Known vulnerabilities in Amazon Linux AMI - page 51

Software CPE: cpe:2.3:o:amazon_web_services:amazon_linux_ami:*:*:*:*:*:*:*:*
Total vulnerabilities: 3943
Public exploits: 290
Known exploited (KEV): 53
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Amazon Linux AMI Amazon Linux AMI is affected by 3943 known vulnerabilities: 26 critical, 592 high, 1559 medium, 1766 low Critical High Medium Low

Vulnerabilities (3943)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU78991 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2021-20316
CWE-362 Low
No
No
- 07.08.2023 SB2023080719
SB2023091702
SB2024080686
and 4 more
#VU70384 - Use of a Broken or Risky Cryptographic Algorithm
CVE-2022-45141
CWE-327 High
No
No
- 15.12.2022 SB2022121537
SB2022121801
SB2023012452
and 10 more
#VU69104 - Permissions, Privileges, and Access Controls
CVE-2022-37967
CWE-264 Low
No
No
- 08.11.2022 SB2022110827
SB2022121537
SB2022121801
and 13 more
#VU69094 - Permissions, Privileges, and Access Controls
CVE-2022-37966
CWE-264 High
No
No
- 08.11.2022 SB2022110822
SB2022121537
SB2022121801
and 23 more
#VU68701 - Heap-based Buffer Overflow
CVE-2022-3437
CWE-122 Low
No
No
- 25.10.2022 SB2022102524
SB2022102558
SB2022102521
and 33 more
#VU68700 - UNIX Symbolic Link (Symlink) Following
CVE-2022-3592
CWE-61 Medium
No
No
- 25.10.2022 SB2022102524
SB2023033037
SB2023091702
and 4 more
#VU68298 - NULL Pointer Dereference
CVE-2021-4217
CWE-476 Medium
No
No
- 13.10.2022 SB2022101330
SB2022101331
SB2022101401
and 6 more
#VU67271 - Incorrect Default Permissions
CVE-2022-32743
CWE-276 Medium
No
No
- 13.09.2022 SB2022091372
SB2022091377
SB2022111138
and 5 more
#VU67270 - Use of Insufficiently Random Values
CVE-2022-1615
CWE-330 Low
No
No
- 13.09.2022 SB2022091371
SB2022091377
SB2022091448
and 18 more
#VU66813 - NULL Pointer Dereference
CVE-2022-2309
CWE-476 Medium
No
No
- 29.08.2022 SB2022082928
SB2022082929
SB2022082930
and 28 more
#VU66220 - Out-of-bounds write
CVE-2022-0529
CWE-787 High
Available
No
- 09.08.2022 SB2022021022
SB2022080921
SB2022092657
and 13 more
#VU63770 - Insufficient Verification of Data Authenticity
CVE-2021-4122
CWE-345 Medium
No
No
- 27.05.2022 SB2022061409
SB2022021531
SB2022082249
and 12 more
#VU63553 - Integer overflow
CVE-2021-43618
CWE-190 Medium
No
No
- 24.05.2022 SB2021121654
SB2022052401
SB2021120223
and 85 more
#VU63289 - Heap-based Buffer Overflow
CVE-2022-0530
CWE-122 High
Available
No
- 17.05.2022 SB2022021022
SB2022051701
SB2022051702
and 16 more
#VU63043 - Out-of-bounds read
CVE-2021-4156
CWE-125 Medium
No
No
- 11.05.2022 SB2022032803
SB2022051131
SB2022051158
and 11 more
#VU60187 - Improper Link Resolution Before File Access ('Link Following')
CVE-2021-44141
CWE-59 Low
No
No
- 31.01.2022 SB2022013112
SB2022072819
SB2022121502
and 12 more
#VU60185 - Insufficient Verification of Data Authenticity
CVE-2022-0336
CWE-345 Low
No
No
- 31.01.2022 SB2022013110
SB2022021417
SB2022041954
and 10 more
#VU60007 - Improper input validation
CVE-2021-4034
CWE-20 Medium
Available
Exploited
- 26.01.2022 SB2022012601
SB2022012604
SB2022012605
and 51 more
#VU59345 - Improper Link Resolution Before File Access ('Link Following')
CVE-2021-43566
CWE-59 Low
No
No
- 10.01.2022 SB2022011006
SB2022041954
SB2022020185
and 7 more
#VU57848 - Improper input validation
CVE-2021-42574
CWE-20 Low
Available
No
- 02.11.2021 SB2021110201
SB2021110205
SB2021110206
and 64 more


Showing elements 1001 - 1020 out of 3943