ALAS-2018-1024
ALAS-2018-1024: dhcp (low)
CVEs:CVE-2018-1111
Affected products
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| dhcp | affected | Amazon | dhcp | — |
Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 1 is already weaponised in the wild — see the Exploited section.
The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.
ALAS-2018-1024: dhcp (low)
CVEs:CVE-2018-1111
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| dhcp | affected | Amazon | dhcp | — |
ALAS-2018-1009: ntp (medium)
CVEs:CVE-2013-5211CVE-2016-1549CVE-2018-7170CVE-2018-7182CVE-2018-7183CVE-2018-7184CVE-2018-7185
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| ntp | affected | Amazon | ntp | — |
ALAS-2018-1004: httpd24 (medium)
CVEs:CVE-2017-15710CVE-2017-15715CVE-2018-1283CVE-2018-1301CVE-2018-1302CVE-2018-1303CVE-2018-1312
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| httpd24 | affected | Amazon | httpd24 | — |
ALAS-2018-1023: kernel (important)
CVEs:CVE-2017-13215CVE-2017-16939CVE-2018-1000199CVE-2018-10675CVE-2018-1068CVE-2018-1087CVE-2018-10901CVE-2018-1091CVE-2018-1108CVE-2018-7995CVE-2018-8897
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| kernel | affected | Amazon | kernel | — |
ALAS-2018-1017: glibc (important)
CVEs:CVE-2014-9402CVE-2015-5180CVE-2017-12132CVE-2017-15670CVE-2017-15804CVE-2018-1000001
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| glibc | affected | Amazon | glibc | — |
ALAS-2018-1018: openssh (low)
CVEs:CVE-2017-15906
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| openssh | affected | Amazon | openssh | — |
ALAS-2018-1016: openssl (medium)
CVEs:CVE-2017-3736CVE-2017-3737CVE-2017-3738
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| openssl | affected | Amazon | openssl | — |
ALAS-2018-1007: java-1.7.0-openjdk (critical)
CVEs:CVE-2018-2790CVE-2018-2794CVE-2018-2795CVE-2018-2796CVE-2018-2797CVE-2018-2798CVE-2018-2799CVE-2018-2800CVE-2018-2814CVE-2018-2815
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| java-1.7.0-openjdk | affected | Amazon | java-1.7.0-openjdk | — |
ALAS-2018-1019: php56, php70, php71 (medium)
CVEs:CVE-2018-10546CVE-2018-10547CVE-2018-10548CVE-2018-10549
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| php56, php70, php71 | affected | Amazon | php56, php70, php71 | — |
ALAS-2018-1027: mysql56 (medium)
CVEs:CVE-2018-2755CVE-2018-2758CVE-2018-2761CVE-2018-2766CVE-2018-2771CVE-2018-2773CVE-2018-2781CVE-2018-2782CVE-2018-2784CVE-2018-2787CVE-2018-2813CVE-2018-2817CVE-2018-2818CVE-2018-2819
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| mysql56 | affected | Amazon | mysql56 | — |
ALAS-2018-1028: mysql55 (medium)
CVEs:CVE-2018-2755CVE-2018-2761CVE-2018-2771CVE-2018-2773CVE-2018-2781CVE-2018-2813CVE-2018-2817CVE-2018-2818CVE-2018-2819
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| mysql55 | affected | Amazon | mysql55 | — |
ALAS-2018-1026: mysql57 (medium)
CVEs:CVE-2018-2755CVE-2018-2758CVE-2018-2759CVE-2018-2761CVE-2018-2762CVE-2018-2766CVE-2018-2769CVE-2018-2771CVE-2018-2773CVE-2018-2775CVE-2018-2776CVE-2018-2777CVE-2018-2778CVE-2018-2779CVE-2018-2780CVE-2018-2781CVE-2018-2782CVE-2018-2784CVE-2018-2786CVE-2018-2787CVE-2018-2810CVE-2018-2812CVE-2018-2813CVE-2018-2816CVE-2018-2817CVE-2018-2818CVE-2018-2819CVE-2018-2839CVE-2018-2846
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| mysql57 | affected | Amazon | mysql57 | — |
ALAS-2018-1008: patch (important)
CVEs:CVE-2018-1000156
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| patch | affected | Amazon | patch | — |
ALAS-2018-1025: gnupg2 (low)
CVEs:CVE-2018-9234
| Product | Status | Vendor | Package | Ecosystem |
|---|---|---|---|---|
| gnupg2 | affected | Amazon | gnupg2 | — |
Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.