ALAS-2017-889
ALAS-2017-889: curl (medium)
CVEs:CVE-2017-1000099CVE-2017-1000100CVE-2017-1000101
Affected products
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| curl | affected | Amazon | curl | — |
Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity).
ALAS-2017-889: curl (medium)
CVEs:CVE-2017-1000099CVE-2017-1000100CVE-2017-1000101
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| curl | affected | Amazon | curl | — |
ALAS-2017-888: mysql56 (medium)
CVEs:CVE-2017-3633CVE-2017-3634CVE-2017-3635CVE-2017-3641CVE-2017-3647CVE-2017-3648CVE-2017-3649CVE-2017-3651CVE-2017-3652CVE-2017-3653
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| mysql56 | affected | Amazon | mysql56 | — |
ALAS-2017-887: mysql55 (medium)
CVEs:CVE-2017-3635CVE-2017-3636CVE-2017-3641CVE-2017-3648CVE-2017-3651CVE-2017-3652CVE-2017-3653
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| mysql55 | affected | Amazon | mysql55 | — |
ALAS-2017-886: aws-cfn-bootstrap (important)
CVEs:CVE-2017-9450
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| aws-cfn-bootstrap | affected | Amazon | aws-cfn-bootstrap | — |
ALAS-2017-885: postgresql94, postgresql95 (medium)
CVEs:CVE-2017-7546CVE-2017-7547CVE-2017-7548
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| postgresql94, postgresql95 | affected | Amazon | postgresql94, postgresql95 | — |
ALAS-2017-884: postgresql93, postgresql92 (medium)
CVEs:CVE-2017-7546CVE-2017-7547
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| postgresql93, postgresql92 | affected | Amazon | postgresql93, postgresql92 | — |
ALAS-2017-883: subversion, mod_dav_svn (important)
CVEs:CVE-2017-9800
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| subversion, mod_dav_svn | affected | Amazon | subversion, mod_dav_svn | — |
ALAS-2017-882: git (important)
CVEs:CVE-2017-1000117
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| git | affected | Amazon | git | — |
ALAS-2017-881: wget (low)
CVEs:CVE-2017-6508
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| wget | affected | Amazon | wget | — |
ALAS-2017-880: ruby23 (medium)
CVEs:CVE-2016-7798
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| ruby23 | affected | Amazon | ruby23 | — |
ALAS-2017-879: tigervnc (medium)
CVEs:CVE-2016-10207CVE-2017-5581CVE-2017-7392CVE-2017-7393CVE-2017-7394CVE-2017-7395CVE-2017-7396
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| tigervnc | affected | Amazon | tigervnc | — |
ALAS-2017-878: bash (medium)
CVEs:CVE-2016-0634CVE-2016-7543CVE-2016-9401
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| bash | affected | Amazon | bash | — |
ALAS-2017-877: glibc (medium)
CVEs:CVE-2014-9761CVE-2015-8776CVE-2015-8777CVE-2015-8778CVE-2015-8779
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| glibc | affected | Amazon | glibc | — |
ALAS-2017-876: libnl3 (medium)
CVEs:CVE-2017-0553
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| libnl3 | affected | Amazon | libnl3 | — |
ALAS-2017-875: authconfig (medium)
CVEs:CVE-2017-7488
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| authconfig | affected | Amazon | authconfig | — |
ALAS-2017-874: cacti (important)
CVEs:CVE-2017-10970CVE-2017-12065CVE-2017-12066
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| cacti | affected | Amazon | cacti | — |
ALAS-2017-873: tomcat7 (important)
CVEs:CVE-2017-5648CVE-2017-5664CVE-2017-7674
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| tomcat7 | affected | Amazon | tomcat7 | — |
ALAS-2017-872: graphite2 (important)
CVEs:CVE-2017-7771CVE-2017-7772CVE-2017-7773CVE-2017-7774CVE-2017-7775CVE-2017-7776CVE-2017-7777CVE-2017-7778
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| graphite2 | affected | Amazon | graphite2 | — |
ALAS-2017-871: php56 (medium)
CVEs:CVE-2017-9224CVE-2017-9226CVE-2017-9227CVE-2017-9228CVE-2017-9229
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| php56 | affected | Amazon | php56 | — |
ALAS-2017-870: kernel (important)
CVEs:CVE-2017-11473CVE-2017-7533CVE-2017-7542CVE-2017-8831
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kernel | affected | Amazon | kernel | — |
ALAS-2017-869: java-1.7.0-openjdk (critical)
CVEs:CVE-2017-10053CVE-2017-10067CVE-2017-10074CVE-2017-10081CVE-2017-10087CVE-2017-10089CVE-2017-10090CVE-2017-10096CVE-2017-10101CVE-2017-10102CVE-2017-10107CVE-2017-10108CVE-2017-10109CVE-2017-10110CVE-2017-10115CVE-2017-10116CVE-2017-10135CVE-2017-10243
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| java-1.7.0-openjdk | affected | Amazon | java-1.7.0-openjdk | — |
ALAS-2017-868: kernel (critical)
CVEs:CVE-2017-1000111CVE-2017-1000112CVE-2017-11176
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kernel | affected | Amazon | kernel | — |
ALAS-2017-867: php70 (medium)
CVEs:CVE-2017-7890CVE-2017-9224CVE-2017-9226CVE-2017-9227CVE-2017-9228CVE-2017-9229
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| php70 | affected | Amazon | php70 | — |
ALAS-2017-866: aws-cfn-bootstrap (important)
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| aws-cfn-bootstrap | affected | Amazon | aws-cfn-bootstrap | — |
ALAS-2017-865: freeradius (important)
CVEs:CVE-2017-10978CVE-2017-10979CVE-2017-10980CVE-2017-10981CVE-2017-10982CVE-2017-10983
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| freeradius | affected | Amazon | freeradius | — |
ALAS-2017-864: libtommath, libtomcrypt (medium)
CVEs:CVE-2016-6129
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| libtommath, libtomcrypt | affected | Amazon | libtommath, libtomcrypt | — |
ALAS-2017-863: httpd24 (medium)
CVEs:CVE-2016-8743CVE-2017-3167CVE-2017-3169CVE-2017-7659CVE-2017-7668CVE-2017-7679
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| httpd24 | affected | Amazon | httpd24 | — |
ALAS-2017-862: tomcat8 (important)
CVEs:CVE-2017-5664CVE-2017-7674
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| tomcat8 | affected | Amazon | tomcat8 | — |
Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.