Amazon Linux AMI Update: kernel / openssh Denial of Service (ALAS-2014-319)
Medium Nessus Plugin ID 73569
SynopsisThe remote Amazon Linux AMI host is missing a security update.
DescriptionDue to a problem with the configuration of kernels 3.10.34-37 and 3.10.34-38 and their interaction with the authentication modules stack, the sshd daemon that is part of the openssh package will no longer allow remote logins following a restart of the sshd service.
SolutionRun 'yum update openssh kernel' to update the system. A reboot will be necessary for the new kernel on the instance.