cb
cvebase
.
~
/
products
/
amazon
/
hotpatch
Search CVEs, products, detections…
⌘K
pipeline live
Digest
Docs
Home
/
Products
/
amazon
/
Amazon Hotpatch
Amazon Hotpatch vulnerabilities
1 known vulnerability affecting
amazon/hotpatch
.
Track
Version
All versions
Total CVEs
1
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH
1
Vulnerabilities
Sort
Most important
Highest Priority
Highest EPSS
Highest CVSS
Newest
Oldest
Page 1 of 1
CVE-2022-33915
P4
HIGH
CVSS 7.0
fixed in 1.3.5
2022-06-17
CVE-2022-33915 [HIGH] CVE-2022-33915: Versions of the Amazon AWS Apache Log4j hotpatch package before log4j-cve-2021-44228-hotpatch-1.3.5 Versions of the Amazon AWS Apache Log4j hotpatch package before log4j-cve-2021-44228-hotpatch-1.3.5 are affected by a race condition that could lead to a local privilege escalation. This Hotpatch package is not a replacement for updating to a log4j version that mitigates CVE-2021-44228 or CVE-2021-45046; it provides a temporary mitigation to CVE-2021-44228 by
nvd
Amazon Hotpatch vulnerabilities | cvebase