Msrc Cbl Mariner 2.0 Arm vulnerabilities
1,677 known vulnerabilities affecting msrc/cbl_mariner_2.0_arm.
Total CVEs
1,677
CISA KEV
8
actively exploited
Public exploits
16
Exploited in wild
8
Severity breakdown
CRITICAL92HIGH705MEDIUM842LOW38
Vulnerabilities
Page 14 of 84
CVE-2024-21196MEDIUMCVSS 6.52024-10-08
CVE-2024-21196 [MEDIUM] Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: X Plugin). Supported versions that are affected are 8.0.39 and prior 8.4.2 and prior and 9.0.1 and prior. Easily exploit
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: X Plugin). Supported versions that are affected are 8.0.39 and prior 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via mul
msrc
CVE-2024-50031MEDIUMCVSS 5.52024-10-08
CVE-2024-50031 [MEDIUM] drm/v3d: Stop the active perfmon before being destroyed
drm/v3d: Stop the active perfmon before being destroyed
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the dis
msrc
CVE-2024-50040MEDIUMCVSS 5.52024-10-08
CVE-2024-50040 [MEDIUM] igb: Do not bring the device up after non-fatal error
igb: Do not bring the device up after non-fatal error
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro
msrc
CVE-2024-50001MEDIUMCVSS 5.52024-10-08
CVE-2024-50001 [MEDIUM] CWE-755 net/mlx5: Fix error path in multi-packet WQE transmit
net/mlx5: Fix error path in multi-packet WQE transmit
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the
msrc
CVE-2024-47693MEDIUMCVSS 6.52024-10-08
CVE-2024-47693 [MEDIUM] CWE-459 IB/core: Fix ib_cache_setup_one error flow cleanup
IB/core: Fix ib_cache_setup_one error flow cleanup
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distr
msrc
CVE-2024-49866MEDIUMCVSS 4.72024-10-08
CVE-2024-49866 [MEDIUM] tracing/timerlat: Fix a race during cpuhp processing
tracing/timerlat: Fix a race during cpuhp processing
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is
msrc
CVE-2024-50013MEDIUMCVSS 5.52024-10-08
CVE-2024-50013 [MEDIUM] CWE-401 exfat: fix memory leak in exfat_load_bitmap()
exfat: fix memory leak in exfat_load_bitmap()
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is compo
msrc
CVE-2024-49962MEDIUMCVSS 5.52024-10-08
CVE-2024-49962 [MEDIUM] CWE-476 ACPICA: check null return of ACPI_ALLOCATE_ZEROED() in acpi_db_convert_to_package()
ACPICA: check null return of ACPI_ALLOCATE_ZEROED() in acpi_db_convert_to_package()
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most
msrc
CVE-2024-49958MEDIUMCVSS 5.52024-10-08
CVE-2024-49958 [MEDIUM] ocfs2: reserve space for inline xattr before attaching reflink tree
ocfs2: reserve space for inline xattr before attaching reflink tree
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libr
msrc
CVE-2024-21231LOWCVSS 3.12024-10-08
CVE-2024-21231 [LOW] Vulnerability in the MySQL Server product of Oracle MySQL (component: Client programs). Supported versions that are affected are 8.0.39 and prior 8.4.2 and prior and 9.0.1 and prior. Difficult to ex
Vulnerability in the MySQL Server product of Oracle MySQL (component: Client programs). Supported versions that are affected are 8.0.39 and prior 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multi
msrc
CVE-2024-21237LOWCVSS 2.22024-10-08
CVE-2024-21237 [LOW] Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication GCS). Supported versions that are affected are 8.0.39 and prior 8.4.2 and prior and 9.0.1 and prior. D
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication GCS). Supported versions that are affected are 8.0.39 and prior 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows high privileged attacker with network a
msrc
CVE-2024-47814LOWCVSS 3.92024-10-08
CVE-2024-47814 [LOW] CWE-416 use-after-free when closing buffers in Vim
use-after-free when closing buffers in Vim
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Micr
msrc
CVE-2024-50044LOWCVSS 3.32024-10-08
CVE-2024-50044 [LOW] CWE-667 Bluetooth: RFCOMM: FIX possible deadlock in rfcomm_sk_state_change
Bluetooth: RFCOMM: FIX possible deadlock in rfcomm_sk_state_change
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source l
msrc
CVE-2024-9026LOWCVSS 3.32024-10-08
CVE-2024-9026 [LOW] CWE-158 PHP-FPM logs from children may be altered
PHP-FPM logs from children may be altered
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microso
msrc
CVE-2024-21247LOWCVSS 3.82024-10-08
CVE-2024-21247 [LOW] Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.39 and prior 8.4.2 and prior and 9.0.1 and prior. Easily exploi
Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.39 and prior 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via mult
msrc
CVE-2024-46724HIGHCVSS 7.12024-09-10
CVE-2024-46724 [HIGH] CWE-125 drm/amdgpu: Fix out-of-bounds read of df_v1_7_channel_number
drm/amdgpu: Fix out-of-bounds read of df_v1_7_channel_number
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries wi
msrc
CVE-2024-44983HIGHCVSS 7.12024-09-10
CVE-2024-44983 [HIGH] CWE-908 netfilter: flowtable: validate vlan header
netfilter: flowtable: validate vlan header
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Mic
msrc
CVE-2024-46674HIGHCVSS 7.82024-09-10
CVE-2024-46674 [HIGH] CWE-416 usb: dwc3: st: fix probed platform device ref count on probe error path
usb: dwc3: st: fix probed platform device ref count on probe error path
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the op
msrc
CVE-2024-45026HIGHCVSS 7.82024-09-10
CVE-2024-45026 [HIGH] CWE-787 s390/dasd: fix error recovery leading to data corruption on ESE devices
s390/dasd: fix error recovery leading to data corruption on ESE devices
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the op
msrc
CVE-2024-46818HIGHCVSS 7.82024-09-10
CVE-2024-46818 [HIGH] CWE-129 drm/amd/display: Check gpio_id before used as array index
drm/amd/display: Check gpio_id before used as array index
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with whi
msrc