{"api_version":"v1","generated_at":"2026-10-09T10:30:00+00:00","product":{"cve_count":4,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-microsoft-open-management-infrastructure-omi-ae7631696491","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Open Management Infrastructure (OMI)","next_cursor":null,"observations":[{"affected":"Azure Automation State Configuration, DSC Extension: 2.0.0 < DSC Agent versions: 2.71.1.25, 2.70.0.30, 3.0.0.3; Azure Automation Update Management: 1.0.0 < OMS Agent for Linux GA v1.13.40-0; Azure Diagnostics (LAD): 3.0.0 < LAD v4.0.13 and LAD v3.0.135; Azure Security Center: 1.0.0 < OMS Agent for Linux GA v1.13.40-0; Azure Sentinel: 1.0.0 < OMS Agent for Linux GA v1.13.40-0; Azure Stack Hub: 1.0.0 < Monitor, Update and Config Mgmnt 1.14.01; Container Monitoring Solution: 1.0.0 < publication; Log Analytics Agent: 1.0.0 < OMS Agent for Linux GA v1.13.40-0; Open Management Infrastructure: 16.0 < OMI Version 1.6.8-1; System Center Operations Manager (SCOM): 1.0.0 < OMI version: 1.6.8-1","affected_versions_present":true,"cve_id":"CVE-2021-38649","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-38649","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-08-10T15:10:55.453Z","patch_url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-38649","primary_source":"","published":"2021-09-15T11:24:09.000Z"},{"affected":"Azure Automation State Configuration, DSC Extension: 2.0.0 < DSC Agent versions: 2.71.1.25, 2.70.0.30, 3.0.0.3; Azure Automation Update Management: 1.0.0 < OMS Agent for Linux GA v1.13.40-0; Azure Diagnostics (LAD): 3.0.0 < LAD v4.0.13 and LAD v3.0.135; Azure Security Center: 1.0.0 < OMS Agent for Linux GA v1.13.40-0; Azure Sentinel: 1.0.0 < OMS Agent for Linux GA v1.13.40-0; Azure Stack Hub: 1.0.0 < Monitor, Update and Config Mgmnt 1.14.01; Container Monitoring Solution: 1.0.0 < publication; Log Analytics Agent: 1.0.0 < OMS Agent for Linux GA v1.13.40-0; Open Management Infrastructure: 16.0 < OMI Version 1.6.8-1; System Center Operations Manager (SCOM): 1.0.0 < OMI version: 1.6.8-1","affected_versions_present":true,"cve_id":"CVE-2021-38648","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-38648","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-08-10T15:10:54.716Z","patch_url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-38648","primary_source":"","published":"2021-09-15T11:24:08.000Z"},{"affected":"Azure Automation State Configuration, DSC Extension: 2.0.0 < DSC Agent versions: 2.71.1.25, 2.70.0.30, 3.0.0.3; Azure Automation Update Management: 1.0.0 < OMS Agent for Linux GA v1.13.40-0; Azure Diagnostics (LAD): 3.0.0 < LAD v4.0.13 and LAD v3.0.135; Azure Security Center: 1.0.0 < OMS Agent for Linux GA v1.13.40-0; Azure Sentinel: 1.0.0 < OMS Agent for Linux GA v1.13.40-0; Azure Stack Hub: 1.0.0 < Monitor, Update and Config Mgmnt 1.14.01; Container Monitoring Solution: 1.0.0 < publication; Log Analytics Agent: 1.0.0 < OMS Agent for Linux GA v1.13.40-0; Open Management Infrastructure: 16.0 < OMI Version 1.6.8-1; System Center Operations Manager (SCOM): 1.0.0 < OMI version: 1.6.8-1","affected_versions_present":true,"cve_id":"CVE-2021-38647","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-38647","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-08-10T15:10:54.154Z","patch_url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-38647","primary_source":"","published":"2021-09-15T11:24:07.000Z"},{"affected":"Azure Automation State Configuration, DSC Extension: 2.0.0 < DSC Agent versions: 2.71.1.25, 2.70.0.30, 3.0.0.3; Azure Automation Update Management: 1.0.0 < OMS Agent for Linux GA v1.13.40-0; Azure Diagnostics (LAD): 3.0.0 < LAD v4.0.13 and LAD v3.0.135; Azure Security Center: 1.0.0 < OMS Agent for Linux GA v1.13.40-0; Azure Sentinel: 1.0.0 < OMS Agent for Linux GA v1.13.40-0; Azure Stack Hub: 1.0.0 < Monitor, Update and Config Mgmnt 1.14.01; Container Monitoring Solution: 1.0.0 < publication; Log Analytics Agent: 1.0.0 < OMS Agent for Linux GA v1.13.40-0; Open Management Infrastructure: 16.0 < OMI Version 1.6.8-1; System Center Operations Manager (SCOM): 1.0.0 < OMI version: 1.6.8-1","affected_versions_present":true,"cve_id":"CVE-2021-38645","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-38645","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2026-08-10T15:10:53.641Z","patch_url":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-38645","primary_source":"","published":"2021-09-15T11:24:05.000Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"Microsoft"}}
