What the vendor says is affected
- cbl2 telegraf 1.29.4-14 on CBL Mariner 2.0
- cbl2 kubevirt 0.59.0-27 on CBL Mariner 2.0
- cbl2 azcopy 10.25.1-4 on CBL Mariner 2.0
- cbl2 application-gateway-kubernetes-ingress 1.4.0-25 on CBL Mariner 2.0
- cbl2 etcd 3.5.21-1 on CBL Mariner 2.0
- cbl2 packer 1.9.5-11 on CBL Mariner 2.0
- azl3 etcd 3.5.18-1 on Azure Linux 3.0
- azl3 jx 3.10.182-1 on Azure Linux 3.0
- azl3 prometheus 2.45.4-12 on Azure Linux 3.0
- azl3 telegraf 1.31.0-6 on Azure Linux 3.0
- azl3 kubernetes 1.30.10-5 on Azure Linux 3.0
- azl3 keda 2.14.1-6 on Azure Linux 3.0
- azl3 dcos-cli 1.2.0-18 on Azure Linux 3.0
- azl3 application-gateway-kubernetes-ingress 1.7.7-1 on Azure Linux 3.0
- azl3 influxdb 2.7.5-3 on Azure Linux 3.0
- azl3 packer 1.9.5-8 on Azure Linux 3.0
- azl3 flannel 0.24.2-13 on Azure Linux 3.0
- azl3 cert-manager 1.12.15-1 on Azure Linux 3.0
- azl3 azcopy 10.25.1-4 on Azure Linux 3.0
- azl3 coredns 1.11.4-1 on Azure Linux 3.0
- azl3 coredns 1.11.1-4 on Azure Linux 3.0
- azl3 cert-manager 1.12.13-2 on Azure Linux 3.0
- azl3 flannel 0.24.2-14 on Azure Linux 3.0
- azl3 influxdb 2.7.5-5 on Azure Linux 3.0
Versions the vendor lists as fixed
- 1.29.4-14
- 0.59.0-27
- 10.25.1-4
- 1.4.0-25
- 3.5.21-1
- 1.9.5-11
- 3.5.18-1
- 3.10.182-1
- 2.45.4-12
- 1.31.0-6
- 1.30.10-5
- 2.14.1-6
- 1.2.0-18
- 1.7.7-1
- 2.7.5-3
- 1.9.5-8
- 0.24.2-13
- 1.12.15-1
- 1.11.4-1
- 25.0.3-13
- 24.0.9-17
- 2.6.1-22
- 0.0.2-22
- 1.11.1-18
What the vendor recommends
CBL-Mariner Releases
Review the complete instructions on the vendor's siteWhen this advisory changed
- Published by Microsoft Security Response Center
The publication date reported by the vendor.
- Updated by Microsoft Security Response Center
The vendor changed the advisory after it was first published.
- Added to SecurityAlert
We collected the advisory from the official source.