What the vendor says is affected
- cbl2 cmake 3.21.4-18 on CBL Mariner 2.0
- azl3 cmake 3.30.3-6 on Azure Linux 3.0
- cbl2 curl 8.8.0-6 on CBL-Mariner 2.0
- azl3 curl 8.11.1-3 on Azure Linux 3.0
- cbl2 curl 8.8.0-6 on CBL Mariner 2.0
Versions the vendor lists as fixed
- 8.8.0-6
- 8.11.1-3
What the vendor recommends
CBL-Mariner Releases
Review the complete instructions on the vendor's siteWhen this advisory changed
- Published by Microsoft Security Response Center
The publication date reported by the vendor.
- Updated by Microsoft Security Response Center
The vendor changed the advisory after it was first published.
- Added to SecurityAlert
We collected the advisory from the official source.
- Confirmed at the source
Our collector saw this advisory during a later source check.