AWS Security ChangesHomeSearch

AWS codedeploy: CodeDeploy: document querying latest agent version per Region

Service: codedeploy · 2026-09-27 · Documentation low

File: codedeploy/latest/userguide/codedeploy-agent-operations-version.md

Summary

Adds a section explaining how to query the regional resource kit bucket's publicly readable latestv2/LATEST_VERSION file to determine the latest available agent version and package keys.

Security assessment

Describes a public version-manifest lookup for operational version discovery; no vulnerability, credential handling, or security control is introduced.

Evidence

+To find out which version is the latest one available in the AWS Region you deploy to, query the CodeDeploy resource kit bucket for that Region. Each regional bucket holds a `latestv2/LATEST_VERSION` file that names the agent packages currently released in that Region. The file is publicly readable, so you don't need credentials to retrieve it.

Diff

diff --git a/codedeploy/latest/userguide/codedeploy-agent-operations-version.md b/codedeploy/latest/userguide/codedeploy-agent-operations-version.md
index b33e0c5d3..fe8febf5d 100644
--- a//codedeploy/latest/userguide/codedeploy-agent-operations-version.md
+++ b//codedeploy/latest/userguide/codedeploy-agent-operations-version.md
@@ -7 +7 @@
-Determine the version on Amazon Linux or RHELDetermine the version on Ubuntu ServerDetermine the version on Windows Server
+Determine the version on Amazon Linux or RHELDetermine the version on Ubuntu ServerDetermine the version on Windows ServerDetermine the latest agent version available in an AWS Region
@@ -31,0 +32,2 @@ Second, you can view the version in a `.version` file on the instance. On Amazon
+  * Determine the latest agent version available in an AWS Region
+
@@ -65,0 +68,24 @@ Sign in to the instance and run the following command:
+## Determine the latest agent version available in an AWS Region
+
+To find out which version is the latest one available in the AWS Region you deploy to, query the CodeDeploy resource kit bucket for that Region. Each regional bucket holds a `latestv2/LATEST_VERSION` file that names the agent packages currently released in that Region. The file is publicly readable, so you don't need credentials to retrieve it.
+    
+    
+    curl https://bucket-name.s3.region-identifier.amazonaws.com/latestv2/LATEST_VERSION
+
+Replace `bucket-name` and `region-identifier` with the resource kit bucket and Region identifier for the Region you deploy to. For the list, see [Resource kit bucket names by Region](./resource-kit.html#resource-kit-bucket-names).
+
+The command returns output similar to the following:
+    
+    
+    {
+        "rpm_x86_64": "releases/codedeploy-agent-2.1.0-9745926189.x86_64.rpm",
+        "rpm_aarch64": "releases/codedeploy-agent-2.1.0-9745926189.aarch64.rpm",
+        "deb_x86_64": "releases/codedeploy-agent_2.1.0-9745926189_amd64.deb",
+        "deb_aarch64": "releases/codedeploy-agent_2.1.0-9745926189_arm64.deb",
+        "msi": "releases/codedeploy-agent-2.1.0-9745926189.msi"
+    }
+
+Each key names a package type, and for RPM and DEB the instance architecture as well. Each value is the Amazon S3 object key of that package, and the agent version and build number are part of its file name, in the format ``agent-version`-`build-number``. In the preceding output, the latest version available in the Region is 2.1.0.
+
+To install or update to the version this file names, see [Install the CodeDeploy agent](./codedeploy-agent-operations-install.html) and [Update the CodeDeploy agent](./codedeploy-agent-operations-update.html). For the features included in each version, see [Version history of the CodeDeploy agent](./codedeploy-agent.html#codedeploy-agent-version-history).
+