cve management

  1. Azure Linux Attestations and Per Artifact Verification for CVE-2023-52733

    Microsoft’s brief advisory language — that “Azure Linux includes this open‑source library and is therefore potentially affected” — is accurate for the product it names, but it is not an exclusive statement that no other Microsoft product could include the same vulnerable code; in short: Azure...