rpm package
suse/python-azure-storage-blob&distro=SUSE Linux Enterprise Module for Public Cloud 15 SP4
pkg:rpm/suse/python-azure-storage-blob&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP4
Vulnerabilities (4)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-21226 | Hig | 7.5 | < 12.28.0-150400.11.8.1 | 12.28.0-150400.11.8.1 | Jan 13, 2026 | Deserialization of untrusted data in Azure Core shared client library for Python allows an authorized attacker to execute code over a network. | |
| CVE-2025-24049 | Hig | 8.4 | < 12.28.0-150400.11.8.1 | 12.28.0-150400.11.8.1 | Mar 11, 2025 | Improper neutralization of special elements used in a command ('command injection') in Azure Command Line Integration (CLI) allows an unauthorized attacker to elevate privileges locally. | |
| CVE-2024-35255 | Med | 5.5 | < 12.28.0-150400.11.8.1 | 12.28.0-150400.11.8.1 | Jun 11, 2024 | Azure Identity Libraries and Microsoft Authentication Library Elevation of Privilege Vulnerability | |
| CVE-2022-30187 | Med | 4.7 | < 12.13.1-150100.3.10.1 | 12.13.1-150100.3.10.1 | Jul 12, 2022 | Azure Storage Library Information Disclosure Vulnerability |
- affected < 12.28.0-150400.11.8.1fixed 12.28.0-150400.11.8.1
Deserialization of untrusted data in Azure Core shared client library for Python allows an authorized attacker to execute code over a network.
- affected < 12.28.0-150400.11.8.1fixed 12.28.0-150400.11.8.1
Improper neutralization of special elements used in a command ('command injection') in Azure Command Line Integration (CLI) allows an unauthorized attacker to elevate privileges locally.
- affected < 12.28.0-150400.11.8.1fixed 12.28.0-150400.11.8.1
Azure Identity Libraries and Microsoft Authentication Library Elevation of Privilege Vulnerability
- affected < 12.13.1-150100.3.10.1fixed 12.13.1-150100.3.10.1
Azure Storage Library Information Disclosure Vulnerability