bartek@aws: ~/news
$ whoami
$ AWS Architect · DevOps · Cloud
Thursday, September 3, 2026

AWS FPGA Development Kit: Critical Privilege Escalation Vulnerability

AWS FPGA Development Kit versions before 2.3.4 have a nasty privilege escalation bug (CVE-2026-85028). Local attackers can drop malicious code in a world-writable temp directory and gain root access when the installer runs. If you're using aws-fpga, update to 2.3.4 or later immediately—this one requires action.

source: [aws/security-bulletin]