RE : AWS Inspector Shows Critical Updates Pending But Instance Says Otherwise

0

Hi Team,

Instance ID - i-0e5934adddc2d8372

I've updated all the packages (See Libcurl-2.png).

But the Inspector still shows critical updates are pending on my instance (See Libcurl-1.png)

Requesting help in investigating this.Enter image description here
Enter image description here

Enter image description here

Eg :

This is what Inspector Shows For The Instance :

Affected packages

Name libcurl Installed version / Fixed Version 0:7.79.1-4.amzn2.0.1.X86_64 / 0:7.79.1-6.amzn2.0.1 Package manager OS Name curl Installed version / Fixed Version 0:7.79.1-4.amzn2.0.1.X86_64 / 0:7.79.1-6.amzn2.0.1 Package manager OS

This is what the Instance shows when trying to remediate (i.e update the package -> It says its already updated)

sh-4.2$ sudo yum update libcurl Loaded plugins: extras_suggestions, langpacks, priorities, update-motd amzn2-core | 3.7 kB 00:00:00 No packages marked for update sh-4.2$

1 個回答
0

Hey there, There can be a couple of reasons for this.

  1. The repositories, yum update is using, to update the pacakges doesn't have latest patches/packages available.
  2. Some of the repositories which could have potential fixes available are in disabled state in your system or your instance doesn't have required access/permissions to connect to the base url of those repos.
  3. Packages to fix these vulnerabilities have not been release yet.

Thanks, Yogesh Aggarwal

AWS
Yogesh
已回答 1 年前
  • Hi there, checking in if you were able to try the possibilities i shared earlier. If you found the answer helpful, please accept the answer.

    Thanks, Yogesh Aggarwal

您尚未登入。 登入 去張貼答案。

一個好的回答可以清楚地回答問題並提供建設性的意見回饋,同時有助於提問者的專業成長。

回答問題指南