Amazon Linux 2 — mod_auth_openidc — multiple vulnerabilities (4 CVEs) — patch and remediation guide
🟡 Medium ⏱ 10–30 min Last verified: 25 May 2026 Affected versions: Amazon Linux 2 📖 ~4 min read • Source: Amazon Linux advisory ALAS2-2019-1329 Related CVEs: CVE-2017-6059 CVE-2017-6413 CVE-2019-14857 CVE-2019-20479 Upstream summary: A text injection flaw was found in how mod_auth_openidc handled error pages. An attacker could potentially use this flaw to conduct […]