What the vendor says is affected
- azl3 flannel 0.24.2-14 on Azure Linux 3.0
- azl3 etcd 3.5.18-1 on Azure Linux 3.0
- azl3 coredns 1.11.4-6 on Azure Linux 3.0
- azl3 telegraf 1.31.0-10 on Azure Linux 3.0
- azl3 packer 1.9.5-9 on Azure Linux 3.0
- azl3 kubernetes 1.30.10-7 on Azure Linux 3.0
- cbl2 azcopy 10.25.1-5 on CBL Mariner 2.0
- cbl2 etcd 3.5.12-6 on CBL Mariner 2.0
- cbl2 cert-manager 1.11.2-22 on CBL Mariner 2.0
- cbl2 telegraf 1.29.4-16 on CBL Mariner 2.0
- cbl2 packer 1.9.5-13 on CBL Mariner 2.0
- cbl2 azcopy 10.25.1-5 on CBL-Mariner 2.0
- cbl2 etcd 3.5.12-6 on CBL-Mariner 2.0
- cbl2 telegraf 1.29.4-16 on CBL-Mariner 2.0
- cbl2 packer 1.9.5-12 on CBL Mariner 2.0
- cbl2 kubernetes 1.28.4-16 on CBL Mariner 2.0
- cbl2 telegraf 1.29.4-13 on CBL Mariner 2.0
- cbl2 cert-manager 1.11.2-21 on CBL Mariner 2.0
- cbl2 prometheus 2.37.9-3 on CBL Mariner 2.0
- cbl2 etcd 3.5.21-1 on CBL Mariner 2.0
- cbl2 coredns 1.11.1-16 on CBL Mariner 2.0
- cbl2 terraform 1.3.2-24 on CBL Mariner 2.0
- cbl2 moby-engine 24.0.9-16 on CBL Mariner 2.0
- azl3 kubernetes 1.30.10-4 on Azure Linux 3.0
Versions the vendor lists as fixed
- 0.24.2-12
- 3.5.21-1
- 1.11.4-5
- 1.31.0-7
- 1.9.5-7
- 1.30.10-4
- 10.25.1-5
- 1.11.2-21
- 1.29.4-13
- 1.9.5-12
- 1.28.4-16
- 2.37.9-3
- 1.11.1-16
- 1.3.2-24
- 24.0.9-16
- 1.7.7-2
- 2.14.1-5
- 25.0.3-12
- 2.3.2-2
- 10.25.1-3
- 1.12.15-3
- 2.45.4-9
What the vendor recommends
CBL-Mariner Releases
Review the complete instructions on the vendor's siteWhen this advisory changed
- Published by Microsoft Security Response Center
The publication date reported by the vendor.
- Updated by Microsoft Security Response Center
The vendor changed the advisory after it was first published.
- Added to SecurityAlert
We collected the advisory from the official source.