CVE-2021-42979
Summary
| CVE | CVE-2021-42979 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-12-07 20:15:00 UTC |
| Updated | 2021-12-08 16:30:00 UTC |
| Description | NoMachine Cloud Server is affected by Integer Overflow. IOCTL Handler 0x22001B in the NoMachine Cloud Server above 4.0.346 and below 7.7.4 allow local attackers to execute arbitrary code in kernel mode or cause a denial of service (memory corruption and OS crash) via specially crafted I/O Request Packet. |
Risk And Classification
Problem Types: CWE-190
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Nomachine | Cloud Server | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| USB Over Ethernet | Multiple Vulnerabilities in AWS and Other Major Cloud Services - SentinelOne | MISC | www.sentinelone.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.