ALAS-2016-692
ALAS-2016-692: apache-commons-collections (important)
Affected products
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| apache-commons-collections | affected | Amazon | apache-commons-collections | — |
Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 2 are already weaponised in the wild — see the Exploited section.
ALAS-2016-692: apache-commons-collections (important)
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| apache-commons-collections | affected | Amazon | apache-commons-collections | — |
ALAS-2016-693: java-1.7.0-openjdk (critical)
CVEs:CVE-2016-0686CVE-2016-0687CVE-2016-0695CVE-2016-3425CVE-2016-3427
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| java-1.7.0-openjdk | affected | Amazon | java-1.7.0-openjdk | — |
ALAS-2016-694: kernel (medium)
CVEs:CVE-2016-3134CVE-2016-3135CVE-2016-3156CVE-2016-3672CVE-2016-7117
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kernel | affected | Amazon | kernel | — |
ALAS-2016-687: golang (medium)
CVEs:CVE-2016-3959
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| golang | affected | Amazon | golang | — |
ALAS-2016-688: java-1.8.0-openjdk (critical)
CVEs:CVE-2016-0686CVE-2016-0687CVE-2016-0695CVE-2016-3425CVE-2016-3426CVE-2016-3427
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| java-1.8.0-openjdk | affected | Amazon | java-1.8.0-openjdk | — |
ALAS-2016-689: postgresql8 (important)
CVEs:CVE-2016-0773
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| postgresql8 | affected | Amazon | postgresql8 | — |
ALAS-2016-690: foomatic (medium)
CVEs:CVE-2010-5325CVE-2015-8560
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| foomatic | affected | Amazon | foomatic | — |
ALAS-2016-691: krb5 (medium)
CVEs:CVE-2015-8629CVE-2015-8630CVE-2015-8631
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| krb5 | affected | Amazon | krb5 | — |
ALAS-2016-685: php56, php55 (medium)
CVEs:CVE-2016-2554
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| php56, php55 | affected | Amazon | php56, php55 | — |
ALAS-2016-686: samba (critical)
CVEs:CVE-2015-5370CVE-2016-2110CVE-2016-2111CVE-2016-2112CVE-2016-2113CVE-2016-2114CVE-2016-2115CVE-2016-2118
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| samba | affected | Amazon | samba | — |
ALAS-2016-682: openssl098e (important)
CVEs:CVE-2015-0293CVE-2015-3197CVE-2016-0703CVE-2016-0704CVE-2016-0800
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| openssl098e | affected | Amazon | openssl098e | — |
ALAS-2016-683: libssh2 (medium)
CVEs:CVE-2016-0787
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| libssh2 | affected | Amazon | libssh2 | — |
ALAS-2016-684: mysql56 (important)
CVEs:CVE-2015-4766CVE-2015-4791CVE-2015-4792CVE-2015-4800CVE-2015-4802CVE-2015-4807CVE-2015-4815CVE-2015-4819CVE-2015-4826CVE-2015-4830CVE-2015-4833CVE-2015-4836CVE-2015-4858CVE-2015-4861CVE-2015-4862CVE-2015-4864CVE-2015-4866CVE-2015-4870CVE-2015-4879CVE-2015-4890CVE-2015-4895CVE-2015-4904CVE-2015-4905CVE-2015-4910CVE-2015-4913CVE-2015-7744CVE-2016-0502CVE-2016-0503CVE-2016-0504CVE-2016-0505CVE-2016-0546CVE-2016-0594CVE-2016-0595CVE-2016-0596CVE-2016-0597CVE-2016-0598CVE-2016-0599CVE-2016-0600CVE-2016-0601CVE-2016-0605CVE-2016-0606CVE-2016-0607CVE-2016-0608CVE-2016-0609CVE-2016-0610CVE-2016-0611CVE-2016-0616
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| mysql56 | affected | Amazon | mysql56 | — |
Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.