What the vendor says is affected
The collected bulletin did not provide a separate affected-products list. Check the original bulletin before making an exposure decision.
What the vendor recommends
Affected Products & Versions: OpenSearch SQL Plugin (open-source, self-managed): - Affected: v2.13 to v3.6 - Fixed: versions 3.7 and 2.19.6 Amazon OpenSearch Service (AWS Managed): - Affected: v2.13 to v3.5 - Fixed: v2.13 to v3.5 (via service software update) Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.
Review the complete instructions on the vendor's siteWhat changed in later vendor updates
SecurityAlert records field-level changes from the point we begin following a bulletin. Earlier vendor changes may not have a field-by-field record.
- The vendor changed the advisory's last-updated date.
- The vendor changed the advisory's last-updated date.
- The vendor changed the advisory's last-updated date.
When this advisory changed
- Added to SecurityAlert
We collected the advisory from the official source.
- Published by AWS
The publication date reported by the vendor.
- Confirmed at the source
Our collector saw this advisory during a later source check.