rpm package
suse/azure-cli&distro=SUSE Linux Enterprise Module for Public Cloud 15 SP6
pkg:rpm/suse/azure-cli&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP6
Vulnerabilities (4)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-21226 | Hig | 7.5 | < 2.82.0-150400.14.23.1 | 2.82.0-150400.14.23.1 | Jan 13, 2026 | Deserialization of untrusted data in Azure Core shared client library for Python allows an authorized attacker to execute code over a network. | |
| CVE-2025-24049 | Hig | 8.4 | < 2.82.0-150400.14.23.1 | 2.82.0-150400.14.23.1 | Mar 11, 2025 | Improper neutralization of special elements used in a command ('command injection') in Azure Command Line Integration (CLI) allows an unauthorized attacker to elevate privileges locally. | |
| CVE-2024-43591 | Hig | 8.7 | < 2.58.0-150400.14.12.1 | 2.58.0-150400.14.12.1 | Oct 8, 2024 | Azure Command Line Integration (CLI) Elevation of Privilege Vulnerability | |
| CVE-2024-35255 | Med | 5.5 | < 2.82.0-150400.14.23.1 | 2.82.0-150400.14.23.1 | Jun 11, 2024 | Azure Identity Libraries and Microsoft Authentication Library Elevation of Privilege Vulnerability |
- affected < 2.82.0-150400.14.23.1fixed 2.82.0-150400.14.23.1
Deserialization of untrusted data in Azure Core shared client library for Python allows an authorized attacker to execute code over a network.
- affected < 2.82.0-150400.14.23.1fixed 2.82.0-150400.14.23.1
Improper neutralization of special elements used in a command ('command injection') in Azure Command Line Integration (CLI) allows an unauthorized attacker to elevate privileges locally.
- affected < 2.58.0-150400.14.12.1fixed 2.58.0-150400.14.12.1
Azure Command Line Integration (CLI) Elevation of Privilege Vulnerability
- affected < 2.82.0-150400.14.23.1fixed 2.82.0-150400.14.23.1
Azure Identity Libraries and Microsoft Authentication Library Elevation of Privilege Vulnerability