First published: Wed Sep 01 2021(Updated: )
Amazon Kindle e-reader prior to and including version 5.13.4 improperly manages privileges, allowing the framework user to elevate privileges to root.
Credit: cve@checkpoint.com
Affected Software | Affected Version | How to fix |
---|---|---|
Amazon Kindle Firmware | <=5.13.4 | |
Amazon Kindle |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-30355 is critical with a CVSS score of 8.6.
CVE-2021-30355 allows the framework user to elevate privileges to root on Amazon Kindle e-reader devices prior to and including version 5.13.4.
Amazon Kindle e-reader devices up to and including version 5.13.4 are affected by CVE-2021-30355.
To fix the vulnerability, update your Amazon Kindle e-reader to a version higher than 5.13.4.
You can find more information about CVE-2021-30355 at the following reference: https://research.checkpoint.com/2021/i-can-take-over-your-kindle/