What the vendor says is affected
- azl3 python-urllib3 2.0.7-2 on Azure Linux 3.0
- cbl2 python-virtualenv 20.26.6-1 on CBL Mariner 2.0
- cbl2 python-urllib3 1.26.19-2 on CBL Mariner 2.0
- cbl2 python-virtualenv 20.26.6-2 on CBL Mariner 2.0
- azl3 python-pip 24.2-4 on Azure Linux 3.0
- azl3 python-pip 24.2-5 on Azure Linux 3.0
- cbl2 python-urllib3 1.26.19-2 on CBL-Mariner 2.0
- cbl2 python-virtualenv 20.26.6-2 on CBL-Mariner 2.0
- cbl2 python-urllib3 1.26.19-1 on CBL Mariner 2.0
- azl3 python-pip 24.2-3 on Azure Linux 3.0
Versions the vendor lists as fixed
- 2.0.7-2
- 20.26.6-2
- 1.26.19-2
- 24.2-3
- 24.2-5
What the vendor recommends
CBL-Mariner Releases
Review the complete instructions on the vendor's siteWhen this advisory changed
- Published by Microsoft Security Response Center
The publication date reported by the vendor.
- Updated by Microsoft Security Response Center
The vendor changed the advisory after it was first published.
- Added to SecurityAlert
We collected the advisory from the official source.