Hi @moto-charles,
For an authoritative statement on CVE‑2023‑51385 and CVE‑2023‑38408 in your specific workspace and region (Azure Gov), the best path is to open a support ticket from your Azure Databricks workspace. That allows Databricks Support and Security to confirm the applicability of these specific CVEs to your configuration and images, and to provide concrete guidance on risk and on any recommended maintenance update or runtime upgrade path.
That way, you get an official answer that your security team can rely on for their assessment and documentation. The community cannot reliably provide this confirmation.
If this answer resolves your question, could you mark it as “Accept as Solution”? That helps other users quickly find the correct fix.
Regards,
Ashwin | Delivery Solution Architect @ Databricks
Helping you build and scale the Data Intelligence Platform.
***Opinions are my own***