

# Amazon Linux 2 version 2.0.20240109.0 release notes
<a name="relnotes-20240110"></a>

These are the release notes for Amazon Linux 2 version 2.0.20240109.0.

## Major updates
<a name="major-updates-20240110"></a>

None.

## Package updates
<a name="package-updates-20240110"></a>

The following packages were updated.


|  | 
| --- |
|  `PyYAML-3.10-11.amzn2.0.3.aarch64`  | 
|  `PyYAML-3.10-11.amzn2.0.3.x86_64`  | 
|  `binutils-2.29.1-31.amzn2.0.1.aarch64`  | 
|  `binutils-2.29.1-31.amzn2.0.1.x86_64`  | 
|  `curl-8.3.0-1.amzn2.0.5.aarch64`  | 
|  `curl-8.3.0-1.amzn2.0.5.x86_64`  | 
|  `dmidecode-3.2-5.amzn2.1.1.aarch64`  | 
|  `dmidecode-3.2-5.amzn2.1.1.x86_64`  | 
|  `kernel-4.14.334-252.552.amzn2.aarch64`  | 
|  `kernel-4.14.334-252.552.amzn2.x86_64`  | 
|  `kernel-5.10.205-195.804.amzn2.aarch64`  | 
|  `kernel-5.10.205-195.804.amzn2.x86_64`  | 
|  `kernel-devel-4.14.334-252.552.amzn2.x86_64`  | 
|  `kernel-headers-4.14.334-252.552.amzn2.x86_64`  | 
|  `kernel-tools-4.14.334-252.552.amzn2.aarch64`  | 
|  `kernel-tools-4.14.334-252.552.amzn2.x86_64`  | 
|  `kernel-tools-5.10.205-195.804.amzn2.aarch64`  | 
|  `kernel-tools-5.10.205-195.804.amzn2.x86_64`  | 
|  `libcurl-8.3.0-1.amzn2.0.5.aarch64`  | 
|  `libcurl-8.3.0-1.amzn2.0.5.x86_64`  | 
|  `libseccomp-2.5.2-1.amzn2.0.1.aarch64`  | 
|  `libseccomp-2.5.2-1.amzn2.0.1.x86_64`  | 
|  `ncurses-6.0-8.20170212.amzn2.1.7.aarch64`  | 
|  `ncurses-6.0-8.20170212.amzn2.1.7.x86_64`  | 
|  `ncurses-base-6.0-8.20170212.amzn2.1.7.noarch`  | 
|  `ncurses-compat-libs-6.0-8.20170212.amzn2.1.7.x86_64`  | 
|  `ncurses-libs-6.0-8.20170212.amzn2.1.7.aarch64`  | 
|  `ncurses-libs-6.0-8.20170212.amzn2.1.7.x86_64`  | 
|  `python-2.7.18-1.amzn2.0.8.aarch64`  | 
|  `python-2.7.18-1.amzn2.0.8.x86_64`  | 
|  `python-devel-2.7.18-1.amzn2.0.8.aarch64`  | 
|  `python-devel-2.7.18-1.amzn2.0.8.x86_64`  | 
|  `python-libs-2.7.18-1.amzn2.0.8.aarch64`  | 
|  `python-libs-2.7.18-1.amzn2.0.8.x86_64`  | 
|  `python-pillow-2.0.0-23.gitd1c6db8.amzn2.0.9.aarch64`  | 
|  `python-pillow-2.0.0-23.gitd1c6db8.amzn2.0.9.x86_64`  | 
|  `python-urllib3-1.25.9-1.amzn2.0.3.noarch`  | 
|  `tar-1.26-35.amzn2.0.3.aarch64`  | 
|  `tar-1.26-35.amzn2.0.3.x86_64`  | 
|  `vim-common-9.0.2153-1.amzn2.0.1.aarch64`  | 
|  `vim-common-9.0.2153-1.amzn2.0.1.x86_64`  | 
|  `vim-data-9.0.2153-1.amzn2.0.1.noarch`  | 
|  `vim-enhanced-9.0.2153-1.amzn2.0.1.aarch64`  | 
|  `vim-enhanced-9.0.2153-1.amzn2.0.1.x86_64`  | 
|  `vim-filesystem-9.0.2153-1.amzn2.0.1.noarch`  | 
|  `vim-minimal-9.0.2153-1.amzn2.0.1.aarch64`  | 
|  `vim-minimal-9.0.2153-1.amzn2.0.1.x86_64`  | 
|  `xorg-x11-server-Xorg-1.20.4-22.amzn2.0.3.x86_64`  | 
|  `xorg-x11-server-common-1.20.4-22.amzn2.0.3.x86_64`  | 
|  `xxd-9.0.2153-1.amzn2.0.1.aarch64`  | 
|  `xxd-9.0.2153-1.amzn2.0.1.x86_64`  | 

Packages with CVEs

**binutils-2.29.1-31.amzn2.0.1**

CVEs fixed:
+ [CVE-2020-19724](https://alas.aws.amazon.com/cve/html/CVE-2020-19724.html)
+ [CVE-2021-46174](https://alas.aws.amazon.com/cve/html/CVE-2021-46174.html)
+ [CVE-2022-35205](https://alas.aws.amazon.com/cve/html/CVE-2022-35205.html)
+ [CVE-2022-47007](https://alas.aws.amazon.com/cve/html/CVE-2022-47007.html)
+ [CVE-2022-47008](https://alas.aws.amazon.com/cve/html/CVE-2022-47008.html)
+ [CVE-2022-47010](https://alas.aws.amazon.com/cve/html/CVE-2022-47010.html)
+ [CVE-2022-48064](https://alas.aws.amazon.com/cve/html/CVE-2022-48064.html)
+ [CVE-2023-1972](https://alas.aws.amazon.com/cve/html/CVE-2023-1972.html)

**curl-8.3.0-1.amzn2.0.5**, **libcurl-8.3.0-1.amzn2.0.5**

CVEs fixed:
+ [CVE-2023-46218](https://alas.aws.amazon.com/cve/html/CVE-2023-46218.html)
+ [CVE-2023-46219](https://alas.aws.amazon.com/cve/html/CVE-2023-46219.html)

**dmidecode-3.2-5.amzn2.1.1**

CVE fixed:
+ [CVE-2023-30630](https://alas.aws.amazon.com/cve/html/CVE-2023-30630.html)

**kernel-4.14.334-252.552.amzn2**, **kernel-devel-4.14.334-252.552.amzn2**, **kernel-headers-4.14.334-252.552.amzn2**, **kernel-tools-4.14.334-252.552.amzn2**

CVEs fixed:
+ [CVE-2023-39198](https://alas.aws.amazon.com/cve/html/CVE-2023-39198.html)
+ [CVE-2023-6932](https://alas.aws.amazon.com/cve/html/CVE-2023-6932.html)

**kernel-5.10.205-195.804.amzn2**, **kernel-tools-5.10.205-195.804.amzn2**

CVEs fixed:
+ [CVE-2023-39198](https://alas.aws.amazon.com/cve/html/CVE-2023-39198.html)
+ [CVE-2023-46862](https://alas.aws.amazon.com/cve/html/CVE-2023-46862.html)
+ [CVE-2023-6121](https://alas.aws.amazon.com/cve/html/CVE-2023-6121.html)
+ [CVE-2023-6817](https://alas.aws.amazon.com/cve/html/CVE-2023-6817.html)
+ [CVE-2023-6931](https://alas.aws.amazon.com/cve/html/CVE-2023-6931.html)
+ [CVE-2023-6932](https://alas.aws.amazon.com/cve/html/CVE-2023-6932.html)

**ncurses-6.0-8.20170212.amzn2.1.7**, **ncurses-base-6.0-8.20170212.amzn2.1.7**, **ncurses-compat-libs-6.0-8.20170212.amzn2.1.7**, **ncurses-libs-6.0-8.20170212.amzn2.1.7**

CVE fixed:
+ [CVE-2023-50495](https://alas.aws.amazon.com/cve/html/CVE-2023-50495.html)

**python-2.7.18-1.amzn2.0.8**, **python-devel-2.7.18-1.amzn2.0.8**, **python-libs-2.7.18-1.amzn2.0.8**

CVE fixed:
+ [CVE-2022-48566](https://alas.aws.amazon.com/cve/html/CVE-2022-48566.html)

**python-pillow-2.0.0-23.gitd1c6db8.amzn2.0.9**

CVE fixed:
+ [CVE-2016-9189](https://alas.aws.amazon.com/cve/html/CVE-2016-9189.html)

**python-urllib3-1.25.9-1.amzn2.0.3**

CVE fixed:
+ [CVE-2023-45803](https://alas.aws.amazon.com/cve/html/CVE-2023-45803.html)

**tar-1.26-35.amzn2.0.3**

CVE fixed:
+ [CVE-2023-39804](https://alas.aws.amazon.com/cve/html/CVE-2023-39804.html)

**vim-common-9.0.2153-1.amzn2.0.1**, **vim-data-9.0.2153-1.amzn2.0.1**, **vim-enhanced-9.0.2153-1.amzn2.0.1**, **vim-filesystem-9.0.2153-1.amzn2.0.1**, **vim-minimal-9.0.2153-1.amzn2.0.1**, **xxd-9.0.2153-1.amzn2.0.1**

CVE fixed:
+ [CVE-2023-48706](https://alas.aws.amazon.com/cve/html/CVE-2023-48706.html)

**xorg-x11-server-Xorg-1.20.4-22.amzn2.0.3**, **xorg-x11-server-common-1.20.4-22.amzn2.0.3**

CVEs fixed:
+ [CVE-2023-6377](https://alas.aws.amazon.com/cve/html/CVE-2023-6377.html)
+ [CVE-2023-6478](https://alas.aws.amazon.com/cve/html/CVE-2023-6478.html)