more

druid wiremind 1.22.1

1 of the 3 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
apache/druid:29.0.10cef139b6bf1
util-linux@2.38.1-5+b1
no fix listed

Open the chart page →

7,947
zigbee2mqttzigbee2mqtt2.14.11 of 2See more

zigbee2mqtt zigbee2mqtt 2.14.1

1 of the 2 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
koenkk/zigbee2mqtt:2.14.1fef0de769dcd
util-linux@2.42.1-r0
2.42.3-r1

Open the chart page →

1,032
abcdesktopabcdesktopOfficialVerified publisher4.4.121 of 9See more

abcdesktop abcdesktop 4.4.12

1 of the 9 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
ghcr.io/abcdesktopio/mongo:safe8.0c4c1938a973b
util-linux@2.39.3-9ubuntu6.6
no fix listed

Open the chart page →

811
minecraft-overvieweralphani-helm-chartsVerified publisher0.1.01 of 3See more

minecraft-overviewer alphani-helm-charts 0.1.0

1 of the 3 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
library/nginx:stabled5792f71a949
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

3,402
photoprismandrenarchyVerified publisher8.15.01 of 1See more

photoprism andrenarchy 8.15.0

1 of the 1 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
photoprism/photoprism:260728958642220223
util-linux@2.41.3-3ubuntu2
no fix listed

Open the chart page →

8,923
openvpn-asas-helm-chartOfficialVerified publisher0.2.11 of 1See more

openvpn-as as-helm-chart 0.2.1

1 of the 1 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
openvpn/openvpn-as:latest2253c10ec652
util-linux@2.39.3-9ubuntu6.5
no fix listed

Open the chart page →

2,722
bambooatlassian-data-centerVerified publisher2.0.151 of 2See more

bamboo atlassian-data-center 2.0.15

1 of the 2 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
atlassian/bamboo:12.1.114af4bb6c8d46
util-linux@2.39.3-9ubuntu6.6
no fix listed

Open the chart page →

2,108
baserowbaserow-chartVerified publisher1.0.565 of 6See more

baserow baserow-chart 1.0.56

5 of the 6 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
baserow/backend:2.3.37c00549b3a6f
util-linux@2.41-5
no fix listed
baserow/web-frontend:2.3.3566d24c7d9f5
util-linux@2.41-5
no fix listed
bitnamilegacy/minio:2024.7.4-debian-12-r0952f86d1116c
util-linux@2.38.1-5+deb12u1
no fix listed
bitnamilegacy/postgresql:16.4.0-debian-12-r1494bc968141e7
util-linux@2.38.1-5+deb12u1
no fix listed
bitnamilegacy/redis:7.2.5-debian-12-r05261cae9e407
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

17,413
fadicetic0.3.12 of 25See more

fadi cetic 0.3.1

2 of the 25 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
jupyterhub/k8s-hub:0.11.1b6b4a1a34bf0
util-linux@2.34-0.1ubuntu9.1
no fix listed
jupyterhub/k8s-singleuser-sample:0.11.1e3e6f3051df8
util-linux@2.34-0.1ubuntu9.1
no fix listed

Open the chart page →

53,052
pgadmincetic0.1.121 of 1See more

pgadmin cetic 0.1.12

1 of the 1 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
dpage/pgadmin4:latest2f4ce946ddf8
util-linux@2.42.1-r0
2.42.3-r1

Open the chart page →

398
headwind-mdmchristianhuthVerified publisher5.10.22 of 2See more

headwind-mdm christianhuth 5.10.2

2 of the 2 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:17.6.0-debian-12-r4926356130b77
util-linux@2.38.1-5+deb12u3
no fix listed
headwindmdm/hmdm:0.1.93550b4840840
util-linux@2.37.2-4ubuntu3.5
no fix listed

Open the chart page →

5,929
dolibarrcowboysysopVerified publisher9.0.32 of 3See more

dolibarr cowboysysop 9.0.3

2 of the 3 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb:11.4.5-debian-12-r933ce23601fc9
util-linux@2.38.1-5+deb12u3
no fix listed
dolibarr/dolibarr:22.0.47ad88fc9b13c
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

9,208
daskhubdask2024.1.11 of 9See more

daskhub dask 2024.1.1

1 of the 9 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
pangeo/base-notebook:2024.01.155fbe688a4f80
util-linux@2.37.2-4ubuntu3
no fix listed

Open the chart page →

14,151
seafiledatamateVerified publisher0.6.04 of 6See more

seafile datamate 0.6.0

4 of the 6 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
bitnamilegacy/mariadb-galera:11.4.3-debian-12-r0cb8beb6dbb58
util-linux@2.38.1-5+deb12u1
no fix listed
bitnamilegacy/memcached:1.6.29-debian-12-r4ff0e7239c17c
util-linux@2.38.1-5+deb12u1
no fix listed
bitnamilegacy/minio:2024.8.3-debian-12-r15501c419f42e
util-linux@2.38.1-5+deb12u1
no fix listed
datamate/seafile-professional:11.0.202dd66b722464
util-linux@2.37.2-4ubuntu3.4
no fix listed

Open the chart page →

27,426
dialdialOfficialVerified publisher7.2.02 of 4See more

dial dial 7.2.0

2 of the 4 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
epam/ai-dial-chat-themes:0.19.131af7cf96ee1
util-linux@2.42.1-r0
2.42.3-r1
valkey/valkey:9.0.2930b41430fb7
util-linux@2.41-5
no fix listed

Open the chart page →

2,186
jellyfindjjudas21Verified publisher4.0.81 of 1See more

jellyfin djjudas21 4.0.8

1 of the 1 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
jellyfin/jellyfin:10.11.11aefb67e6a7ff
util-linux@2.41-5
no fix listed

Open the chart page →

2,626
flyteflyte1.16.81 of 11See more

flyte flyte 1.16.8

1 of the 11 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
redocly/redoc:latest2e26bb660574
util-linux@2.41.4-r0
2.41.6-r1

Open the chart page →

3,282
plexgabe565Verified publisher0.5.11 of 1See more

plex gabe565 0.5.1

1 of the 1 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
ghcr.io/linuxserver/plex:version-1.41.4.9463-630c9f557e6d2775e77ec
util-linux@2.39.3-9ubuntu6.2
no fix listed

Open the chart page →

2,583
geonode-k8sgeonode-k8sVerified publisher2.0.05 of 10See more

geonode-k8s geonode-k8s 2.0.0

5 of the 10 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
geonode/geoserver:2.28.4-latest81b1d431b7e9
util-linux@2.37.2-4ubuntu3.5
no fix listed
geopython/pycsw:3.0.0-beta284662ea6b78b
util-linux@2.38.1-5+deb12u3
no fix listed
library/memcached:1.6.40cc523a19da58
util-linux@2.41-5
no fix listed
library/redis:8.4.03906b477e4b6
util-linux@2.38.1-5+deb12u3
no fix listed
nginxinc/nginx-unprivileged:1.31.2-alpine3.236320020c7da8
util-linux@2.41.4-r0
2.41.6-r1

Open the chart page →

14,112
glpiglpi-conteiner0.1.03 of 3See more

glpi glpi-conteiner 0.1.0

3 of the 3 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
library/mariadb:latestdd9b303aed4f
util-linux@2.39.3-9ubuntu6.5
no fix listed
library/phpmyadmin:latest3a8a8d6b5289
util-linux@2.41.5-0+deb13u1
no fix listed
vdiogov/glpi-conteiner:latest6945f84f0058
util-linux@2.38.1-5+deb12u1
no fix listed

Open the chart page →

12,359
grafana-mcpgrafana-communityVerified publisher0.23.21 of 1See more

grafana-mcp grafana-community 0.23.2

1 of the 1 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
grafana/mcp-grafana:1.4.2f87fa67a561f
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

1,090
dolibarrhelmforgeVerified publisher1.2.181 of 3See more

dolibarr helmforge 1.2.18

1 of the 3 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
dolibarr/dolibarr:24.0.069ec52e3b7ef
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

4,172
karakeephelmforgeVerified publisher1.2.92 of 3See more

karakeep helmforge 1.2.9

2 of the 3 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
ghcr.io/browserless/chromium:v2.55.42ed0183564d7
util-linux@2.39.3-9ubuntu6.5
no fix listed
ghcr.io/karakeep-app/karakeep:0.33.2b069e4307dec
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

9,557
openhabhelmforgeVerified publisher1.2.01 of 1See more

openhab helmforge 1.2.0

1 of the 1 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
openhab/openhab:5.2.1bfd4a60e90da
util-linux@2.41-5
no fix listed

Open the chart page →

3,664
postgresqlhelmforgeVerified publisher2.0.51 of 1See more

postgresql helmforge 2.0.5

1 of the 1 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

1,649
umamihelmforgeVerified publisher2.3.31 of 3See more

umami helmforge 2.3.3

1 of the 3 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
library/postgres:18.6-trixie4ef4dbc939d6
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

2,050
openctihelm-openctiVerified publisher3.0.101See more

opencti helm-opencti 3.0.10

1 container image this version deploys carries CVE-2026-78408.

Container imageDigestPackageFixed in
bitnamilegacy/rabbitmq:4.1.2-debian-12-r1fac502149c40
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

hertzbeathertzbeatOfficialVerified publisher1.8.13 of 4See more

hertzbeat hertzbeat 1.8.1

3 of the 4 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
apache/hertzbeat:1.8.075d48a62748f
util-linux@2.39.3-9ubuntu6.4
no fix listed
apache/hertzbeat-collector:1.8.0a2bab1be574c
util-linux@2.39.3-9ubuntu6.4
no fix listed
library/postgres:159b1d34adbce1
util-linux@2.41.5-0+deb13u1
no fix listed

Open the chart page →

14,181
infrahubinfrahubVerified publisher4.33.24 of 5See more

infrahub infrahub 4.33.2

4 of the 5 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
bitnamilegacy/postgresql:14.13.0df6ec02e2b9a
util-linux@2.38.1-5+deb12u2
no fix listed
bitnamilegacy/rabbitmq:4.1.3-debian-12-r19e635efba431
util-linux@2.38.1-5+deb12u3
no fix listed
bitnamilegacy/redis:8.2.1-debian-12-r025bf63f3caf7
util-linux@2.38.1-5+deb12u3
no fix listed
library/neo4j:2026.05.06c162e2432f8
util-linux@2.41-5
no fix listed

Open the chart page →

10,522
plexk8s-home-lab-repo7.3.11 of 1See more

plex k8s-home-lab-repo 7.3.1

1 of the 1 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
ghcr.io/home-operations/plex:1.43.1a9c3723cb31c
util-linux@2.39.3-9ubuntu6.5
no fix listed

Open the chart page →

1,729
kamu-api-serverkamuVerified publisher0.89.01 of 1See more

kamu-api-server kamu 0.89.0

1 of the 1 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
ghcr.io/kamu-data/kamu-api-server:0.89.04ed7a896dd2b
util-linux@2.34-0.1ubuntu9.6
no fix listed

Open the chart page →

6,350
kubeflowkubeflow1.6.25 of 45See more

kubeflow kubeflow 1.6.2

5 of the 45 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
istio/proxyv2:1.9.687a9db561d2e
util-linux@2.31.1-0.4ubuntu3.7
no fix listed
istio/proxyv2:1.14.1df69c1a7af7c
util-linux@2.34-0.1ubuntu9.3
no fix listed
library/python:3.7eedf63967cdb
util-linux@2.38.1-5+b1
no fix listed
gcr.io/ml-pipeline/metadata-envoy:2.0.0-alpha.5e8bc6cf08613
util-linux@2.27.1-6ubuntu3.9
no fix listed
gcr.io/tfx-oss-public/ml_metadata_store_server:1.5.0db8691752b4c
util-linux@2.31.1-0.4ubuntu3.7
no fix listed

Open the chart page →

97,217
kubernetes-loggingkubernetes-logging4.8.01 of 6See more

kubernetes-logging kubernetes-logging 4.8.0

1 of the 6 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
util-linux@2.34-0.1ubuntu9.4
no fix listed

Open the chart page →

10,573
testkubekubeshop2.13.22 of 5See more

testkube kubeshop 2.13.2

2 of the 5 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
kubeshop/bitnami-mongodb:8.3.8d48b172d99d8
util-linux@2.39.3-9ubuntu6.5
no fix listed
kubeshop/testkube-minio:2025.10d8e1af6aca99
util-linux@2.38.1-5+deb12u3
no fix listed

Open the chart page →

5,151
venti-stackkuossOfficialVerified publisher0.5.01 of 9See more

venti-stack kuoss 0.5.0

1 of the 9 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
ghcr.io/kuoss/lethe:v0.3.3ebdf55fd5705
util-linux@2.41-r9
2.41.6-r1

Open the chart page →

3,830
librechatlibrechat-openshiftVerified publisher1.9.02 of 3See more

librechat librechat-openshift 1.9.0

2 of the 3 container images this version deploys carry CVE-2026-78408.

Container imageDigestPackageFixed in
library/mongo:8.0.20098862b1339f
util-linux@2.39.3-9ubuntu6.5
no fix listed
ghcr.io/bat-bs/bitnami-pgvector:pg1619ebe07b4daf
util-linux@2.38.1-5+deb12u2
no fix listed

Open the chart page →

5,849

Container images carrying it

2,673 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
public.ecr.aws/truefoundrycloud/async-service-distributor:5d48113bc678d694a0c8f8dabb2207c5aa2cfc53f74851ce31f5
util-linux@2.38.1-5+b1
no fix listed
1
quay.io/aerokube/jumphost:1.0.170fd7c00418d
util-linux@2.37.2-4ubuntu3.3
no fix listed
1
quay.io/aerokube/keygen:1.0.1578934444f04
util-linux@2.37.2-4ubuntu3.3
no fix listed
1
quay.io/argoproj/argocd:v3.5.10deb1a1c9176
util-linux@2.41.3-3ubuntu2
no fix listed
1
quay.io/argoproj/argocd:v2.4.115b6701d8fb31
util-linux@2.37.2-4ubuntu3
no fix listed
1
quay.io/argoproj/argocd:v3.0.395b5cf7ba6fe
util-linux@2.39.3-9ubuntu6.2
no fix listed
1
quay.io/argoproj/argocd:v3.1.1a36ab0c0860c
util-linux@2.39.3-9ubuntu6.3
no fix listed
1
quay.io/argoproj/argocd:v2.8.6acaf37352569
util-linux@2.37.2-4ubuntu3
no fix listed
1
quay.io/cilium/cilium:v1.15.1351d6685dc6f
util-linux@2.37.2-4ubuntu3
no fix listed
1
quay.io/cilium/cilium:v1.18.2858f807ea4e2
util-linux@2.39.3-9ubuntu6.3
no fix listed
1
quay.io/cilium/cilium:v1.17.14cdcfab5b4466
util-linux@2.39.3-9ubuntu6.5
no fix listed
1
quay.io/cilium/cilium-envoy:v1.35.9-1773656288-7b052e66eb2cfc5ac130ce0a5be66202a10d83be60031f396695
util-linux@2.39.3-9ubuntu6.5
no fix listed
1
quay.io/cilium/cilium-envoy:v1.34.7-1757592137-1a52bb680a956879722f48c591a2ca90f77913247932d656b63f
util-linux@2.39.3-9ubuntu6.3
no fix listed
1
quay.io/clustersecret/clustersecret:0.0.14a9f835d1b241
util-linux@2.38.1-5+deb12u3
no fix listed
1
quay.io/codefresh/dind:3.0.250885ab519dac
util-linux@2.42.1-r0
2.42.3-r1
1
quay.io/codefresh/redis:7.4.3-debian-12-r0935f97598255
util-linux@2.38.1-5+deb12u3
no fix listed
1
quay.io/datamattsson/truenas-csp:v3.2.09e58f2127d85
util-linux@2.42-r0
2.42.3-r1
1
quay.io/deployhub/ms-nginx:svccat-v11.0.815-g717581d2d3400664e8
util-linux@2.41.2-r0
2.41.6-r1
1
quay.io/enix/topomatik:1.3.1d9f0bec83ef0
util-linux@2.37.2-4ubuntu3.5
no fix listed
1
quay.io/evryfs/docker-mcrouter:0.40.0-9a2d3a4c67b0f
util-linux@2.31.1-0.4ubuntu3.7
no fix listed
1
quay.io/evryfs/spring-boot-admin:2.7.1060950ef63764
util-linux@2.37.2-4ubuntu3
no fix listed
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
util-linux@2.37.2-4ubuntu3
no fix listed
1
quay.io/galaxyproject/galaxy-min:26.1.12c324c9789f5
util-linux@2.41-5
no fix listed
1
quay.io/go-skynet/local-ai:latestd78cd113b2bc
util-linux@2.39.3-9ubuntu6.5
no fix listed
1
quay.io/groundcover/tools:20260719b705e0cbe171
util-linux@2.41-5+e11
2.41.5-0+deb13u1+e2
1
quay.io/invidious/invidious:latest6f5c81c1e29d
util-linux@2.42.1-r0
2.42.3-r1
1
quay.io/isindir/sops-secrets-operator:0.21.27bba7083dfa0
util-linux@2.41.3-3ubuntu2
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.4.2108fbb01c3fe
util-linux@2.38.1-5+deb12u3
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.5113e372cf71b
util-linux@2.38.1-5+deb12u3
no fix listed
1
quay.io/jupyterhub/k8s-hub:4.3.492f883d09270
util-linux@2.38.1-5+deb12u3
no fix listed
1
quay.io/jupyterhub/k8s-singleuser-sample:4.4.265e1b09fc8c9
util-linux@2.38.1-5+deb12u3
no fix listed
1
quay.io/kannika/kannika-api:0.18.0bcf9906d5a3c
util-linux@2.41.5-0+deb13u1
no fix listed
1
quay.io/kiwigrid/k8s-sidecar:2.10.021b9fe7bb29d
util-linux@2.41-r9
2.41.6-r1
1
quay.io/kiwigrid/k8s-sidecar:2.7.3694950d736c8
util-linux@2.41-r9
2.41.6-r1
1
quay.io/kiwigrid/k8s-sidecar:1.30.10835d79d8fbae
util-linux@2.41-r9
2.41.6-r1
1
quay.io/kiwigrid/k8s-sidecar:2.6.0a6c101156d42
util-linux@2.41.2-r0
2.41.6-r1
1
quay.io/maxiv/pieeat:0.9.3099715479210
util-linux@2.41-5
no fix listed
1
quay.io/mittwald/kube-httpcache:stable2169032c5840
util-linux@2.38.1-5+deb12u3
no fix listed
1
quay.io/mittwald/kube-mail:latest04f1099241fc
util-linux@2.38.1-5+deb12u3
no fix listed
1
quay.io/mongodb/mongodb-enterprise-operator:1.8.2a1c3843b03bc
util-linux@2.27.1-6ubuntu3.10
no fix listed
1
quay.io/ocellusai/operator:v0.10.59ff01f642e2b
util-linux@2.41-5
no fix listed
1
quay.io/opsmxpublic/rabbitmq:4.2-management3408107e5cc4
util-linux@2.39.3-9ubuntu6.3
no fix listed
1
quay.io/opsmxpublic/spin-sample-pipeline:v1.0.1c6a934439421
util-linux@2.27.1-6ubuntu3.6
no fix listed
1
quay.io/opsmxpublic/ubi8-oes-datascience:isd-spin-2025.10.01-af26a30d4-202511261054d8f66f4117fe
util-linux@2.41-5
no fix listed
1
quay.io/poundex/tekton-stash-and-cache:0.2.2e854423caa09
util-linux@2.41.3-3ubuntu2
no fix listed
1
quay.io/seamware/onboarding:0.2.2b406475f9f00
util-linux@2.38.1-5+deb12u3
no fix listed
1
quay.io/shesselink81/anna-nginx:v1.31.1120c19fa8a918
util-linux@2.42.1-r0
2.42.3-r1
1
quay.io/shesselink81/hesselinkme-nginx:v1.31.114f43beb13fc2
util-linux@2.42.1-r0
2.42.3-r1
1
quay.io/wi_stefan/consent-manager:0.0.656399619568b
util-linux@2.38.1-5+deb12u3
no fix listed
1
quay.io/yushiwho/api:e1f9d77e0d9b93dbf2b
util-linux@2.38.1-5+b1
no fix listed
1

syft 1.42.1 · advisories as of 16 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.