Amazon Kindle e-reader prior to and including version 5.13.4 improperly manages privileges, allowing the framework user to elevate privileges to root.
Amazon Kindle e-reader prior to and including version 5.13.4 contains an Integer Overflow that leads to a Heap-Based Buffer Overflow in function CJBig2Image::expand() and results in a memory corruption that leads to code execution when parsing a crafted PDF book.
The Amazon.com Kindle application before 4.5.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
Latest version: 2.5.8
Latest version: 2.5.8
End of life: 6/1/2024, Latest version: 5.16.2.1
End of life: 6/1/2024, Latest version: 5.16.2.1
End of life: 6/1/2024, Latest version: 5.16.2.1
End of life: 6/1/2024, Latest version: 5.16.2.1
End of life: 10/1/2019, Latest version: 5.12.2.2
End of life: 10/1/2019, Latest version: 5.12.2.2
End of life: 12/31/2028, Latest version: 5.18.2
End of life: 12/31/2028, Latest version: 5.18.2
End of life: 6/26/2015, Latest version: 5.6.1.1
End of life: 6/26/2015, Latest version: 5.6.1.1
End of life: 12/31/2026, Latest version: 5.18.1
End of life: 12/31/2026, Latest version: 5.18.1
Latest version: 1.2.1
Latest version: 1.2.1
End of life: 12/31/2026, Latest version: 5.18.1
End of life: 12/31/2026, Latest version: 5.18.1
End of life: 12/31/2028, Latest version: 5.19.2
End of life: 12/31/2028, Latest version: 5.19.2
Latest version: 3.4.3
Latest version: 3.4.3
End of life: 6/1/2024, Latest version: 5.16.2.1
End of life: 6/1/2024, Latest version: 5.16.2.1
End of life: 6/1/2024, Latest version: 5.16.2.1
End of life: 6/1/2024, Latest version: 5.16.2.1
End of life: 10/1/2019, Latest version: 5.12.2.2