ALAS-2018-988
ALAS-2018-988: php70, php56 (medium)
CVEs:CVE-2018-7584
Affected products
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| php70, php56 | affected | Amazon | php70, php56 | — |
Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity).
The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.
ALAS-2018-988: php70, php56 (medium)
CVEs:CVE-2018-7584
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| php70, php56 | affected | Amazon | php70, php56 | — |
ALAS-2018-989: python-paramiko (critical)
CVEs:CVE-2018-7750
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| python-paramiko | affected | Amazon | python-paramiko | — |
ALAS-2018-985: mailman (medium)
CVEs:CVE-2016-6893CVE-2018-5950
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| mailman | affected | Amazon | mailman | — |
ALAS-2018-993: kernel (medium)
CVEs:CVE-2017-18232CVE-2018-1066CVE-2018-5803
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kernel | affected | Amazon | kernel | — |
ALAS-2018-1002: java-1.8.0-openjdk (critical)
CVEs:CVE-2018-2790CVE-2018-2794CVE-2018-2795CVE-2018-2796CVE-2018-2797CVE-2018-2798CVE-2018-2799CVE-2018-2800CVE-2018-2814CVE-2018-2815
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| java-1.8.0-openjdk | affected | Amazon | java-1.8.0-openjdk | — |
ALAS-2018-990: postgresql93, postgresql94, postgresql95, postgresql96 (medium)
CVEs:CVE-2018-1058
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| postgresql93, postgresql94, postgresql95, postgresql96 | affected | Amazon | postgresql93, postgresql94, postgresql95, postgresql96 | — |
ALAS-2018-981: libvorbis (critical)
CVEs:CVE-2018-5146
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| libvorbis | affected | Amazon | libvorbis | — |
ALAS-2018-1000: openssl (low)
CVEs:CVE-2018-0737
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| openssl | affected | Amazon | openssl | — |
ALAS-2018-995: curl (medium)
CVEs:CVE-2018-1000120CVE-2018-1000121CVE-2018-1000122
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| curl | affected | Amazon | curl | — |
ALAS-2018-983: ruby20, ruby22, ruby23, ruby24 (medium)
CVEs:CVE-2017-17742CVE-2017-17790CVE-2018-1000073CVE-2018-1000074CVE-2018-1000075CVE-2018-1000076CVE-2018-1000077CVE-2018-1000078CVE-2018-1000079CVE-2018-6914CVE-2018-8777CVE-2018-8778CVE-2018-8779CVE-2018-8780
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| ruby20, ruby22, ruby23, ruby24 | affected | Amazon | ruby20, ruby22, ruby23, ruby24 | — |
ALAS-2018-1003: python34, python35, python36, python27 (medium)
CVEs:CVE-2018-1060CVE-2018-1061
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| python34, python35, python36, python27 | affected | Amazon | python34, python35, python36, python27 | — |
ALAS-2018-984: dhcp (important)
CVEs:CVE-2018-5732CVE-2018-5733
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| dhcp | affected | Amazon | dhcp | — |
ALAS-2018-980: 389-ds-base (important)
CVEs:CVE-2017-15135CVE-2018-1054
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| 389-ds-base | affected | Amazon | 389-ds-base | — |
ALAS-2018-991: nvidia (medium)
CVEs:CVE-2018-6247CVE-2018-6248CVE-2018-6249CVE-2018-6250CVE-2018-6251CVE-2018-6252CVE-2018-6253
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| nvidia | affected | Amazon | nvidia | — |
ALAS-2018-987: mod24_wsgi (medium)
CVEs:CVE-2014-8583
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| mod24_wsgi | affected | Amazon | mod24_wsgi | — |
ALAS-2018-997: exim (medium)
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| exim | affected | Amazon | exim | — |
ALAS-2018-996: stunnel, amazon-efs-utils (medium)
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| stunnel, amazon-efs-utils | affected | Amazon | stunnel, amazon-efs-utils | — |
Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.