What the vendor says is affected
- cbl2 golang 1.18.8-5 on CBL Mariner 2.0
- cbl2 golang 1.22.7-2 on CBL Mariner 2.0
- cbl2 msft-golang 1.23.3-2 on CBL Mariner 2.0
- cbl2 msft-golang 1.24.1-3 on CBL Mariner 2.0
- cbl2 golang 1.22.7-3 on CBL Mariner 2.0
- cbl2 msft-golang 1.24.8-1 on CBL Mariner 2.0
- cbl2 msft-golang 1.24.9-1 on CBL Mariner 2.0
- cbl2 msft-golang 1.24.12-1 on CBL Mariner 2.0
- cbl2 msft-golang 1.24.13-1 on CBL Mariner 2.0
- cbl2 msft-golang 1.24.13-1 on CBL-Mariner 2.0
- cbl2 golang 1.18.8-7 on CBL-Mariner 2.0
- cbl2 golang 1.18.8-7 on CBL Mariner 2.0
- cbl2 msft-golang 1.24.5-1 on CBL Mariner 2.0
- cbl2 msft-golang 1.24.11-1 on CBL Mariner 2.0
- cbl2 golang 1.22.7-3 on CBL-Mariner 2.0
- azl3 golang 1.27.0-1 on Azure Linux 3.0
Versions the vendor lists as fixed
- 1.18.8-5
- 1.22.7-2
- 1.23.3-2
What the vendor recommends
CBL-Mariner Releases
Review the complete instructions on the vendor's siteWhen this advisory changed
- Published by Microsoft Security Response Center
The publication date reported by the vendor.
- Updated by Microsoft Security Response Center
The vendor changed the advisory after it was first published.
- Added to SecurityAlert
We collected the advisory from the official source.