Msrc Azure Linux 3.0 X64 vulnerabilities
1,294 known vulnerabilities affecting msrc/azure_linux_3.0_x64.
Total CVEs
1,294
CISA KEV
3
actively exploited
Public exploits
11
Exploited in wild
6
Severity breakdown
CRITICAL72HIGH496MEDIUM697LOW28UNKNOWN1
Vulnerabilities
Page 5 of 65
CVE-2024-31449HIGHCVSS 7.02024-10-08
CVE-2024-31449 [HIGH] CWE-20 Lua library commands may lead to stack overflow and RCE in Redis
Lua library commands may lead to stack overflow and RCE in Redis
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libra
msrc
CVE-2024-49882HIGHCVSS 7.82024-10-08
CVE-2024-49882 [HIGH] CWE-415 ext4: fix double brelse() the buffer of the extents path
ext4: fix double brelse() the buffer of the extents path
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which
msrc
CVE-2024-47675HIGHCVSS 7.82024-10-08
CVE-2024-47675 [HIGH] CWE-416 bpf: Fix use-after-free in bpf_uprobe_multi_link_attach()
bpf: Fix use-after-free in bpf_uprobe_multi_link_attach()
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with whi
msrc
CVE-2024-0132HIGHCVSS 8.3PoC2024-10-08
CVE-2024-0132 [CRITICAL] CWE-367 NVIDIA: CVE-2024-0132 Container Toolkit 1.16.1 and Earlier Time-of-check Time-of Use Vulnerability
NVIDIA: CVE-2024-0132 Container Toolkit 1.16.1 and Earlier Time-of-check Time-of Use Vulnerability
NIST NVD Details: https://nvd.nist.gov/vuln/detail/CVE-2024-0132
FAQ: What actions do customers need to take to protect themselves from this vulnerability?
Customers with Ubuntu Linux or Azure Linux based Azure Kubernetes Service (AKS) Node Pools using NVIDIA GPU dri
msrc
CVE-2024-47718HIGHCVSS 7.82024-10-08
CVE-2024-47718 [HIGH] CWE-416 wifi: rtw88: always wait for both firmware loading attempts
wifi: rtw88: always wait for both firmware loading attempts
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with
msrc
CVE-2024-49997HIGHCVSS 7.52024-10-08
CVE-2024-49997 [HIGH] CWE-212 net: ethernet: lantiq_etop: fix memory disclosure
net: ethernet: lantiq_etop: fix memory disclosure
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is
msrc
CVE-2024-49930HIGHCVSS 7.82024-10-08
CVE-2024-49930 [HIGH] CWE-129 wifi: ath11k: fix array out-of-bound access in SoC stats
wifi: ath11k: fix array out-of-bound access in SoC stats
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which
msrc
CVE-2024-8927HIGHCVSS 7.52024-10-08
CVE-2024-8927 [HIGH] cgi.force_redirect configuration is bypassable due to the environment variable collision
cgi.force_redirect configuration is bypassable due to the environment variable collision
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most
msrc
CVE-2024-49991HIGHCVSS 7.82024-10-08
CVE-2024-49991 [HIGH] CWE-416 drm/amdkfd: amdkfd_free_gtt_mem clear the correct pointer
drm/amdkfd: amdkfd_free_gtt_mem clear the correct pointer
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with whi
msrc
CVE-2024-49936HIGHCVSS 7.82024-10-08
CVE-2024-49936 [HIGH] CWE-416 net/xen-netback: prevent UAF in xenvif_flush_hash()
net/xen-netback: prevent UAF in xenvif_flush_hash()
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distr
msrc
CVE-2024-47747HIGHCVSS 7.02024-10-08
CVE-2024-47747 [HIGH] CWE-416 net: seeq: Fix use after free vulnerability in ether3 Driver Due to Race Condition
net: seeq: Fix use after free vulnerability in ether3 Driver Due to Race Condition
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most sec
msrc
CVE-2024-49895HIGHCVSS 7.82024-10-08
CVE-2024-49895 [HIGH] CWE-129 drm/amd/display: Fix index out of bounds in DCN30 degamma hardware format translation
drm/amd/display: Fix index out of bounds in DCN30 degamma hardware format translation
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and mo
msrc
CVE-2024-49861HIGHCVSS 7.12024-10-08
CVE-2024-49861 [HIGH] bpf: Fix helper writes to read-only maps
bpf: Fix helper writes to read-only maps
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is co
msrc
CVE-2024-50055HIGHCVSS 7.82024-10-08
CVE-2024-50055 [HIGH] CWE-415 driver core: bus: Fix double free in driver API bus_register()
driver core: bus: Fix double free in driver API bus_register()
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source librarie
msrc
CVE-2024-47748HIGHCVSS 7.82024-10-08
CVE-2024-47748 [HIGH] CWE-416 vhost_vdpa: assign irq bypass producer token correctly
vhost_vdpa: assign irq bypass producer token correctly
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the
msrc
CVE-2024-47696HIGHCVSS 7.82024-10-08
CVE-2024-47696 [HIGH] CWE-416 RDMA/iwcm: Fix WARNING:at_kernel/workqueue.c:#check_flush_dependency
RDMA/iwcm: Fix WARNING:at_kernel/workqueue.c:#check_flush_dependency
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open sou
msrc
CVE-2024-47757HIGHCVSS 7.12024-10-08
CVE-2024-47757 [HIGH] CWE-125 nilfs2: fix potential oob read in nilfs_btree_check_delete()
nilfs2: fix potential oob read in nilfs_btree_check_delete()
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries wi
msrc
CVE-2024-49982HIGHCVSS 7.82024-10-08
CVE-2024-49982 [HIGH] CWE-416 aoe: fix the potential use-after-free problem in more places
aoe: fix the potential use-after-free problem in more places
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries wi
msrc
CVE-2024-9632HIGHCVSS 7.82024-10-08
CVE-2024-9632 [HIGH] CWE-122 Xorg-x11-server: tigervnc: heap-based buffer overflow privilege escalation vulnerability
Xorg-x11-server: tigervnc: heap-based buffer overflow privilege escalation vulnerability
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent a
msrc
CVE-2024-47701HIGHCVSS 7.82024-10-08
CVE-2024-47701 [HIGH] CWE-416 ext4: avoid OOB when system.data xattr changes underneath the filesystem
ext4: avoid OOB when system.data xattr changes underneath the filesystem
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the
msrc