StackRadar

CVE-2026-78410

High

Advisory

Published 2 Sept 2026In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.8
base score, highest
EPSS
0.001
1st percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
2,593
of 17,821 indexed, latest versions
Container images
2,582
deployed by those charts
Fix available
2 of 3
affected packages

CVE-2026-78410 affecting package util-linux 2.40.2-5

Carried by container images the latest versions of 2,593 of 17,821 indexed charts deploy, on 2,582 images.

Affected packageAffected versionsFixed inImages
util-linuxdeb1:2.27.1-6ubuntu3.3, 1:2.38.1-5+deb12u1, 1:2.41.5-0+deb13u1+dhi3, 1:4.16.0-2+really2.41-5+47 more2.41.5-0+deb13u1+e22,487
util-linuxapk2.42-r0, 2.42.1-r02.42.3-r094
util-linuxrpm2.40.2-4.azl3no fix listed1
OSV records
ALPINE-CVE-2026-78410DEBIAN-CVE-2026-78410UBUNTU-CVE-2026-78410AZL-99390ECHO-5339-ad7c-f545

Charts affected

2,593 by stars
ChartLatestAffected imagesRadar Score

Container images carrying it

2,582 by charts deploying them

A fixed version is listed for 2 of the 3 affected packages.

Container imageDigestPackageFixed inUsed by
aktosecurity/akto-threat-detection-backend:latest15ebb75b94dc
util-linux@2.41.3-3ubuntu2.2
no fix listed
1
aktosecurity/akto-threat-detection-backend:1.15.7a6c1b933517f
util-linux@2.41.3-3ubuntu2
no fix listed
1
aktosecurity/data-ingestion-service213aded7adc5
util-linux@2.39.3-9ubuntu6.4
no fix listed
1
aktosecurity/data-ingestion-service:1.4.946ed5bcb04b2
util-linux@2.41.3-3ubuntu2
no fix listed
1
aktosecurity/data-ingestion-service:1.5.35d4eab1c36b9
util-linux@2.41.3-3ubuntu2
no fix listed
1
aktosecurity/mini-runtime:1.72.15498e3e35ecc2
util-linux@2.41.3-3ubuntu2
no fix listed
1
alazidis/stornx:1.1.1602d4f7f090c
util-linux@2.38.1-5+deb12u3
no fix listed
1
allegroai/clearml:2.0.0-613713ae38f7daf
util-linux@2.38.1-5+deb12u2
no fix listed
1
allegroai/clearml-agent-k8s-base:1.24-21772827a01bb5
util-linux@2.31.1-0.4ubuntu3.7
no fix listed
1
altinity/clickhouse-server:25.3.6.10034.altinitystable3396b15c51a2
util-linux@2.37.2-4ubuntu3.4
no fix listed
1
andrcuns/dependabot-gitlab:7.7.0-alpha.143060f159f4c
util-linux@2.39.3-9ubuntu6.5
no fix listed
1
andrewgaul/s3proxy:sha-85b0f987dc1d34174a5
util-linux@2.39.3-9ubuntu6.1
no fix listed
1
andrewgolikov55/intel-gpu-exporter:latestfcc001b61c0e
util-linux@2.37.2-4ubuntu3
no fix listed
1
andrewmackrodt/firefox-x11:142.0.1-r133f9080470c9
util-linux@2.37.2-4ubuntu3.4
no fix listed
1
anguda/ant-media:2.5c435285fc241
util-linux@2.34-0.1ubuntu9.3
no fix listed
1
ankane/pgvector:v0.5.1d3a9d8ac27bb
util-linux@2.38.1-5+b1
no fix listed
1
antiantiops/vscode-browser-docker:1.138.0d1182e8090a7
util-linux@2.39.3-9ubuntu6.6
no fix listed
1
antrea/antrea-agent-ubuntu:v2.7.0c10bc45c6272
util-linux@2.39.3-9ubuntu6.5
no fix listed
1
antrea/antrea-controller-ubuntu:v2.7.0f1373d39217c
util-linux@2.39.3-9ubuntu6.5
no fix listed
1
antrea/antrea-ui-frontend:v0.8.0ee9686bcefb8
util-linux@2.41-5
no fix listed
1
antrea/flow-aggregator:v2.7.0065193e7572f
util-linux@2.39.3-9ubuntu6.5
no fix listed
1
anujdatar/cups:25.07.01685df04a643b
util-linux@2.38.1-5+deb12u3
no fix listed
1
apache/activemq-artemis:2.44.00305c26f19ed
util-linux@2.39.3-9ubuntu6.3
no fix listed
1
apache/activemq-artemis:2.37.0bae523439ee3
util-linux@2.39.3-9ubuntu6
no fix listed
1
apache/airflow:2.8.4-python3.964e58748b6b9
util-linux@2.38.1-5+b1
no fix listed
1
apache/airflow:2.10.2-python3.9ce90bdc3d2af
util-linux@2.38.1-5+deb12u1
no fix listed
1
apache/airflow:2.8.1e5560ad0b86e
util-linux@2.38.1-5+b1
no fix listed
1
apache/apisix:3.16.0-ubuntu5e47692cac00
util-linux@2.39.3-9ubuntu6.5
no fix listed
1
apache/camel-k:2.11.0d173e7efe258
util-linux@2.41.3-3ubuntu2
no fix listed
1
apache/druid:29.0.10cef139b6bf1
util-linux@2.38.1-5+b1
no fix listed
1
apache/gravitino-iceberg-rest:1.3.080136ae753ee
util-linux@2.37.2-4ubuntu3.4
no fix listed
1
apache/hertzbeat:1.8.075d48a62748f
util-linux@2.39.3-9ubuntu6.4
no fix listed
1
apache/hertzbeat-collector:1.8.0a2bab1be574c
util-linux@2.39.3-9ubuntu6.4
no fix listed
1
apache/iotdb:0.13.3-nodeafa47bf1692a
util-linux@2.34-0.1ubuntu9.3
no fix listed
1
apache/nifi-registry:1.27.063b8e3e40742
util-linux@2.37.2-4ubuntu3.4
no fix listed
1
apachepulsar/pulsar:3.1.016f9fdab3fa6
util-linux@2.37.2-4ubuntu3
no fix listed
1
apachepulsar/pulsar:2.10.03b262ab7a7d9
util-linux@2.34-0.1ubuntu9.3
no fix listed
1
apachepulsar/pulsar:3.0.79c9947de139d
util-linux@2.37.2-4ubuntu3.4
no fix listed
1
apachepulsar/pulsar:2.9.0d056c89b7131
util-linux@2.34-0.1ubuntu9.1
no fix listed
1
apachepulsar/pulsar:2.8.2d538416d5afe
util-linux@2.34-0.1ubuntu9.1
no fix listed
1
apache/ranger:2.7.076c176e8a0e4
util-linux@2.37.2-4ubuntu3.4
no fix listed
1
apache/rocketmq:5.3.0434d8398f996
util-linux@2.39.3-9ubuntu6
no fix listed
1
apache/rocketmq-exporter:0.0.2c8fb51195444
util-linux@2.37.2-4ubuntu3
no fix listed
1
apache/skywalking-oap-server:9.2.0133d35d2c263
util-linux@2.37.2-4ubuntu3
no fix listed
1
apache/skywalking-oap-server:8.9.1b4ec8c18d079
util-linux@2.34-0.1ubuntu9.1
no fix listed
1
apache/skywalking-ui:9.2.0295f1dc87d98
util-linux@2.37.2-4ubuntu3
no fix listed
1
apache/skywalking-ui:8.9.180530f0308a5
util-linux@2.34-0.1ubuntu9.1
no fix listed
1
apache/superset:4.0.1ab9467fd712c
util-linux@2.38.1-5+deb12u1
no fix listed
1
apache/tika:latest-full80072bb73dd3
util-linux@2.41.3-3ubuntu2
no fix listed
1
apache/tika:3.3.1.090b7fa1dc018
util-linux@2.41.3-3ubuntu2
no fix listed
1

syft 1.42.1 · advisories as of 20 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.