Msrc Azure Linux 3.0 Arm vulnerabilities
1,294 known vulnerabilities affecting msrc/azure_linux_3.0_arm.
Total CVEs
1,294
CISA KEV
3
actively exploited
Public exploits
13
Exploited in wild
6
Severity breakdown
CRITICAL72HIGH496MEDIUM697LOW28UNKNOWN1
Vulnerabilities
Page 24 of 65
CVE-2024-43168MEDIUMCVSS 4.82024-08-13
CVE-2024-43168 [MEDIUM] CWE-122 Unbound: heap-buffer-overflow in unbound
Unbound: heap-buffer-overflow in unbound
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Micro
msrc
CVE-2024-8006MEDIUMCVSS 4.42024-08-13
CVE-2024-8006 [MEDIUM] CWE-476 NULL pointer dereference in libpcap before 1.10.5 with remote packet capture support
NULL pointer dereference in libpcap before 1.10.5 with remote packet capture support
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and mos
msrc
CVE-2024-42270MEDIUMCVSS 5.52024-08-13
CVE-2024-42270 [MEDIUM] CWE-476 netfilter: iptables: Fix null-ptr-deref in iptable_nat_table_init().
netfilter: iptables: Fix null-ptr-deref in iptable_nat_table_init().
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open s
msrc
CVE-2023-7256MEDIUMCVSS 4.42024-08-13
CVE-2023-7256 [MEDIUM] CWE-415 Double-free in libpcap before 1.10.5 with remote packet capture support.
Double-free in libpcap before 1.10.5 with remote packet capture support.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the
msrc
CVE-2024-42294MEDIUMCVSS 5.52024-08-13
CVE-2024-42294 [MEDIUM] CWE-667 block: fix deadlock between sd_remove & sd_release
block: fix deadlock between sd_remove & sd_release
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distr
msrc
CVE-2024-5814MEDIUMCVSS 5.12024-08-13
CVE-2024-5814 [MEDIUM] CWE-284 Unverifed Ciphersuite used on a client-side TLS1.3 Downgrade
Unverifed Ciphersuite used on a client-side TLS1.3 Downgrade
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries w
msrc
CVE-2024-41957MEDIUMCVSS 5.32024-08-13
CVE-2024-41957 [MEDIUM] CWE-415 Vim double free in src/alloc.c:616
Vim double free in src/alloc.c:616
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is comm
msrc
CVE-2024-43837MEDIUMCVSS 5.52024-08-13
CVE-2024-43837 [MEDIUM] CWE-476 bpf: Fix null pointer dereference in resolve_prog_type() for BPF_PROG_TYPE_EXT
bpf: Fix null pointer dereference in resolve_prog_type() for BPF_PROG_TYPE_EXT
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure ve
msrc
CVE-2024-43788MEDIUMCVSS 6.12024-08-13
CVE-2024-43788 [MEDIUM] CWE-79 DOM Clobbering Gadget found in Webpack's AutoPublicPathRuntimeModule that leads to Cross-site Scripting (XSS)
DOM Clobbering Gadget found in Webpack's AutoPublicPathRuntimeModule that leads to Cross-site Scripting (XSS)
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment
msrc
CVE-2024-42269MEDIUMCVSS 5.52024-08-13
CVE-2024-42269 [MEDIUM] CWE-476 netfilter: iptables: Fix potential null-ptr-deref in ip6table_nat_table_init().
netfilter: iptables: Fix potential null-ptr-deref in ip6table_nat_table_init().
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure
msrc
CVE-2024-43853MEDIUMCVSS 5.52024-08-13
CVE-2024-43853 [MEDIUM] CWE-416 cgroup/cpuset: Prevent UAF in proc_cpuset_show()
cgroup/cpuset: Prevent UAF in proc_cpuset_show()
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is
msrc
CVE-2024-42316MEDIUMCVSS 5.52024-08-13
CVE-2024-42316 [MEDIUM] CWE-369 mm/mglru: fix div-by-zero in vmpressure_calc_level()
mm/mglru: fix div-by-zero in vmpressure_calc_level()
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the d
msrc
CVE-2024-5288MEDIUMCVSS 5.12024-08-13
CVE-2024-5288 [MEDIUM] CWE-922 Safe-error attack on TLS 1.3 Protocol
Safe-error attack on TLS 1.3 Protocol
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is
msrc
CVE-2024-43860MEDIUMCVSS 5.52024-08-13
CVE-2024-43860 [MEDIUM] CWE-476 remoteproc: imx_rproc: Skip over memory region when node value is NULL
remoteproc: imx_rproc: Skip over memory region when node value is NULL
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the op
msrc
CVE-2024-43891MEDIUMCVSS 4.72024-08-13
CVE-2024-43891 [MEDIUM] CWE-416 tracing: Have format file honor EVENT_FILE_FL_FREED
tracing: Have format file honor EVENT_FILE_FL_FREED
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the dis
msrc
CVE-2024-42309MEDIUMCVSS 5.52024-08-13
CVE-2024-42309 [MEDIUM] CWE-476 drm/gma500: fix null pointer dereference in psb_intel_lvds_get_modes
drm/gma500: fix null pointer dereference in psb_intel_lvds_get_modes
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open s
msrc
CVE-2024-1544MEDIUMCVSS 4.12024-08-13
CVE-2024-1544 [MEDIUM] CWE-203 ECDSA nonce bias caused by truncation
ECDSA nonce bias caused by truncation
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is
msrc
CVE-2024-43828MEDIUMCVSS 5.52024-08-13
CVE-2024-43828 [MEDIUM] CWE-835 ext4: fix infinite loop when replaying fast_commit
ext4: fix infinite loop when replaying fast_commit
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distr
msrc
CVE-2024-43398MEDIUMCVSS 5.92024-08-13
CVE-2024-43398 [MEDIUM] CWE-776 REXML denial of service vulnerability
REXML denial of service vulnerability
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft i
msrc
CVE-2024-42246MEDIUMCVSS 5.52024-08-13
CVE-2024-42246 [MEDIUM] CWE-835 net sunrpc: Remap EPERM in case of connection failure in xs_tcp_setup_socket
net sunrpc: Remap EPERM in case of connection failure in xs_tcp_setup_socket
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versio
msrc