AWS Security ChangesHomeSearch

AWS res: RES 2025.09 release notes incl. desktop session isolation fix

Service: res · 2026-09-29 · Security-related high

File: res/archive/release-minus-4/ug/revisions.md · Type: authz

Summary

Adds September 2025 release notes for RES 2025.09, including new region support, new features, and bug fixes such as users no longer seeing other users' desktop sessions and an IAM role-name uniqueness fix in multi-region deployments.

Security assessment

The changelog explicitly records the fix of a cross-user session visibility defect — i.e., an authorization/isolation failure that let one user view another user's desktop session — plus an IAM role-name collision fix in multi-region deployments; these are concrete security-relevant fixes, not merely aspirational guidance.

Evidence

+    * Resolved users being able to see other users desktop sessions.

Diff

diff --git a/res/archive/release-minus-4/ug/revisions.md b/res/archive/release-minus-4/ug/revisions.md
index 4acd0350d..d1ba75ef5 100644
--- a//res/archive/release-minus-4/ug/revisions.md
+++ b//res/archive/release-minus-4/ug/revisions.md
@@ -12,0 +13,18 @@ Date | Change
+September 2025 | 
+
+  * Release version 2025.09 Enhancements
+    * Region support expansion for ap-northeast-3, ap-southeast-3, me-central-1, and sa-east-1.
+    * Deletion of computer account from AD domain on VDI termination.
+    * Systems Manager Parameter Alias support for AMI IDs to simplify the management of project-specific images.
+    * Integration with pre-existing Amazon Cognito pool for streamlined authentication setup during deployment.
+    * Customization of CIDR ranges in the CloudFormation external resources template during deployment for enhanced network planning and integration with existing resources.
+    * Addition of AD email sync functionality after initialization.
+    * Support for Amazon EC2 g6f instances.
+Changes
+    * Moving infrastructure deployment out of ECS installer task to simplify installation process.
+Bug Fixes
+    * Resolved persistent instance resume failures.
+    * Resolved users being able to see other users desktop sessions.
+    * Resolved IAM user role name uniqueness issue in multi-region single account deployments.
+
+