An issue in wpa_supplicant all versions before v.2.12 allows a local attacker to bypass proper network context and AKMP matching for PMKSA caching via missing validation in the driver based PMKSA selection path in wpa.c
CVSS
7.1
Update availability
Patch status unknown
Affected: azl3 wpa_supplicant 2.10-3 on Azure Linux 3.0
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
CVSS
8.8
Update availability
Patch status unknown
Affected: Microsoft Edge (Chromium-based) · azl3 nodejs 24.21.0-1 on Azure Linux 3.0
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
CVSS
8.8
Update availability
Patch status unknown
Affected: Microsoft Edge (Chromium-based) · azl3 nodejs 24.21.0-1 on Azure Linux 3.0
The collection starts with 90 days of Microsoft updates and CISA additions, plus older Microsoft vulnerabilities still listed by CISA. Older entries do not imply that a product remains supported. Counts describe this collection, not every vulnerability or any customer environment.
Griffin Technology Partners managed customers may receive additional environment-specific security guidance and remediation assistance through their managed services relationship.
Security bulletins are provided for informational purposes and compiled from authoritative public sources. Vulnerability applicability varies by environment. Validate affected products, configuration, compatibility requirements, and vendor guidance before making production changes.