fix: set DD agent version to 7.71.x #2309
Merged
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Problem
This fix addresses a local privilege escalation vulnerability in Datadog Agent versions 7.65.0-7.70.2 for Linux non-containerized hosts.
Vulnerability: CVSS 7.0 - Local privilege escalation
Affected Versions: 7.65.0 through 7.70.2
Fix Version: 7.71.1+
Our Current Version: 7.69.4 (vulnerable)
Impact
Affected Infrastructure:
Production: 20 EC2 instances running vulnerable agents
Staging: 2 EC2 instances (likely vulnerable)
All instances are part of Elastic Beanstalk environments with agent v7.69.4.
Solution
File: backend/.ebextensions/99datadog.config