CVE-2022-39327Critical

GitHub: CVE-2022-39327 Improper Control of Generation of Code ('Code Injection') in Azure CLI

Published
November 8, 2022
Last Modified
—

🔗 CVE IDs covered (1)

📋 Description

Why is this GitHub CVE included in the Security Update Guide? The vulnerability assigned to this CVE is in Azure cli, which is published on GitHub and for which GitHub is the CVE Naming Authority (CNA). It is being documented in the Security Update Guide to inform customers using the azure-cli that they need to apply the updated version. Please see Security Update Guide Supports CVEs Assigned by Industry Partners for more information.

🎯 Affected products1

  • Azure CLI

✅ Remediation

KBImproper Control of Generation of Code ('Code Injection') in Azure CLI (Security Update) — fixed build 2.42.0

🔗 References (3)