Msrc Cbl Mariner 2.0 X64 vulnerabilities

1,677 known vulnerabilities affecting msrc/cbl_mariner_2.0_x64.

Total CVEs
1,677
CISA KEV
8
actively exploited
Public exploits
16
Exploited in wild
8
Severity breakdown
CRITICAL92HIGH705MEDIUM842LOW38

Vulnerabilities

Page 14 of 84
CVE-2024-21196MEDIUMCVSS 6.52024-10-08
CVE-2024-21196 [MEDIUM] Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: X Plugin). Supported versions that are affected are 8.0.39 and prior 8.4.2 and prior and 9.0.1 and prior. Easily exploit Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: X Plugin). Supported versions that are affected are 8.0.39 and prior 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via mul
msrc
CVE-2024-50031MEDIUMCVSS 5.52024-10-08
CVE-2024-50031 [MEDIUM] drm/v3d: Stop the active perfmon before being destroyed drm/v3d: Stop the active perfmon before being destroyed FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the dis
msrc
CVE-2024-50040MEDIUMCVSS 5.52024-10-08
CVE-2024-50040 [MEDIUM] igb: Do not bring the device up after non-fatal error igb: Do not bring the device up after non-fatal error FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro
msrc
CVE-2024-50001MEDIUMCVSS 5.52024-10-08
CVE-2024-50001 [MEDIUM] CWE-755 net/mlx5: Fix error path in multi-packet WQE transmit net/mlx5: Fix error path in multi-packet WQE transmit FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the
msrc
CVE-2024-47693MEDIUMCVSS 6.52024-10-08
CVE-2024-47693 [MEDIUM] CWE-459 IB/core: Fix ib_cache_setup_one error flow cleanup IB/core: Fix ib_cache_setup_one error flow cleanup FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distr
msrc
CVE-2024-49866MEDIUMCVSS 4.72024-10-08
CVE-2024-49866 [MEDIUM] tracing/timerlat: Fix a race during cpuhp processing tracing/timerlat: Fix a race during cpuhp processing FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is
msrc
CVE-2024-50013MEDIUMCVSS 5.52024-10-08
CVE-2024-50013 [MEDIUM] CWE-401 exfat: fix memory leak in exfat_load_bitmap() exfat: fix memory leak in exfat_load_bitmap() FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is compo
msrc
CVE-2024-49962MEDIUMCVSS 5.52024-10-08
CVE-2024-49962 [MEDIUM] CWE-476 ACPICA: check null return of ACPI_ALLOCATE_ZEROED() in acpi_db_convert_to_package() ACPICA: check null return of ACPI_ALLOCATE_ZEROED() in acpi_db_convert_to_package() FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most
msrc
CVE-2024-49958MEDIUMCVSS 5.52024-10-08
CVE-2024-49958 [MEDIUM] ocfs2: reserve space for inline xattr before attaching reflink tree ocfs2: reserve space for inline xattr before attaching reflink tree FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libr
msrc
CVE-2024-21231LOWCVSS 3.12024-10-08
CVE-2024-21231 [LOW] Vulnerability in the MySQL Server product of Oracle MySQL (component: Client programs). Supported versions that are affected are 8.0.39 and prior 8.4.2 and prior and 9.0.1 and prior. Difficult to ex Vulnerability in the MySQL Server product of Oracle MySQL (component: Client programs). Supported versions that are affected are 8.0.39 and prior 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multi
msrc
CVE-2024-21237LOWCVSS 2.22024-10-08
CVE-2024-21237 [LOW] Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication GCS). Supported versions that are affected are 8.0.39 and prior 8.4.2 and prior and 9.0.1 and prior. D Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication GCS). Supported versions that are affected are 8.0.39 and prior 8.4.2 and prior and 9.0.1 and prior. Difficult to exploit vulnerability allows high privileged attacker with network a
msrc
CVE-2024-47814LOWCVSS 3.92024-10-08
CVE-2024-47814 [LOW] CWE-416 use-after-free when closing buffers in Vim use-after-free when closing buffers in Vim FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Micr
msrc
CVE-2024-50044LOWCVSS 3.32024-10-08
CVE-2024-50044 [LOW] CWE-667 Bluetooth: RFCOMM: FIX possible deadlock in rfcomm_sk_state_change Bluetooth: RFCOMM: FIX possible deadlock in rfcomm_sk_state_change FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source l
msrc
CVE-2024-9026LOWCVSS 3.32024-10-08
CVE-2024-9026 [LOW] CWE-158 PHP-FPM logs from children may be altered PHP-FPM logs from children may be altered FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microso
msrc
CVE-2024-21247LOWCVSS 3.82024-10-08
CVE-2024-21247 [LOW] Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.39 and prior 8.4.2 and prior and 9.0.1 and prior. Easily exploi Vulnerability in the MySQL Client product of Oracle MySQL (component: Client: mysqldump). Supported versions that are affected are 8.0.39 and prior 8.4.2 and prior and 9.0.1 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via mult
msrc
CVE-2024-46724HIGHCVSS 7.12024-09-10
CVE-2024-46724 [HIGH] CWE-125 drm/amdgpu: Fix out-of-bounds read of df_v1_7_channel_number drm/amdgpu: Fix out-of-bounds read of df_v1_7_channel_number FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries wi
msrc
CVE-2024-44983HIGHCVSS 7.12024-09-10
CVE-2024-44983 [HIGH] CWE-908 netfilter: flowtable: validate vlan header netfilter: flowtable: validate vlan header FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Mic
msrc
CVE-2024-46674HIGHCVSS 7.82024-09-10
CVE-2024-46674 [HIGH] CWE-416 usb: dwc3: st: fix probed platform device ref count on probe error path usb: dwc3: st: fix probed platform device ref count on probe error path FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the op
msrc
CVE-2024-45026HIGHCVSS 7.82024-09-10
CVE-2024-45026 [HIGH] CWE-787 s390/dasd: fix error recovery leading to data corruption on ESE devices s390/dasd: fix error recovery leading to data corruption on ESE devices FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the op
msrc
CVE-2024-46818HIGHCVSS 7.82024-09-10
CVE-2024-46818 [HIGH] CWE-129 drm/amd/display: Check gpio_id before used as array index drm/amd/display: Check gpio_id before used as array index FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability? One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with whi
msrc