Skip to content

CVE-2024-34158 #633

@curtdept

Description

@curtdept

Detectors are picking up a CVE in this lambda layer on 1.5.7

https://nvd.nist.gov/vuln/detail/CVE-2024-34158

Looks like go was bumped in Feb but this hasn't made a published release.

https://github.com/elastic/apm-aws-lambda/blob/5006279928ce999a9e580206237a00fd7c63a83c/go.mod

Metadata

Metadata

Assignees

No one assigned

    Labels

    aws-λ-extensionAWS Lambda ExtensionbugSomething isn't workingcommunityIssues and PRs created by the communitytriageIssues and PRs that need to be triaged

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions