CVE-2026-1386 - Arbitrary Host File Overwrite via Symlink in Firecracker Jailer
Bulletin ID: 2026-003-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 2026/01/23 12:30 PM PST Description: Firecracker is an open source virtualization technology that is purpose-built for creating and managing secure, multi-tenant container and function-based services. Firecracker runs in user space and uses the Linux Kernel-based Virtual Machine (KVM) to create microVMs. Each Firecracker microVM is further isolated with common Linux user-space security barriers by a companion program called "jailer". The jailer provides a second line of defense in case a user escapes from the microVM boundaries and it is released at each Firecracker version. We are aware of CVE-2026-1386, an issue that is related to the Firecracker jailer, which under certain circumstances can allow an user to overwrite arbitrary files in the host filesystem. AWS services that use Firecracker are not impacted by the issue as we appropriately restrict access to the host and the jailer folder, blocking the preconditions required for the attack to happen. Impacted versions: Firecracker version v1.13.1 and earlier and 1.14.0 Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.
CSIRTS triage
- What
- An issue in the Firecracker jailer may allow users to overwrite arbitrary files in the host filesystem.
- Who is affected
- Users of Firecracker technology.
- Urgency
- Remediation is important to prevent potential file overwrites.
- Action
- Review and apply updates to the Firecracker jailer.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch Firecracker
Get an email when a new Firecracker advisory drops — max one per day, one-click unsubscribe.
Details
Original advisory: https://aws.amazon.com/security/security-bulletins/rss/2026-003-aws/
Exploitation outlook
EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.
- Low exploitation riskCVE-2026-13860.20% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 10% of all EPSS-scored CVEs.
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-1386 | coverage & exploitation status | NVD · CVE.org |
Recent advisories for - Arbitrary Host
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- unknownCVE-2026-80853: In the Linux kernel, the following vulnerability has been resolved: KVM: SEV: Allocate full pa…nvd · 2026-09-04
- unknownCVE-2026-80814: In the Linux kernel, the following vulnerability has been resolved: rndis_host: add overflow c…nvd · 2026-09-04
- unknownCVE-2026-80813: In the Linux kernel, the following vulnerability has been resolved: nvmet: fix NULL pointer de…nvd · 2026-09-04
- unknownCVE-2026-80789: In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: bound SGL data …nvd · 2026-09-04
- unknownCVE-2026-80765: In the Linux kernel, the following vulnerability has been resolved: HID: hyperv: validate init…nvd · 2026-09-04
- highCVE-2026-85675: OWL's DocumentProcessingToolkit contains a server-side request forgery vulnerability in the ex…nvd · 2026-09-04
More from AWS Security Bulletins
- highCVE-2026-85028: Creation of Temporary File in Directory with Insecure Permissions in AWS FPGA Development Kit2026-09-03
- unknownCVE-2026-85012 - OS command injection in the Amazon CodeCatalyst blueprints SDK2026-09-03
- unknownCVE-2026-84851- Uncontrolled recursion in the Ion reader in Amazon Ion-C before 1.1.62026-09-02
- unknownCVE-2026-83551 - Cleartext storage of HMAC signing key in Amazon SageMaker Python SDK2026-09-01
- unknownCVE-2026-83497 - OpenSearch SQL Plugin - Unrestricted Java Deserialization in Cursor Pagination2026-08-31