ALAS-2015-574
ALAS-2015-574: gnupg2 (low)
CVEs:CVE-2015-1606
Affected products
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| gnupg2 | affected | Amazon | gnupg2 | — |
Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 2 are already weaponised in the wild — see the Exploited section.
ALAS-2015-574: gnupg2 (low)
CVEs:CVE-2015-1606
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| gnupg2 | affected | Amazon | gnupg2 | — |
ALAS-2015-573: bind (critical)
CVEs:CVE-2015-5477
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| bind | affected | Amazon | bind | — |
ALAS-2015-572: usermode, libuser (important)
CVEs:CVE-2015-3245CVE-2015-3246
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| usermode, libuser | affected | Amazon | usermode, libuser | — |
ALAS-2015-565: kernel (medium)
CVEs:CVE-2015-1805CVE-2015-3212CVE-2015-5364CVE-2015-5366
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kernel | affected | Amazon | kernel | — |
ALAS-2015-566: bind (important)
CVEs:CVE-2015-4620
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| bind | affected | Amazon | bind | — |
ALAS-2015-567: 389-ds-base (medium)
CVEs:CVE-2015-3230
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| 389-ds-base | affected | Amazon | 389-ds-base | — |
ALAS-2015-568: openssh (medium)
CVEs:CVE-2015-5352
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| openssh | affected | Amazon | openssh | — |
ALAS-2015-569: nss, nss-util (medium)
CVEs:CVE-2015-4000
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| nss, nss-util | affected | Amazon | nss, nss-util | — |
ALAS-2015-570: java-1.7.0-openjdk (critical)
CVEs:CVE-2015-2590CVE-2015-2601CVE-2015-2621CVE-2015-2625CVE-2015-2628CVE-2015-2632CVE-2015-2808CVE-2015-4000CVE-2015-4731CVE-2015-4732CVE-2015-4733CVE-2015-4748CVE-2015-4749CVE-2015-4760
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| java-1.7.0-openjdk | affected | Amazon | java-1.7.0-openjdk | — |
ALAS-2015-571: java-1.8.0-openjdk (important)
CVEs:CVE-2015-0383CVE-2015-2590CVE-2015-2601CVE-2015-2621CVE-2015-2625CVE-2015-2628CVE-2015-2632CVE-2015-2659CVE-2015-2808CVE-2015-3149CVE-2015-4000CVE-2015-4731CVE-2015-4732CVE-2015-4733CVE-2015-4748CVE-2015-4749CVE-2015-4760
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| java-1.8.0-openjdk | affected | Amazon | java-1.8.0-openjdk | — |
ALAS-2015-564: openssl (critical)
CVEs:CVE-2015-1793
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| openssl | affected | Amazon | openssl | — |
ALAS-2015-562: php55 (medium)
CVEs:CVE-2014-3416CVE-2015-2325CVE-2015-2326CVE-2015-3414CVE-2015-3415CVE-2015-4642CVE-2015-4643CVE-2015-4644
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| php55 | affected | Amazon | php55 | — |
ALAS-2015-563: php56 (medium)
CVEs:CVE-2014-3416CVE-2015-2325CVE-2015-2326CVE-2015-3414CVE-2015-3415CVE-2015-4642CVE-2015-4643CVE-2015-4644
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| php56 | affected | Amazon | php56 | — |
ALAS-2015-561: php54 (medium)
CVEs:CVE-2014-3416CVE-2015-3414CVE-2015-3415CVE-2015-4642CVE-2015-4643CVE-2015-4644
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| php54 | affected | Amazon | php54 | — |
ALAS-2015-560: php-ZendFramework (medium)
CVEs:CVE-2015-3154
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| php-ZendFramework | affected | Amazon | php-ZendFramework | — |
ALAS-2015-559: cups (medium)
CVEs:CVE-2014-9679CVE-2015-1158CVE-2015-1159
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| cups | affected | Amazon | cups | — |
ALAS-2015-558: fuse (medium)
CVEs:CVE-2015-3202
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| fuse | affected | Amazon | fuse | — |
ALAS-2015-557: tcpdump (medium)
CVEs:CVE-2015-0261CVE-2015-2154
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| tcpdump | affected | Amazon | tcpdump | — |
ALAS-2015-556: postgresql8 (medium)
CVEs:CVE-2015-3165CVE-2015-3166CVE-2015-3167
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| postgresql8 | affected | Amazon | postgresql8 | — |
Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.