CVE-2025-59504
published 2025-11-11CVE-2025-59504: Heap-based buffer overflow in Azure Monitor Agent allows an unauthorized attacker to execute code locally.
high7.3CVSS 3.1
AVLACLPRNUINSUCLILAH
Heap-based buffer overflow in Azure Monitor Agent allows an unauthorized attacker to execute code locally.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | azure_monitor | >= 1.0.0 < v1.37.1 | v1.37.1 |
| microsoft | azure_monitor_agent | < 1.37.1 | 1.37.1 |
| msrc | azure_monitor | — | — |