What the vendor says is affected
- cbl2 fluent-bit 3.0.6-1 on CBL Mariner 2.0
- cbl2 rust 1.68.0-1 on CBL Mariner 2.0
- cbl2 nodejs18 18.20.3-1 on CBL Mariner 2.0
- cbl2 cmake 3.21.4-14 on CBL Mariner 2.0
- azl3 fluent-bit 3.1.9-2 on Azure Linux 3.0
- azl3 nghttp2 1.61.0-1 on Azure Linux 3.0
- azl3 nodejs 20.14.0-1 on Azure Linux 3.0
- azl3 cmake 3.29.6-1 on Azure Linux 3.0
- azl3 rust 1.75.0-1 on Azure Linux 3.0
- azl3 cmake 3.30.3-6 on Azure Linux 3.0
- azl3 nodejs 20.10.0-2 on Azure Linux 3.0
- azl3 nghttp2 1.59.0-1 on Azure Linux 3.0
- cbl2 nodejs18 18.20.2-2 on CBL Mariner 2.0
- cbl2 fluent-bit 3.0.6-2 on CBL Mariner 2.0
- cbl2 cmake 3.21.4-17 on CBL Mariner 2.0
- cbl2 nghttp2 1.57.0-2 on CBL-Mariner 2.0
- cbl2 fluent-bit 3.0.6-2 on CBL-Mariner 2.0
- cbl2 nghttp2 1.57.0-2 on CBL Mariner 2.0
- azl3 fluent-bit 3.1.9-4 on Azure Linux 3.0
- cbl2 cmake 3.21.4-17 on CBL-Mariner 2.0
- cbl2 nodejs18 18.20.2-2 on CBL-Mariner 2.0
Versions the vendor lists as fixed
- 3.0.6-1
- 1.68.0-1
- 18.20.3-1
- 3.21.4-14
- 3.1.9-2
- 1.61.0-1
- 20.14.0-1
- 3.29.6-1
- 1.75.0-1
- 1.57.0-2
What the vendor recommends
CBL-Mariner Releases
Review the complete instructions on the vendor's siteWhen this advisory changed
- Published by Microsoft Security Response Center
The publication date reported by the vendor.
- Updated by Microsoft Security Response Center
The vendor changed the advisory after it was first published.
- Added to SecurityAlert
We collected the advisory from the official source.