Amazon Linux AMI Security Advisory: ALAS-2016-650
Advisory Release Date: 2016-02-09 13:30 Pacific
It was found that the parsing of the NSSCipherSuite option of mod24_nss, which accepts OpenSSL-style cipherstrings, is flawed. If the option is used to disable insecure ciphersuites using the common "!" syntax, it will actually enable those insecure ciphersuites. (CVE-2015-5244 )
Run yum update mod24_nss to update your system.