Language:
https://alas.aws.amazon.com/AL2023/ALAS-2025-876.html
https://alas.aws.amazon.com/faqs.html
https://alas.aws.amazon.com/cve/html/CVE-2024-53166.html
https://alas.aws.amazon.com/cve/html/CVE-2024-57981.html
https://alas.aws.amazon.com/cve/html/CVE-2024-57986.html
https://alas.aws.amazon.com/cve/html/CVE-2024-57993.html
https://alas.aws.amazon.com/cve/html/CVE-2024-57996.html
https://alas.aws.amazon.com/cve/html/CVE-2024-58016.html
https://alas.aws.amazon.com/cve/html/CVE-2024-58020.html
https://alas.aws.amazon.com/cve/html/CVE-2024-58071.html
https://alas.aws.amazon.com/cve/html/CVE-2024-58083.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21703.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21705.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21706.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21707.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21716.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21719.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21724.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21725.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21728.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21738.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21745.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21766.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21767.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21776.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21779.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21785.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21787.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21790.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21795.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21806.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21814.html
https://alas.aws.amazon.com/cve/html/CVE-2025-21826.html
Severity: High
ID: 232711
File Name: al2023_ALAS2023-2025-876.nasl
Version: 1.4
Type: local
Agent: unix
Published: 3/14/2025
Updated: 6/9/2025
Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Continuous Assessment, Nessus
Risk Factor: Medium
Score: 6.7
Risk Factor: Medium
Base Score: 6.8
Temporal Score: 5
Vector: CVSS2#AV:L/AC:L/Au:S/C:C/I:C/A:C
CVSS Score Source: CVE-2025-21785
Risk Factor: High
Base Score: 7.8
Temporal Score: 6.8
Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C
CPE: p-cpe:/a:amazon:linux:kernel-modules-extra-common, p-cpe:/a:amazon:linux:perf-debuginfo, p-cpe:/a:amazon:linux:kernel-modules-extra, p-cpe:/a:amazon:linux:kernel-debuginfo-common-aarch64, p-cpe:/a:amazon:linux:kernel-tools, p-cpe:/a:amazon:linux:python3-perf, p-cpe:/a:amazon:linux:kernel-libbpf-static, p-cpe:/a:amazon:linux:kernel-livepatch-6.1.129-138.220, p-cpe:/a:amazon:linux:kernel-debuginfo, p-cpe:/a:amazon:linux:kernel-libbpf, p-cpe:/a:amazon:linux:bpftool-debuginfo, p-cpe:/a:amazon:linux:kernel-libbpf-devel, p-cpe:/a:amazon:linux:kernel-headers, p-cpe:/a:amazon:linux:kernel-tools-devel, cpe:/o:amazon:linux:2023, p-cpe:/a:amazon:linux:perf, p-cpe:/a:amazon:linux:bpftool, p-cpe:/a:amazon:linux:kernel-tools-debuginfo, p-cpe:/a:amazon:linux:kernel-devel, p-cpe:/a:amazon:linux:kernel, p-cpe:/a:amazon:linux:python3-perf-debuginfo, p-cpe:/a:amazon:linux:kernel-debuginfo-common-x86_64
Required KB Items: Host/local_checks_enabled, Host/AmazonLinux/release, Host/AmazonLinux/rpm-list
Exploit Ease: No known exploits are available
Patch Publication Date: 2/26/2025
Vulnerability Publication Date: 12/27/2024
CVE: CVE-2024-53166, CVE-2024-57981, CVE-2024-57986, CVE-2024-57993, CVE-2024-57996, CVE-2024-58016, CVE-2024-58020, CVE-2024-58071, CVE-2024-58083, CVE-2025-21703, CVE-2025-21705, CVE-2025-21706, CVE-2025-21707, CVE-2025-21716, CVE-2025-21719, CVE-2025-21724, CVE-2025-21725, CVE-2025-21728, CVE-2025-21738, CVE-2025-21745, CVE-2025-21766, CVE-2025-21767, CVE-2025-21776, CVE-2025-21779, CVE-2025-21785, CVE-2025-21787, CVE-2025-21790, CVE-2025-21795, CVE-2025-21806, CVE-2025-21814, CVE-2025-21826, CVE-2025-21832, CVE-2025-40364