ALAS-2014-333
ALAS-2014-333: php54 (medium)
CVEs:CVE-2013-7345
Affected products
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| php54 | affected | Amazon | php54 | — |
Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 1 is already weaponised in the wild — see the Exploited section.
ALAS-2014-333: php54 (medium)
CVEs:CVE-2013-7345
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| php54 | affected | Amazon | php54 | — |
ALAS-2014-332: php55 (medium)
CVEs:CVE-2013-7345
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| php55 | affected | Amazon | php55 | — |
ALAS-2014-331: httpd (medium)
CVEs:CVE-2013-6438CVE-2014-0098
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| httpd | affected | Amazon | httpd | — |
ALAS-2014-330: wireshark (medium)
CVEs:CVE-2013-6336CVE-2013-6337CVE-2013-6338CVE-2013-6339CVE-2013-6340CVE-2013-7112CVE-2013-7114CVE-2014-2281CVE-2014-2283CVE-2014-2299
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| wireshark | affected | Amazon | wireshark | — |
ALAS-2014-329: mysql55 (medium)
CVEs:CVE-2014-0384CVE-2014-2419CVE-2014-2430CVE-2014-2431CVE-2014-2432CVE-2014-2436CVE-2014-2438CVE-2014-2440
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| mysql55 | affected | Amazon | mysql55 | — |
ALAS-2014-328: kernel (medium)
CVEs:CVE-2014-0055CVE-2014-0077CVE-2014-2309CVE-2014-2523
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kernel | affected | Amazon | kernel | — |
ALAS-2014-327: java-1.7.0-openjdk (critical)
CVEs:CVE-2013-5797CVE-2014-0429CVE-2014-0446CVE-2014-0451CVE-2014-0452CVE-2014-0453CVE-2014-0454CVE-2014-0455CVE-2014-0456CVE-2014-0457CVE-2014-0458CVE-2014-0459CVE-2014-0460CVE-2014-0461CVE-2014-1876CVE-2014-2397CVE-2014-2398CVE-2014-2402CVE-2014-2403CVE-2014-2412CVE-2014-2413CVE-2014-2414CVE-2014-2421CVE-2014-2423CVE-2014-2427
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| java-1.7.0-openjdk | affected | Amazon | java-1.7.0-openjdk | — |
ALAS-2014-326: java-1.6.0-openjdk (important)
CVEs:CVE-2013-5797CVE-2014-0429CVE-2014-0446CVE-2014-0451CVE-2014-0452CVE-2014-0453CVE-2014-0456CVE-2014-0457CVE-2014-0458CVE-2014-0460CVE-2014-0461CVE-2014-1876CVE-2014-2397CVE-2014-2398CVE-2014-2403CVE-2014-2412CVE-2014-2414CVE-2014-2421CVE-2014-2423CVE-2014-2427
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| java-1.6.0-openjdk | affected | Amazon | java-1.6.0-openjdk | — |
ALAS-2014-325: xalan-j2 (important)
CVEs:CVE-2014-0107
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| xalan-j2 | affected | Amazon | xalan-j2 | — |
ALAS-2014-324: perl-YAML-LibYAML (important)
CVEs:CVE-2013-6393CVE-2014-2525
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| perl-YAML-LibYAML | affected | Amazon | perl-YAML-LibYAML | — |
ALAS-2014-323: file (medium)
CVEs:CVE-2013-7345
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| file | affected | Amazon | file | — |
ALAS-2014-321: libyaml (important)
CVEs:CVE-2014-2525
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| libyaml | affected | Amazon | libyaml | — |
ALAS-2014-322: curl (medium)
CVEs:CVE-2014-0138
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| curl | affected | Amazon | curl | — |
ALAS-2014-320: openssl (critical)
CVEs:CVE-2013-0169CVE-2014-0160
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| openssl | affected | Amazon | openssl | — |
Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.