Msrc Azl3 Kernel 6.6.22.1-2 On Azure Linux 3.0 vulnerabilities

59 known vulnerabilities affecting msrc/azl3_kernel_6.6.22.1-2_on_azure_linux_3.0.

Total CVEs
59
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH22MEDIUM37

Vulnerabilities

Page 1 of 3
CVE-2024-39480HIGHCVSS 7.82024-07-09
CVE-2024-39480 [HIGH] CWE-120 kdb: Fix buffer overflow during tab-complete kdb: Fix buffer overflow during tab-complete FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed.
msrc
CVE-2024-40902HIGHCVSS 7.82024-07-09
CVE-2024-40902 [HIGH] CWE-120 jfs: xattr: fix buffer overflow for invalid xattr jfs: xattr: fix buffer overflow for invalid xattr FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is
msrc
CVE-2024-39496HIGHCVSS 7.82024-07-09
CVE-2024-39496 [HIGH] CWE-416 btrfs: zoned: fix use-after-free due to race with dev replace btrfs: zoned: fix use-after-free due to race with dev replace FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries
msrc
CVE-2024-39479HIGHCVSS 7.82024-07-09
CVE-2024-39479 [HIGH] CWE-400 drm/i915/hwmon: Get rid of devm drm/i915/hwmon: Get rid of devm FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to
msrc
CVE-2024-39494HIGHCVSS 7.82024-07-09
CVE-2024-39494 [HIGH] CWE-416 ima: Fix use-after-free on a dentry's dname.name ima: Fix use-after-free on a dentry's dname.name FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is c
msrc
CVE-2024-39495HIGHCVSS 7.82024-07-09
CVE-2024-39495 [HIGH] CWE-416 greybus: Fix use-after-free bug in gb_interface_release due to race condition. greybus: Fix use-after-free bug in gb_interface_release due to race condition. FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure vers
msrc
CVE-2024-39483MEDIUMCVSS 5.52024-07-09
CVE-2024-39483 [MEDIUM] KVM: SVM: WARN on vNMI + NMI window iff NMIs are outright masked KVM: SVM: WARN on vNMI + NMI window iff NMIs are outright masked FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries
msrc
CVE-2024-39473MEDIUMCVSS 5.52024-07-09
CVE-2024-39473 [MEDIUM] CWE-476 ASoC: SOF: ipc4-topology: Fix input format query of process modules without base extension ASoC: SOF: ipc4-topology: Fix input format query of process modules without base extension FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most r
msrc
CVE-2024-39481MEDIUMCVSS 5.52024-07-09
CVE-2024-39481 [MEDIUM] media: mc: Fix graph walk in media_pipeline_start media: mc: Fix graph walk in media_pipeline_start FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is compo
msrc
CVE-2024-39489MEDIUMCVSS 5.52024-07-09
CVE-2024-39489 [MEDIUM] CWE-401 ipv6: sr: fix memleak in seg6_hmac_init_algo ipv6: sr: fix memleak in seg6_hmac_init_algo FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is compose
msrc
CVE-2024-39485MEDIUMCVSS 5.52024-07-09
CVE-2024-39485 [MEDIUM] CWE-665 media: v4l: async: Properly re-initialise notifier entry in unregister media: v4l: async: Properly re-initialise notifier entry in unregister FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the op
msrc
CVE-2024-39476MEDIUMCVSS 5.52024-07-09
CVE-2024-39476 [MEDIUM] CWE-667 md/raid5: fix deadlock that raid5d() wait for itself to clear MD_SB_CHANGE_PENDING md/raid5: fix deadlock that raid5d() wait for itself to clear MD_SB_CHANGE_PENDING FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most s
msrc
CVE-2024-39474MEDIUMCVSS 5.52024-07-09
CVE-2024-39474 [MEDIUM] CWE-770 mm/vmalloc: fix vmalloc which may return null if called with __GFP_NOFAIL mm/vmalloc: fix vmalloc which may return null if called with __GFP_NOFAIL FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of
msrc
CVE-2024-39482MEDIUMCVSS 5.52024-07-09
CVE-2024-39482 [MEDIUM] CWE-770 bcache: fix variable length array abuse in btree_iter bcache: fix variable length array abuse in btree_iter FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the
msrc
CVE-2024-39475MEDIUMCVSS 5.52024-07-09
CVE-2024-39475 [MEDIUM] CWE-369 fbdev: savage: Handle err return when savagefb_check_var failed fbdev: savage: Handle err return when savagefb_check_var failed FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libr
msrc
CVE-2024-39484MEDIUMCVSS 5.52024-07-09
CVE-2024-39484 [MEDIUM] CWE-770 mmc: davinci: Don't strip remove function when driver is builtin mmc: davinci: Don't strip remove function when driver is builtin FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source li
msrc
CVE-2024-38570HIGHCVSS 7.82024-06-11
CVE-2024-38570 [HIGH] CWE-416 gfs2: Fix potential glock use-after-free on unmount gfs2: Fix potential glock use-after-free on unmount FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distr
msrc
CVE-2024-38581HIGHCVSS 7.82024-06-11
CVE-2024-38581 [HIGH] CWE-416 drm/amdgpu/mes: fix use-after-free issue drm/amdgpu/mes: fix use-after-free issue FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microso
msrc
CVE-2024-38577HIGHCVSS 7.82024-06-11
CVE-2024-38577 [HIGH] CWE-120 rcu-tasks: Fix show_rcu_tasks_trace_gp_kthread buffer overflow rcu-tasks: Fix show_rcu_tasks_trace_gp_kthread buffer overflow FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source librarie
msrc
CVE-2024-38583HIGHCVSS 7.82024-06-11
CVE-2024-38583 [HIGH] CWE-416 nilfs2: fix use-after-free of timer for log writer thread nilfs2: fix use-after-free of timer for log writer thread FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with whi
msrc