AWS Security Advisories · September 2022 — AWS Security Advisories
3 advisories 46 CVEs

Amazon Linux (AL1, AL2, AL2023), AWS Security Bulletins, and AWS SDK CVEs for 2022-09. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity).

Advisories

ALAS-2022-1635

ALAS · AL1Important2022-09-21

ALAS-2022-1635: golang (important)

CVEs:CVE-2021-27918CVE-2021-27919CVE-2021-33195CVE-2021-33196CVE-2021-39293CVE-2022-1705CVE-2022-1962CVE-2022-23772CVE-2022-23773CVE-2022-23806CVE-2022-24675CVE-2022-24921CVE-2022-27191CVE-2022-27664CVE-2022-28131CVE-2022-28327CVE-2022-29526CVE-2022-30629CVE-2022-30630CVE-2022-30631CVE-2022-30632CVE-2022-30633CVE-2022-30635CVE-2022-32148

Affected products

ProductStatusVendorPackageEcosystem
golang affected Amazon golang
Upstream advisory

ALAS-2022-1633

ALAS · AL1Important2022-09-12

ALAS-2022-1633: java-1.7.0-openjdk (important)

CVEs:CVE-2022-21248CVE-2022-21282CVE-2022-21283CVE-2022-21293CVE-2022-21294CVE-2022-21296CVE-2022-21299CVE-2022-21305CVE-2022-21340CVE-2022-21341CVE-2022-21349CVE-2022-21360CVE-2022-21365CVE-2022-21426CVE-2022-21434CVE-2022-21443CVE-2022-21476CVE-2022-21496CVE-2022-21540CVE-2022-21541CVE-2022-34169

Affected products

ProductStatusVendorPackageEcosystem
java-1.7.0-openjdk affected Amazon java-1.7.0-openjdk
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.