VORANT. Threat Intelligence Sign in Get the full feed

Multiple Azure Linux flaws patched by Microsoft

medium vulnerability

Microsoft addressed twelve vulnerabilities in Azure Linux 3 affecting Elixir, LDNS, LLDPD, Python3, Rust, SQLite, and Vim components.

CERT-FR has published an advisory regarding multiple vulnerabilities discovered in Microsoft Azure Linux 3 (azl3). The vulnerabilities affect several core components including Elixir, LDNS, LLDPD, Python3, Rust, SQLite, and Vim. Twelve CVEs have been assigned spanning from late May through mid-June 2026, though the vendor has not specified the severity or detailed impact of these flaws.

Affected versions include Elixir prior to 1.16.1-2, LDNS prior to 1.8.3-3, LLDPD prior to 1.0.22-1, Python3 prior to 3.12.9-13, Rust versions prior to 1.75.0-30 and 1.90.0-9, SQLite prior to 3.44.0-4, and Vim prior to 9.2.0620-1. Organizations running Azure Linux 3 should consult Microsoft's security bulletins for specific patches and update guidance.

The French national CERT recommends applying vendor-provided patches to mitigate these unspecified security issues. The broad range of affected components suggests these updates address vulnerabilities across the Azure Linux distribution rather than a single exploitable flaw.

Mentioned in this report

Vulnerabilities CVE-2026-10846CVE-2026-11822CVE-2026-11824CVE-2026-40034CVE-2026-46433CVE-2026-47162CVE-2026-47167CVE-2026-49762CVE-2026-52858CVE-2026-52859CVE-2026-52860CVE-2026-7774

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0753/

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free