Amazon Linux 2 — aws-cfn-bootstrap — multiple vulnerabilities (4 CVEs) — patch and remediation guide
🟡 Medium ⏱ 10–30 min Last verified: 25 May 2026 Affected versions: Amazon Linux 2 📖 ~4 min read • Source: Amazon Linux advisory ALAS2-2025-3104 Related CVEs: CVE-2024-13176 CVE-2024-47081 CVE-2025-9230 CVE-2024-35195 Upstream summary: Issue summary: A timing side-channel which could potentially allow recovering the private key exists in the ECDSA signature computation. Impact summary: […]