StackRadar

CVE-2026-78410

High

Advisory

Published 2 Sept 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.001
1st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,547
of 17,813 indexed, latest versions
Container images
2,527
deployed by those charts
Fix available
2 of 3
affected packages

CVE-2026-78410 affecting package util-linux 2.40.2-5

Carried by container images the latest versions of 2,547 of 17,813 indexed charts deploy, on 2,527 images.

Affected packageAffected versionsFixed inImages
util-linuxdeb1:2.27.1-6ubuntu3.3, 1:2.38.1-5+deb12u1, 1:2.41.5-0+deb13u1+dhi3, 1:4.16.0-2+really2.41-5+47 more2.41.5-0+deb13u1+e22,433
util-linuxapk2.42-r0, 2.42.1-r02.42.3-r093
util-linuxrpm2.40.2-4.azl3no fix listed1
OSV records
ALPINE-CVE-2026-78410DEBIAN-CVE-2026-78410UBUNTU-CVE-2026-78410AZL-99390ECHO-5339-ad7c-f545

Charts affected

2,547 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

2,527 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
ghcr.io/wiremind/bitnami/redis:8.4.0-debian-12-r31f0f7ddc4370
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/wiremind/grafana-pdf-exporter:v1.7dbaa8527bf4c
util-linux@2.38.1-5+b1
no fix listed
1
ghcr.io/wittdennis/calibre-web:1.1.1aa7d5d5dd6be
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/wittdennis/homeassistant-otbr:4.2.5282f840612d9
util-linux@2.41-5
no fix listed
1
ghcr.io/wizarrrr/wizarr:4.2.0-beta.3d19d886d5090
util-linux@2.38.1-5+b1
no fix listed
1
ghcr.io/wmde/wbaas-backup:v0.1.78e6a9516eac0
util-linux@2.31.1-0.4ubuntu3.7
no fix listed
1
ghcr.io/wolveix/satisfactory-server:v1.9.10e0f2f8c97598
util-linux@2.37.2-4ubuntu3.4
no fix listed
1
ghcr.io/woodenmaiden/relfinderreformedfront:latest344f53763b25
util-linux@2.38.1-5+deb12u1
no fix listed
1
ghcr.io/wrenix/autopush-rs/autoconnect:1.84.285f93ced88b2
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/wrenix/autopush-rs/autoendpoint:1.84.2d95e9a124eed
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/wundergraph/cosmo/cdn:0.14.1d86fcf169f15
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/wundergraph/cosmo/otelcollector:0.18.15a6fe78d4d15
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/yahoon/helm-demo:1.0.02930290a758c
util-linux@2.41-5
no fix listed
1
ghcr.io/yurymkomarov/docker/kubernetes-kiosk-chromium:0.1.27bff29dcec72
util-linux@2.38.1-5+deb12u3
no fix listed
1
ghcr.io/zammad/zammad:7.1.3-0014ce435c77651e
util-linux@2.41.5-0+deb13u1
no fix listed
1
ghcr.io/zazukoians/qlever-server:v0.10.11de7869ab46e
util-linux@2.39.3-9ubuntu6.6
no fix listed
1
ghcr.io/zoriya/kyoo_autosync:4.7.1fbba58ddb1a6
util-linux@2.38.1-5+deb12u2
no fix listed
1
ghcr.io/zoriya/kyoo_back:4.7.1416e980f76a6
util-linux@2.38.1-5+deb12u2
no fix listed
1
ghcr.io/zoriya/kyoo_migrations:4.7.1f7e607f24071
util-linux@2.38.1-5+deb12u2
no fix listed
1
ghcr.io/zoriya/kyoo_scanner:4.7.17dc0ee57b628
util-linux@2.38.1-5+deb12u2
no fix listed
1
ghcr.io/zystem-io/zymtrace-pub-gateway:26.9.2ae9ae0925ff8
util-linux@2.37.2-4ubuntu3.4
no fix listed
1
mcr.microsoft.com/azure-application-gateway/kubernetes-ingress:1.6.0bccaa701e2df
util-linux@2.34-0.1ubuntu9.3
no fix listed
1
mcr.microsoft.com/mssql/server:2017-latest13221ac5f673
util-linux@2.31.1-0.4ubuntu3.7
no fix listed
1
mcr.microsoft.com/mssql/server:2019-CU16-ubuntu-20.0449a57dc220b1
util-linux@2.34-0.1ubuntu9.3
no fix listed
1
mcr.microsoft.com/mssql/server:latest4bab24f36c1e
util-linux@2.39.3-9ubuntu6.5
no fix listed
1
mcr.microsoft.com/mssql/server:2025-CU5-ubuntu-24.04cee0f4db03b5
util-linux@2.39.3-9ubuntu6.5
no fix listed
1
mcr.microsoft.com/mssql/server:2017-latestfbf79e0fea59
util-linux@2.31.1-0.4ubuntu3.7
no fix listed
1
mcr.microsoft.com/oss/v2/kubernetes-csi/secrets-store/driver:v1.5.65f91243cfd60
util-linux@2.40.2-4.azl3
no fix listed
1
mcr.microsoft.com/playwright/mcp:v0.0.43e101b832b34d
util-linux@2.38.1-5+deb12u3
no fix listed
1
public.ecr.aws/aktosecurity/akto-ai-automated-testing:latest5a5d32281374
util-linux@2.38.1-5+deb12u3
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-security-database-abstractor:1.66.9138c8b82c398
util-linux@2.39.3-9ubuntu6.5
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-security-database-abstractor:latestf669a6eacf8c
util-linux@2.39.3-9ubuntu6.5
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-security-mini-runtime:latest5d55a742a2bc
util-linux@2.41.3-3ubuntu2.2
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-security-mini-runtime:1.74.6_local8b9208c09d76
util-linux@2.41.3-3ubuntu2.2
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-security-mini-runtime:latest8be3ed26f746
util-linux@2.41.3-3ubuntu2.2
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-security-mini-testing:1.72.6_local43316f900242
util-linux@2.41.3-3ubuntu2
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-security-mini-testing:1.74.4_local5bda14f66e8e
util-linux@2.41.3-3ubuntu2.2
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-security-testing-db-layer:1.74.4_local1ed844ecab29
util-linux@2.39.3-9ubuntu6.4
no fix listed
1
public.ecr.aws/aktosecurity/akto-api-testing:latest97d830d5538a
util-linux@2.39.3-9ubuntu6.5
no fix listed
1
public.ecr.aws/aktosecurity/akto-threat-detection:latest3f103ce347ce
util-linux@2.41.3-3ubuntu2.2
no fix listed
1
public.ecr.aws/aktosecurity/akto-threat-detection:1.16.2a47eb6cc17ea
util-linux@2.41.3-3ubuntu2
no fix listed
1
public.ecr.aws/aktosecurity/redis47200b041382
util-linux@2.38.1-5+deb12u3
no fix listed
1
public.ecr.aws/aktosecurity/redis:latestV8.6.2832d7785830f
util-linux@2.41-5
no fix listed
1
public.ecr.aws/datadog/agent:7.73.0f4925b15ce94
util-linux@2.39.3-9ubuntu6.3
no fix listed
1
public.ecr.aws/datadog/cloudprem:v0.1.33bda08753668d
util-linux@2.39.3-9ubuntu6.5
no fix listed
1
public.ecr.aws/decisiveai/valkey:9.0.159c7e728fb3a
util-linux@2.41-5
no fix listed
1
public.ecr.aws/flanksource/incident-manager-ui:v1.4.317fea799d4fb2f
util-linux@2.38.1-5+deb12u3
no fix listed
1
public.ecr.aws/groundcovercom/grafana-groundcover:v0.0.54-grafana11.3.7ee9d973e3952
util-linux@2.37.2-4ubuntu3.4
no fix listed
1
public.ecr.aws/groundcovercom/postgres:18.1-20260208b7d7910c0bb0
util-linux@2.41-5+e6
2.41.5-0+deb13u1+e2
1
public.ecr.aws/groundcovercom/temporalio/admin-tools:1.29.7-20260730-1af8cea3b8538
util-linux@2.41-5+e11
2.41.5-0+deb13u1+e2
1

syft 1.42.1 · advisories as of 19 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.