Microsoft Security Response Center guidance
Vendor revision: Aug 12, 2026Vendor remediation details
CBL-Mariner Releases
Vendor-listed releases
- 24.0.9-11
- 2.17.3-8
- 24.0.9-5
- 25.0.3-3
- 25.0.3-8
Vulnerability intelligence
CVE-2024-36623 and is rated High severity with a CVSS score of 8.1. It is not in the current CISA KEV record we collected. That does not prove exploitation has not occurred.
CBL-Mariner Releases
Vendor-listed releases
moby through v25.0.3 has a Race Condition vulnerability in the streamformatter package which can be used to trigger multiple concurrent write operations resulting in data corruption or application crashes.
Source: NVD