

# Amazon Linux 2 version 2.0.20240306.2 release notes
March 11, 2024

These are the release notes for Amazon Linux 2 version 2.0.20240306.2.

## Major updates


None.

## Package updates


The following packages were updated.


|  | 
| --- |
|  `cpio-2.12-11.amzn2.0.1.aarch64`  | 
|  `cpio-2.12-11.amzn2.0.1.x86_64`  | 
|  `curl-8.3.0-1.amzn2.0.6.aarch64`  | 
|  `curl-8.3.0-1.amzn2.0.6.x86_64`  | 
|  `glib2-2.56.1-9.amzn2.0.7.aarch64`  | 
|  `glib2-2.56.1-9.amzn2.0.7.x86_64`  | 
|  `kernel-4.14.336-257.562.amzn2.aarch64`  | 
|  `kernel-4.14.336-257.562.amzn2.x86_64`  | 
|  `kernel-5.10.210-201.852.amzn2.aarch64`  | 
|  `kernel-5.10.210-201.852.amzn2.x86_64`  | 
|  `kernel-devel-4.14.336-257.562.amzn2.x86_64`  | 
|  `kernel-headers-4.14.336-257.562.amzn2.x86_64`  | 
|  `kernel-tools-4.14.336-257.562.amzn2.aarch64`  | 
|  `kernel-tools-4.14.336-257.562.amzn2.x86_64`  | 
|  `kernel-tools-5.10.210-201.852.amzn2.aarch64`  | 
|  `kernel-tools-5.10.210-201.852.amzn2.x86_64`  | 
|  `less-458-9.amzn2.0.3.aarch64`  | 
|  `less-458-9.amzn2.0.3.x86_64`  | 
|  `libcurl-8.3.0-1.amzn2.0.6.aarch64`  | 
|  `libcurl-8.3.0-1.amzn2.0.6.x86_64`  | 
|  `libpsl-0.21.5-1.amzn2.aarch64`  | 
|  `libpsl-0.21.5-1.amzn2.x86_64`  | 
|  `ncurses-6.0-8.20170212.amzn2.1.8.aarch64`  | 
|  `ncurses-6.0-8.20170212.amzn2.1.8.x86_64`  | 
|  `ncurses-base-6.0-8.20170212.amzn2.1.8.noarch`  | 
|  `ncurses-compat-libs-6.0-8.20170212.amzn2.1.8.x86_64`  | 
|  `ncurses-libs-6.0-8.20170212.amzn2.1.8.aarch64`  | 
|  `ncurses-libs-6.0-8.20170212.amzn2.1.8.x86_64`  | 
|  `openssl-1.0.2k-24.amzn2.0.12.aarch64`  | 
|  `openssl-1.0.2k-24.amzn2.0.12.x86_64`  | 
|  `openssl-libs-1.0.2k-24.amzn2.0.12.aarch64`  | 
|  `openssl-libs-1.0.2k-24.amzn2.0.12.x86_64`  | 
|  `publicsuffix-list-dafsa-20240208-1.amzn2.0.1.noarch`  | 

Packages with CVEs

**cpio-2.12-11.amzn2.0.1**

CVE fixed:
+ [CVE-2015-1197](https://alas.aws.amazon.com/cve/html/CVE-2015-1197.html)

**glib2-2.56.1-9.amzn2.0.7**

CVE fixed:
+ [CVE-2021-28153](https://alas.aws.amazon.com/cve/html/CVE-2021-28153.html)

**kernel-4.14.336-257.562.amzn2**, **kernel-devel-4.14.336-257.562.amzn2**, **kernel-headers-4.14.336-257.562.amzn2**, **kernel-tools-4.14.336-257.562.amzn2**

CVEs fixed:
+ [CVE-2023-52429](https://alas.aws.amazon.com/cve/html/CVE-2023-52429.html)
+ [CVE-2023-6270](https://alas.aws.amazon.com/cve/html/CVE-2023-6270.html)
+ [CVE-2024-23849](https://alas.aws.amazon.com/cve/html/CVE-2024-23849.html)

**kernel-5.10.210-201.852.amzn2**, **kernel-tools-5.10.210-201.852.amzn2**

CVEs fixed:
+ [CVE-2023-52429](https://alas.aws.amazon.com/cve/html/CVE-2023-52429.html)
+ [CVE-2023-52435](https://alas.aws.amazon.com/cve/html/CVE-2023-52435.html)
+ [CVE-2024-0340](https://alas.aws.amazon.com/cve/html/CVE-2024-0340.html)
+ [CVE-2024-1151](https://alas.aws.amazon.com/cve/html/CVE-2024-1151.html)
+ [CVE-2024-23850](https://alas.aws.amazon.com/cve/html/CVE-2024-23850.html)

**less-458-9.amzn2.0.3**

CVE fixed:
+ [CVE-2022-48624](https://alas.aws.amazon.com/cve/html/CVE-2022-48624.html)

**ncurses-6.0-8.20170212.amzn2.1.8**, **ncurses-base-6.0-8.20170212.amzn2.1.8**, **ncurses-compat-libs-6.0-8.20170212.amzn2.1.8**, **ncurses-libs-6.0-8.20170212.amzn2.1.8**

CVE fixed:
+ [CVE-2023-45918](https://alas.aws.amazon.com/cve/html/CVE-2023-45918.html)

**openssl-1.0.2k-24.amzn2.0.12**, **openssl-libs-1.0.2k-24.amzn2.0.12**

CVE fixed:
+ [CVE-2024-0727](https://alas.aws.amazon.com/cve/html/CVE-2024-0727.html)