Msrc Cbl2 Pytorch 2.5.1-1 On Cbl Mariner 2.0 vulnerabilities

6 known vulnerabilities affecting msrc/cbl2_pytorch_2.5.1-1_on_cbl_mariner_2.0.

Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH4

Vulnerabilities

Page 1 of 1
CVE-2024-31755HIGHCVSS 7.62024-04-09
CVE-2024-31755 [HIGH] CWE-476 cJSON v1.7.17 was discovered to contain a segmentation violation which can trigger through the second parameter of function cJSON_SetValuestring at cJSON.c. cJSON v1.7.17 was discovered to contain a segmentation violation which can trigger through the second parameter of function cJSON_SetValuestring at cJSON.c. FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of t
msrc
CVE-2023-50471HIGHCVSS 7.52023-12-12
CVE-2023-50471 [HIGH] CWE-476 cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_InsertItemInArray at cJSON.c. cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_InsertItemInArray at cJSON.c. FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is
msrc
CVE-2023-50472HIGHCVSS 7.52023-12-12
CVE-2023-50472 [HIGH] CWE-476 cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_SetValuestring at cJSON.c. cJSON v1.7.16 was discovered to contain a segmentation violation via the function cJSON_SetValuestring at cJSON.c. FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the co
msrc
CVE-2019-11834CRITICALCVSS 9.82019-05-14
CVE-2019-11834 [CRITICAL] CWE-125 cJSON before 1.7.11 allows out-of-bounds access related to \x00 in a string literal. cJSON before 1.7.11 allows out-of-bounds access related to \x00 in a string literal. FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and
msrc
CVE-2019-11835CRITICALCVSS 9.82019-05-14
CVE-2019-11835 [CRITICAL] CWE-125 cJSON before 1.7.11 allows out-of-bounds access related to multiline comments. cJSON before 1.7.11 allows out-of-bounds access related to multiline comments. FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure
msrc
CVE-2018-1000215HIGHCVSS 7.52018-08-14
CVE-2018-1000215 [HIGH] Dave Gamble cJSON version 1.7.6 and earlier contains a CWE-772 vulnerability in cJSON library that can result in Denial of Service Dave Gamble cJSON version 1.7.6 and earlier contains a CWE-772 vulnerability in cJSON library that can result in Denial of Service FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Az
msrc