AWS Security Advisories · July 2014 — AWS Security Advisories
25 advisories 51 CVEs 1 EXPLOITED

Amazon Linux (AL1, AL2, AL2023), AWS Security Bulletins, and AWS SDK CVEs for 2014-07. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 1 is already weaponised in the wild — see the Exploited section.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

ALAS-2014-370

ALAS · AL1ExploitedCISA KEV listedImportant2014-07-09

ALAS-2014-370: chkrootkit (important)

CVEs:CVE-2014-0476

Affected products

ProductStatusVendorPackageEcosystem
chkrootkit affected Amazon chkrootkit
Upstream advisory

ALAS-2014-380

ALAS · AL1PoC exploitMedium2014-07-23

ALAS-2014-380: python27 (medium)

CVEs:CVE-2014-4616

Affected products

ProductStatusVendorPackageEcosystem
python27 affected Amazon python27
Upstream advisory

ALAS-2014-374

ALAS · AL1PoC exploitLow2014-07-09

ALAS-2014-374: python-simplejson (low)

CVEs:CVE-2014-4616

Affected products

ProductStatusVendorPackageEcosystem
python-simplejson affected Amazon python-simplejson
Upstream advisory

ALAS-2014-390

ALAS · AL1EPSS <= 49%Medium2014-07-31

ALAS-2014-390: transmission (medium)

CVEs:CVE-2014-4909

Affected products

ProductStatusVendorPackageEcosystem
transmission affected Amazon transmission
Upstream advisory

ALAS-2014-371

ALAS · AL1EPSS <= 49%Medium2014-07-09

ALAS-2014-371: python-jinja2 (medium)

CVEs:CVE-2014-1402

Affected products

ProductStatusVendorPackageEcosystem
python-jinja2 affected Amazon python-jinja2
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.