# Microsoft Azure Linux patches dozens of CVEs

Published: 2026-07-15 · Severity: medium
Canonical: https://vorant.io/reports/4566b6d2-99f7-5aa8-9f85-8dd0b3789191/microsoft-azure-linux-patches-dozens-of-cves

> CERT-FR advisory details ~40 vulnerabilities across multiple Azure Linux (azl3) packages including OpenSSH, ClamAV, Node.js, and Vim, with no vendor-specified severity or known exploitation.

CERT-FR has published an advisory summarizing a large batch of vulnerabilities affecting Microsoft Azure Linux (azl3) distribution packages, including clamav, curl, erlang, glib, keras, libXfont2, mtr, nodejs, openssh, perl-DBI, python-msgpack, python-setuptools, telegraf, vim, and xorg-x11-server-Xwayland. Each affected package has a specific version threshold below which systems are considered vulnerable, with fixed versions available from Microsoft.

The advisory does not specify the exact nature of the security impact for each CVE, stating only that a successful attacker could trigger an unspecified security issue. Roughly 40 CVEs are referenced across the affected components, spanning issue disclosure dates from late June through mid-July 2026. This is a standard vendor patch bulletin aggregation rather than a report of active exploitation, targeted campaign, or novel technique.

Organizations running Microsoft Azure Linux 3.0 (azl3) should prioritize patching per the referenced Microsoft Security Response Center bulletins for each CVE. No indicators of compromise, threat actor attribution, or malware association are present in this disclosure; the advisory is purely a consolidated notification of upstream package updates.

## Mentioned in this report

- Vulnerabilities: CVE-2026-10536, CVE-2026-11525, CVE-2026-12064, CVE-2026-12480, CVE-2026-14380, CVE-2026-14461, CVE-2026-14739, CVE-2026-14740, CVE-2026-20213, CVE-2026-20214, CVE-2026-20215, CVE-2026-20216, CVE-2026-20217, CVE-2026-54886, CVE-2026-54908, CVE-2026-56000, CVE-2026-56001, CVE-2026-56002, CVE-2026-56003, CVE-2026-57585, CVE-2026-58010, CVE-2026-58011, CVE-2026-58012, CVE-2026-58013, CVE-2026-58014, CVE-2026-58015, CVE-2026-58016, CVE-2026-59995, CVE-2026-59996, CVE-2026-59997, CVE-2026-59999, CVE-2026-60000, CVE-2026-60001, CVE-2026-60002, CVE-2026-8286, CVE-2026-8458, CVE-2026-8926, CVE-2026-8927, CVE-2026-8932, CVE-2026-9079

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0873

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/4566b6d2-99f7-5aa8-9f85-8dd0b3789191/microsoft-azure-linux-patches-dozens-of-cves.
Full IOC sets, deployable detections, the entity graph, TAXII 2.1 feed and real-time alerts: https://vorant.io/signup
