QID 902447

Date Published: 2022-07-14

QID 902447: Common Base Linux Mariner (CBL-Mariner) Security Update for python-lxml (10059)

CBL-Mariner 2.0 is an internal Linux distribution for cloud infrastructure and edge products and services of Microsoft.
CBL-Mariner has NOT released a security update for python-lxml to fix the vulnerabilities.

Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.

  • CVSS V3 rated as High - 7.5 severity.
  • CVSS V2 rated as Medium - 5 severity.
  • Solution

    Patch is NOT available for the package.

    Vendor References

    CVEs related to QID 902447

    Software Advisories
    Advisory ID Software Component Link