# Microsoft patches 82 Azure Linux flaws

Published: 2026-06-29 · Severity: medium
Canonical: https://vorant.io/reports/cf541492-cf17-5c8f-ad5e-9370b9d732b1/microsoft-patches-82-azure-linux-flaws

> Microsoft released patches for 82 vulnerabilities affecting Azure Linux kernel, libssh2, and Node.js components; no details on severity or exploitation disclosed.

The French CERT (CERT-FR) has published an advisory regarding multiple vulnerabilities discovered in Microsoft Azure Linux. The affected components include the azl3 kernel (versions prior to 6.6.143.1-1), libssh2 (versions prior to 1.11.1-3), and Node.js (versions prior to 24.17.0-1). A total of 82 CVEs have been assigned to these vulnerabilities, spanning from CVE-2026-9675 through CVE-2026-55200.

Microsoft has not specified the nature or severity of the security issues in the referenced bulletins. The advisory provides no information about active exploitation, attack complexity, or the specific impact of these vulnerabilities. Organizations running Azure Linux are advised to consult Microsoft's security update guide for each CVE and apply the available patches.

The sheer volume of CVEs suggests this may be a routine bundled security update addressing accumulated issues across the kernel, SSH library, and JavaScript runtime components rather than a response to active threat activity. Without additional context from Microsoft, administrators should prioritize patching based on their specific Azure Linux deployment footprint and exposure.

## Mentioned in this report

- Vulnerabilities: CVE-2026-52912, CVE-2026-52913, CVE-2026-52915, CVE-2026-52916, CVE-2026-52919, CVE-2026-52921, CVE-2026-52922, CVE-2026-52923, CVE-2026-52924, CVE-2026-52926, CVE-2026-52927, CVE-2026-52930, CVE-2026-52931, CVE-2026-52934, CVE-2026-52941, CVE-2026-52942, CVE-2026-52943, CVE-2026-52947, CVE-2026-53080, CVE-2026-53133, CVE-2026-53135, CVE-2026-53143, CVE-2026-53146, CVE-2026-53147, CVE-2026-53148, CVE-2026-53149, CVE-2026-53150, CVE-2026-53154, CVE-2026-53158, CVE-2026-53159, CVE-2026-53160, CVE-2026-53161, CVE-2026-53176, CVE-2026-53177, CVE-2026-53181, CVE-2026-53182, CVE-2026-53183, CVE-2026-53184, CVE-2026-53186, CVE-2026-53194

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0812/

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/cf541492-cf17-5c8f-ad5e-9370b9d732b1/microsoft-patches-82-azure-linux-flaws.
Full IOC sets, deployable detections, the entity graph, TAXII 2.1 feed and real-time alerts: https://vorant.io/signup
