vulnerability

Amazon Linux AMI: CVE-2021-3737: Security patch for python27 (ALAS-2022-1593)

Severity
7
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:C)
Published
Sep 16, 2021
Added
Jun 10, 2022
Modified
Jun 10, 2022

Description

A flaw was found in python. An improperly handled HTTP response in the HTTP client code of python may allow a remote attacker, who controls the HTTP server, to make the client script enter an infinite loop, consuming CPU time. The highest threat from this vulnerability is to system availability.

Solution

amazon-linux-upgrade-python27
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.