# Multiple Azure Linux flaws patched by Microsoft

Published: 2026-06-15 · Severity: medium
Canonical: https://vorant.io/reports/ccdd268c-d765-501a-9d11-1ab04314d9a7/multiple-azure-linux-flaws-patched-by-microsoft

> Microsoft addressed twelve vulnerabilities in Azure Linux 3 affecting Elixir, LDNS, LLDPD, Python3, Rust, SQLite, and Vim components.

CERT-FR has published an advisory regarding multiple vulnerabilities discovered in Microsoft Azure Linux 3 (azl3). The vulnerabilities affect several core components including Elixir, LDNS, LLDPD, Python3, Rust, SQLite, and Vim. Twelve CVEs have been assigned spanning from late May through mid-June 2026, though the vendor has not specified the severity or detailed impact of these flaws.

Affected versions include Elixir prior to 1.16.1-2, LDNS prior to 1.8.3-3, LLDPD prior to 1.0.22-1, Python3 prior to 3.12.9-13, Rust versions prior to 1.75.0-30 and 1.90.0-9, SQLite prior to 3.44.0-4, and Vim prior to 9.2.0620-1. Organizations running Azure Linux 3 should consult Microsoft's security bulletins for specific patches and update guidance.

The French national CERT recommends applying vendor-provided patches to mitigate these unspecified security issues. The broad range of affected components suggests these updates address vulnerabilities across the Azure Linux distribution rather than a single exploitable flaw.

## Mentioned in this report

- Vulnerabilities: CVE-2026-10846, CVE-2026-11822, CVE-2026-11824, CVE-2026-40034, CVE-2026-46433, CVE-2026-47162, CVE-2026-47167, CVE-2026-49762, CVE-2026-52858, CVE-2026-52859, CVE-2026-52860, CVE-2026-7774

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0753/

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/ccdd268c-d765-501a-9d11-1ab04314d9a7/multiple-azure-linux-flaws-patched-by-microsoft.
Full IOC sets, deployable detections, the entity graph, TAXII 2.1 feed and real-time alerts: https://vorant.io/signup
