What the vendor says is affected
- cbl2 influxdb 2.6.1-22 on CBL Mariner 2.0
- cbl2 golang 1.22.7-4 on CBL Mariner 2.0
- cbl2 packer 1.9.5-13 on CBL Mariner 2.0
- cbl2 azcopy 10.25.1-5 on CBL Mariner 2.0
- azl3 telegraf 1.31.0-10 on Azure Linux 3.0
- azl3 vitess 19.0.4-7 on Azure Linux 3.0
- cbl2 golang 1.18.8-8 on CBL Mariner 2.0
- cbl2 git-lfs 3.5.1-5 on CBL-Mariner 2.0
- cbl2 influxdb 2.6.1-22 on CBL-Mariner 2.0
- cbl2 packer 1.9.5-13 on CBL-Mariner 2.0
- cbl2 azcopy 10.25.1-5 on CBL-Mariner 2.0
- cbl2 telegraf 1.29.4-16 on CBL-Mariner 2.0
- cbl2 golang 1.18.8-8 on CBL-Mariner 2.0
- cbl2 telegraf 1.29.4-14 on CBL Mariner 2.0
- cbl2 azcopy 10.25.1-4 on CBL Mariner 2.0
- cbl2 vitess 17.0.7-7 on CBL Mariner 2.0
- cbl2 packer 1.9.5-11 on CBL Mariner 2.0
- azl3 prometheus 2.45.4-12 on Azure Linux 3.0
- azl3 packer 1.9.5-8 on Azure Linux 3.0
- azl3 azcopy 10.25.1-4 on Azure Linux 3.0
- azl3 keda 2.14.1-6 on Azure Linux 3.0
- azl3 git-lfs 3.6.1-2 on Azure Linux 3.0
- azl3 vitess 19.0.4-6 on Azure Linux 3.0
- azl3 prometheus-node-exporter 1.7.0-3 on Azure Linux 3.0
Versions the vendor lists as fixed
- 2.6.1-22
- 1.22.7-4
- 1.9.5-11
- 10.25.1-4
- 1.31.0-6
- 19.0.4-6
- 1.18.8-8
- 3.5.1-5
- 1.29.4-14
- 17.0.7-7
- 2.45.4-12
- 1.9.5-8
- 2.14.1-6
- 3.6.1-2
- 1.7.0-3
- 2.7.5-3
- 0.8.2-2
- 2.4.0-29
What the vendor recommends
CBL-Mariner Releases
Review the complete instructions on the vendor's siteWhen this advisory changed
- Published by Microsoft Security Response Center
The publication date reported by the vendor.
- Updated by Microsoft Security Response Center
The vendor changed the advisory after it was first published.
- Added to SecurityAlert
We collected the advisory from the official source.