Msrc Azl3 Tcl 8.6.13-3 On Azure Linux 3.0 vulnerabilities

3 known vulnerabilities affecting msrc/azl3_tcl_8.6.13-3_on_azure_linux_3.0.

Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2025-40913MEDIUMCVSS 6.52025-07-08
CVE-2025-40913 [MEDIUM] CWE-1395 Net::Dropbear versions through 0.16 for Perl contains a dependency that may be susceptible to an integer overflow Net::Dropbear versions through 0.16 for Perl contains a dependency that may be susceptible to an integer overflow FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the c
msrc
CVE-2025-40914CRITICALCVSS 9.82025-06-10
CVE-2025-40914 [CRITICAL] CWE-1395 Perl CryptX before version 0.087 contains a dependency that may be susceptible to an integer overflow Perl CryptX before version 0.087 contains a dependency that may be susceptible to an integer overflow FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it u
msrc
CVE-2023-36328CRITICALCVSS 9.82023-09-12
CVE-2023-36328 [CRITICAL] CWE-190 Integer Overflow vulnerability in mp_grow in libtom libtommath before commit beba892bc0d4e4ded4d667ab1d2a94f4d75109a9 allows attackers to execute arbitrary code and cause a denial of service (DoS). Integer Overflow vulnerability in mp_grow in libtom libtommath before commit beba892bc0d4e4ded4d667ab1d2a94f4d75109a9 allows attackers to execute arbitrary code and cause a denial of service (DoS). FAQ: Is Azure Linux the only Microsoft product that includes this ope
msrc