bartek@aws: ~/news
$ whoami
$ AWS Architect · DevOps · Cloud

tag: buffer overflow

show all
Thursday, August 20, 2026

Critical Stack Overflow in AWS C Event Stream – Update Required

AWS Common Runtime's event-stream decoder (CVE-2026-5190) has a nasty stack buffer overflow that could let attackers execute arbitrary code on your client apps. If you're using aws-c-event-stream before 0.6.0 or any of the affected AWS IoT/SDK libraries (cpp, java, python, js, swift), you need to patch immediately. This one's serious—malicious servers can trigger memory corruption through crafted messages, so don't sleep on the updates.

source: [aws/security-bulletin]