Publicly accessible Lambda function has a critical vulnerability

이 페이지는 아직 한국어로 제공되지 않으며 번역 작업 중입니다. 번역에 관한 질문이나 의견이 있으시면 언제든지 저희에게 연락해 주십시오.

Description

The policy evaluates AWS Lambda functions to determine if they are publicly accessible and have one or more critical-severity vulnerabilities. Publicly accessible functions with critical vulnerabilities are at a higher risk of malicious attacks, which can compromise data integrity and system security.

Remediation

  1. Identify Lambda functions that are publicly accessible and review the associated critical vulnerabilities.
  2. Prioritize and apply security patches or updates to address the identified vulnerabilities. If patches are not available, consider implementing alternative security measures.
  3. Evaluate the need for public accessibility of the Lambda function. If unnecessary, modify the function’s access settings to restrict public access.