vulnerability

Amazon Linux AMI 2: CVE-2024-32976: Security patch for ecs-service-connect-agent (ALASECS-2024-037)

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:C)
Published
Jun 4, 2024
Added
Jun 26, 2024
Modified
Jan 28, 2025

Description

Envoy is a cloud-native, open source edge and service proxy. Envoyproxy with a Brotli filter can get into an endless loop during decompression of Brotli data with extra input.

Solution

amazon-linux-ami-2-upgrade-ecs-service-connect-agent
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.