https://alas.aws.amazon.com//AL2023/ALAS2023-2026-2009.html
https://alas.aws.amazon.com/faqs.html
https://explore.alas.aws.amazon.com/CVE-2026-47300.html
https://explore.alas.aws.amazon.com/CVE-2026-47302.html
https://explore.alas.aws.amazon.com/CVE-2026-47303.html
https://explore.alas.aws.amazon.com/CVE-2026-47304.html
https://explore.alas.aws.amazon.com/CVE-2026-50524.html
https://explore.alas.aws.amazon.com/CVE-2026-50525.html
https://explore.alas.aws.amazon.com/CVE-2026-50526.html
https://explore.alas.aws.amazon.com/CVE-2026-50527.html
https://explore.alas.aws.amazon.com/CVE-2026-50528.html
https://explore.alas.aws.amazon.com/CVE-2026-50646.html
https://explore.alas.aws.amazon.com/CVE-2026-50648.html
https://explore.alas.aws.amazon.com/CVE-2026-50649.html
https://explore.alas.aws.amazon.com/CVE-2026-50650.html
https://explore.alas.aws.amazon.com/CVE-2026-50651.html
Severity: Critical
ID: 332048
File Name: al2023_ALAS2023-2026-2009.nasl
Version: 1.1
Type: Local
Agent: unix
Published: 8/4/2026
Updated: 8/4/2026
Supported Sensors: Agentless Assessment, Continuous Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Nessus Agent, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus
Risk Factor: Medium
Score: 4.9
Percentile: 58.14
Risk Factor: Critical
Base Score: 10
Temporal Score: 7.4
Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C
CVSS Score Source: CVE-2026-47304
Risk Factor: Critical
Base Score: 9.8
Temporal Score: 8.5
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C
CPE: cpe:/o:amazon:linux:2023, p-cpe:/a:amazon:linux:aspnetcore-runtime-10.0, p-cpe:/a:amazon:linux:aspnetcore-runtime-dbg-10.0, p-cpe:/a:amazon:linux:aspnetcore-targeting-pack-10.0, p-cpe:/a:amazon:linux:dotnet-apphost-pack-10.0-debuginfo, p-cpe:/a:amazon:linux:dotnet-apphost-pack-10.0, p-cpe:/a:amazon:linux:dotnet-host-debuginfo, p-cpe:/a:amazon:linux:dotnet-host, p-cpe:/a:amazon:linux:dotnet-hostfxr-10.0-debuginfo, p-cpe:/a:amazon:linux:dotnet-hostfxr-10.0, p-cpe:/a:amazon:linux:dotnet-runtime-10.0-debuginfo, p-cpe:/a:amazon:linux:dotnet-runtime-10.0, p-cpe:/a:amazon:linux:dotnet-runtime-dbg-10.0, p-cpe:/a:amazon:linux:dotnet-sdk-10.0-debuginfo, p-cpe:/a:amazon:linux:dotnet-sdk-10.0-source-built-artifacts, p-cpe:/a:amazon:linux:dotnet-sdk-10.0, p-cpe:/a:amazon:linux:dotnet-sdk-aot-10.0-debuginfo, p-cpe:/a:amazon:linux:dotnet-sdk-aot-10.0, p-cpe:/a:amazon:linux:dotnet-sdk-dbg-10.0, p-cpe:/a:amazon:linux:dotnet-targeting-pack-10.0, p-cpe:/a:amazon:linux:dotnet-templates-10.0, p-cpe:/a:amazon:linux:dotnet10.0-debuginfo, p-cpe:/a:amazon:linux:dotnet10.0-debugsource, p-cpe:/a:amazon:linux:dotnet
Required KB Items: Host/local_checks_enabled, Host/AmazonLinux/release, Host/AmazonLinux/rpm-list
Exploit Ease: No known exploits are available
Patch Publication Date: 8/4/2026
Vulnerability Publication Date: 7/14/2026
CVE: CVE-2026-47300, CVE-2026-47302, CVE-2026-47303, CVE-2026-47304, CVE-2026-50524, CVE-2026-50525, CVE-2026-50526, CVE-2026-50527, CVE-2026-50528, CVE-2026-50646, CVE-2026-50648, CVE-2026-50649, CVE-2026-50650, CVE-2026-50651, CVE-2026-56170, CVE-2026-57108
IAVA: 2026-A-0726