AWS Security Advisories · June 2019 — AWS Security Advisories
6 advisories 12 CVEs 1 EXPLOITED

Amazon Linux (AL1, AL2, AL2023), AWS Security Bulletins, and AWS SDK CVEs for 2019-06. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 1 is already weaponised in the wild — see the Exploited section.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

ALAS-2019-1223

ALAS · AL1Active exploitation (sightings)Important2019-06-11

ALAS-2019-1223: python-jinja2 (important)

CVEs:CVE-2016-10745

Affected products

ProductStatusVendorPackageEcosystem
python-jinja2 affected Amazon python-jinja2
Upstream advisory

ALAS-2019-1224

ALAS · AL1PoC exploitLow2019-06-11

ALAS-2019-1224: python-urllib3 (low)

CVEs:CVE-2018-20060

Affected products

ProductStatusVendorPackageEcosystem
python-urllib3 affected Amazon python-urllib3
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.