Known vulnerabilities in Amazon Linux AMI - page 98

Software CPE: cpe:2.3:o:amazon_web_services:amazon_linux_ami:*:*:*:*:*:*:*:*
Total vulnerabilities: 3943
Public exploits: 290
Known exploited (KEV): 53
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Amazon Linux AMI Amazon Linux AMI is affected by 3943 known vulnerabilities: 26 critical, 592 high, 1559 medium, 1766 low Critical High Medium Low

Vulnerabilities (3943)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU64190 - Incorrect Regular Expression
CVE-2022-24836
CWE-185 Low
No
No
- 12.06.2022 SB2022061205
SB2022061209
SB2022111849
and 11 more
#VU63390 - Missing release of memory after effective lifetime
CVE-2022-28356
CWE-401 Medium
No
No
- 18.05.2022 SB2022060822
SB2022060826
SB2022060828
and 26 more
#VU62601 - Memory corruption
CVE-2022-26490
CWE-119 Low
No
No
- 26.04.2022 SB2022042621
SB2022042622
SB2022050433
and 45 more
#VU61681 - Server-Side Request Forgery (SSRF)
CVE-2021-4189
CWE-918 Medium
No
No
- 29.03.2022 SB2022032904
SB2022032905
SB2022032907
and 42 more
#VU61675 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2022-0391
CWE-93 Medium
No
No
- 29.03.2022 SB2022032903
SB2022032905
SB2022032907
and 49 more
#VU61672 - Heap-based Buffer Overflow
CVE-2022-27666
CWE-122 Low
Available
No
- 29.03.2022 SB2022032901
SB2022032902
SB2022033118
and 66 more
#VU61294 - Memory corruption
CVE-2022-23218
CWE-119 High
No
No
- 14.03.2022 SB2022031429
SB2022031430
SB2022031526
and 38 more
#VU61258 - Permissions, Privileges, and Access Controls
CVE-2021-4197
CWE-264 Low
No
No
- 11.03.2022 SB2022031105
SB2022031106
SB2022060828
and 33 more
#VU61216 - Stack-based buffer overflow
CVE-2022-0435
CWE-121 High
No
No
- 09.03.2022 SB2022030915
SB2022030925
SB2022030926
and 41 more
#VU61211 - Missing initialization of resource
CVE-2022-24448
CWE-909 Low
No
No
- 09.03.2022 SB2022030911
SB2022031106
SB2022031403
and 25 more
#VU61210 - NULL Pointer Dereference
CVE-2022-0617
CWE-476 Low
No
No
- 09.03.2022 SB2022030910
SB2022031106
SB2022031401
and 27 more
#VU61208 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2021-38199
CWE-362 Low
No
No
- 09.03.2022 SB2021080813
SB2022031106
SB2021092818
and 12 more
#VU61205 - Memory corruption
CVE-2018-25020
CWE-119 Low
No
No
- 09.03.2022 SB2021120824
SB2022031106
SB2022061414
and 7 more
#VU60988 - Memory corruption
CVE-2022-0330
CWE-119 Low
No
No
- 03.03.2022 SB2022030318
SB2022030319
SB2022030320
and 58 more
#VU59473 - Improper Resource Shutdown or Release
CVE-2020-36322
CWE-404 Low
No
No
- 11.01.2022 SB2021041422
SB2022011150
SB2022011151
and 37 more
#VU59089 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2021-3737
CWE-835 Low
No
No
- 22.12.2021 SB2021122214
SB2022050235
SB2022051138
and 58 more
#VU58295 - Resource Management Errors
CVE-2021-3733
CWE-399 Low
No
No
- 23.11.2021 SB2021112309
SB2021122214
SB2022050235
and 41 more
#VU58097 - Permissions, Privileges, and Access Controls
CVE-2020-25717
CWE-264 Medium
No
No
- 10.11.2021 SB2021111008
SB2021111201
SB2021112913
and 43 more
#VU56684 - Observable discrepancy
CVE-2021-33560
CWE-203 Medium
No
No
- 17.09.2021 SB2021060846
SB2021091711
SB2021111210
and 22 more
#VU50621 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-27619
CWE-94 Medium
No
No
- 11.02.2021 SB2020112330
SB2021032307
SB2021032607
and 24 more


Showing elements 1941 - 1960 out of 3943