An information disclosure vulnerability exists in the way Azure WaLinuxAgent creates swap files on resource disks, aka 'Azure Linux Agent Information Disclosure Vulnerability'.
CVSS Details
- CVSS 3.1 Base Score: 6.5
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade WALinuxAgent | Aug 28, 2019 | Apr 9, 2019 |
| Debian | — | Upgrade waagent | Mar 12, 2019 | Mar 12, 2019 |
| Oracle_linux | — | Upgrade WALinuxAgent | Jul 22, 2024 | Mar 12, 2019 |
| Redhat_linux | — | Upgrade WALinuxAgent | Jun 19, 2019 | Apr 9, 2019 |
| Suse | — | Upgrade python-azure-agentUpgrade python-azure-agent-test | Apr 3, 2019 | Mar 12, 2019 |
| Ubuntu | — | Upgrade walinuxagent | Apr 1, 2019 | Mar 12, 2019 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Jan 20, 2025 | Apr 9, 2019 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub