AWS Security Advisories · April 2022 — AWS Security Advisories
12 advisories 42 CVEs 1 EXPLOITED

Amazon Linux (AL1, AL2, AL2023), AWS Security Bulletins, and AWS SDK CVEs for 2022-04. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 1 is already weaponised in the wild — see the Exploited section.

Advisories

ALAS-2022-1582

ALAS · AL1Medium2022-04-28

ALAS-2022-1582: containerd, docker (medium)

CVEs:CVE-2022-24769

Affected products

ProductStatusVendorPackageEcosystem
containerd, docker affected Amazon containerd, docker
Upstream advisory

ALAS-2022-1580

ALAS · AL1Important2022-04-19

ALAS-2022-1580: log4j-cve-2021-44228-hotpatch (important)

CVEs:CVE-2022-0070

Affected products

ProductStatusVendorPackageEcosystem
log4j-cve-2021-44228-hotpatch affected Amazon log4j-cve-2021-44228-hotpatch
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.