The Amazon SSM Agent (used for managing EC2 instances via Amazon Systems Manager) created a world-writable sudoers file,
which would have allowed local attackers to inject Sudo rules and escalate privileges to root.
This could occur in certain situations involving a race condition.
Affected Services
SSM, EC2
Remediation
Update the agent to the patched version (3.1.1208)