First published: Tue Dec 07 2021(Updated: )
FlexiHub For Windows is affected by Buffer Overflow. IOCTL Handler 0x22001B in the FlexiHub For Windows above 2.0.4340 below 5.3.14268 allows local attackers to execute arbitrary code in kernel mode or cause a denial of service (memory corruption and OS crash) via specially crafted I/O Request Packet.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
RealFlex RealWin | >2.0.4340<5.3.14268 | |
Microsoft Windows | ||
All of | ||
RealFlex RealWin | >2.0.4340<5.3.14268 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-42990 is classified as a high-severity vulnerability due to potential kernel-level code execution and system crash.
To fix CVE-2021-42990, upgrade FlexiHub For Windows to version 5.3.14268 or later.
CVE-2021-42990 can enable local attackers to execute arbitrary code in kernel mode or cause a denial of service.
FlexiHub For Windows versions between 2.0.4340 and 5.3.14268 are affected by CVE-2021-42990.
No, Microsoft Windows itself is not vulnerable; the vulnerability lies within specific versions of FlexiHub.