Amazon Linux 2 Security Advisory: ALASLIVEPATCH-2025-203
Advisory Release Date: 2025-03-03 19:09 Pacific
Advisory Updated Date: 2025-03-06 10:15 Pacific
In the Linux kernel, the following vulnerability has been resolved:
tipc: guard against string buffer overrun (CVE-2024-49995)
In the Linux kernel, the following vulnerability has been resolved:
dm cache: fix out-of-bounds access to the dirty bitset when resizing (CVE-2024-50279)
Affected Packages:
kernel-livepatch-4.14.355-275.572
Issue Correction:
Run yum update kernel-livepatch-4.14.355-275.572 to update your system.
src:
kernel-livepatch-4.14.355-275.572-1.0-1.amzn2.src
x86_64:
kernel-livepatch-4.14.355-275.572-1.0-1.amzn2.x86_64