Msrc Azl3 Python-Tensorboard 2.16.2-6 vulnerabilities
14 known vulnerabilities affecting msrc/azl3_python-tensorboard_2.16.2-6.
Total CVEs
14
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL4HIGH4MEDIUM6
Vulnerabilities
Page 1 of 1
CVE-2026-3381CRITICALCVSS 9.82026-03-10
CVE-2026-3381 [CRITICAL] CWE-1395 Compress::Raw::Zlib versions through 2.219 for Perl use potentially insecure versions of zlib
Compress::Raw::Zlib versions through 2.219 for Perl use potentially insecure versions of zlib
Mariner: Mariner
CPANSec: CPANSec
Customer Action Required: Yes
Remediation: CBL-Mariner Releases
Reference: https://learn.microsoft.com/en-us/azure/azure-linux/tutorial-azure-linux-upgrade
msrc
CVE-2026-22184CRITICALCVSS 9.82026-01-13
CVE-2026-22184 [MEDIUM] CWE-120 zlib <= 1.3.1.2 untgz Global Buffer Overflow in TGZfname()
zlib <= 1.3.1.2 untgz Global Buffer Overflow in TGZfname()
Mariner: Mariner
VulnCheck: VulnCheck
Customer Action Required: Yes
msrc
CVE-2025-61729HIGHCVSS 7.52025-12-09
CVE-2025-61729 [HIGH] Excessive resource consumption when printing error string for host certificate validation in crypto/x509
Excessive resource consumption when printing error string for host certificate validation in crypto/x509
Mariner: Mariner
Go: Go
Customer Action Required: Yes
msrc
CVE-2025-61724HIGHCVSS 7.52025-10-14
CVE-2025-61724 [MEDIUM] Excessive CPU consumption in Reader.ReadResponse in net/textproto
Excessive CPU consumption in Reader.ReadResponse in net/textproto
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source librarie
msrc
CVE-2025-58188HIGHCVSS 7.52025-10-14
CVE-2025-58188 [HIGH] Panic when validating certificates with DSA public keys in crypto/x509
Panic when validating certificates with DSA public keys in crypto/x509
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source
msrc
CVE-2025-58183MEDIUMCVSS 5.52025-10-14
CVE-2025-58183 [MEDIUM] Unbounded allocation when parsing GNU sparse map in archive/tar
Unbounded allocation when parsing GNU sparse map in archive/tar
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries wi
msrc
CVE-2025-58186MEDIUMCVSS 5.32025-10-14
CVE-2025-58186 [MEDIUM] Lack of limit when parsing cookies can cause memory exhaustion in net/http
Lack of limit when parsing cookies can cause memory exhaustion in net/http
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the op
msrc
CVE-2025-22870MEDIUMCVSS 4.42025-03-11
CVE-2025-22870 [MEDIUM] CWE-115 HTTP Proxy bypass using IPv6 Zone IDs in golang.org/x/net
HTTP Proxy bypass using IPv6 Zone IDs in golang.org/x/net
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with w
msrc
CVE-2025-1744CRITICALCVSS 9.82025-02-11
CVE-2025-1744 [CRITICAL] CWE-787 Out-of-bounds Write in radare2
Out-of-bounds Write in radare2
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed t
msrc
CVE-2023-5678MEDIUMCVSS 5.32023-11-14
CVE-2023-5678 [MEDIUM] CWE-754 Excessive time spent in DH check / generation with large Q parameter value
Excessive time spent in DH check / generation with large Q parameter value
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of
msrc
CVE-2023-45853CRITICALCVSS 9.82023-10-10
CVE-2023-45853 [CRITICAL] CWE-190 MiniZip in zlib through 1.3 has an integer overflow and resultant heap-based buffer overflow in zipOpenNewFileInZip4_64 via a long filename comment or extra field. NOTE: MiniZip is not a supported par
MiniZip in zlib through 1.3 has an integer overflow and resultant heap-based buffer overflow in zipOpenNewFileInZip4_64 via a long filename comment or extra field. NOTE: MiniZip is not a supported part of the zlib product. NOTE: pyminizip through 0.2.6 is also vuln
msrc
CVE-2022-41717MEDIUMCVSS 5.32022-12-13
CVE-2022-41717 [MEDIUM] CWE-770 Excessive memory growth in net/http and golang.org/x/net/http2
Excessive memory growth in net/http and golang.org/x/net/http2
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source librar
msrc
CVE-2022-29526MEDIUMCVSS 5.32022-06-14
CVE-2022-29526 [MEDIUM] CWE-269 Go before 1.17.10 and 1.18.x before 1.18.2 has Incorrect Privilege Assignment. When called with a non-zero flags parameter the Faccessat function could incorrectly report that a file is accessible.
Go before 1.17.10 and 1.18.x before 1.18.2 has Incorrect Privilege Assignment. When called with a non-zero flags parameter the Faccessat function could incorrectly report that a file is accessible.
FAQ: Is Azure Linux the only Microsoft product that includes this open-
msrc
CVE-2018-25032HIGHCVSS 7.52022-03-08
CVE-2018-25032 [HIGH] CWE-787 zlib before 1.2.12 allows memory corruption when deflating (i.e. when compressing) if the input has many distant matches.
zlib before 1.2.12 allows memory corruption when deflating (i.e. when compressing) if the input has many distant matches.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux di
msrc