Vulnerability CVE-2024-27350


Published: 2024-02-26

Description:
Amazon Fire OS 7 before 7.6.6.9 and 8 before 8.1.0.3 allows Fire TV applications to establish local ADB (Android Debug Bridge) connections. NOTE: some third parties dispute whether this has security relevance, because an ADB connection is only possible after the (non-default) ADB Debugging option is enabled, and after the initiator of that specific connection attempt has been approved via a full-screen prompt.

 References:
https://www.aftvnews.com/amazon-blocks-long-running-fire-tv-capability-breaking-popular-apps-with-no-warning-and-giving-developers-the-runaround/
https://news.ycombinator.com/item?id=39496861
https://developer.amazon.com/docs/fire-tv/fire-os-overview.html

Copyright 2026, cxsecurity.com

 

Back to Top