What the vendor says is affected
- cbl2 moby-engine 24.0.9-12 on CBL Mariner 2.0
- cbl2 cert-manager 1.11.2-16 on CBL Mariner 2.0
- cbl2 moby-compose 2.17.3-9 on CBL Mariner 2.0
- cbl2 telegraf 1.29.4-10 on CBL Mariner 2.0
- azl3 gh 2.62.0-3 on Azure Linux 3.0
- azl3 docker-compose 2.27.0-2 on Azure Linux 3.0
- azl3 cert-manager 1.12.13-2 on Azure Linux 3.0
- azl3 telegraf 1.31.0-3 on Azure Linux 3.0
- azl3 moby-engine 25.0.3-9 on Azure Linux 3.0
- azl3 docker-buildx 0.14.0-2 on Azure Linux 3.0
- azl3 kubevirt 1.2.0-11 on Azure Linux 3.0
- azl3 packer 1.9.5-4 on Azure Linux 3.0
- azl3 cf-cli 8.7.3-4 on Azure Linux 3.0
- cbl2 packer 1.9.5-5 on CBL Mariner 2.0
- azl3 kubevirt 1.2.0-17 on Azure Linux 3.0
- azl3 docker-buildx 0.14.0-5 on Azure Linux 3.0
- azl3 moby-engine 25.0.3-13 on Azure Linux 3.0
- azl3 telegraf 1.31.0-10 on Azure Linux 3.0
- azl3 docker-compose 2.27.0-5 on Azure Linux 3.0
- azl3 gh 2.62.0-8 on Azure Linux 3.0
- cbl2 telegraf 1.29.4-15 on CBL Mariner 2.0
- cbl2 moby-engine 24.0.9-16 on CBL Mariner 2.0
- cbl2 telegraf 1.29.4-15 on CBL-Mariner 2.0
- cbl2 moby-compose 2.17.3-10 on CBL-Mariner 2.0
Versions the vendor lists as fixed
- 24.0.9-12
- 1.11.2-16
- 2.17.3-9
- 1.29.4-10
- 2.62.0-3
- 2.27.0-2
- 1.12.13-2
- 1.31.0-3
- 25.0.3-9
- 0.14.0-2
- 1.2.0-11
- 1.9.5-4
- 8.7.3-4
- 1.9.5-5
What the vendor recommends
CBL-Mariner Releases
Review the complete instructions on the vendor's siteWhen this advisory changed
- Published by Microsoft Security Response Center
The publication date reported by the vendor.
- Updated by Microsoft Security Response Center
The vendor changed the advisory after it was first published.
- Added to SecurityAlert
We collected the advisory from the official source.