cvedb.io
CVE-2021-42986
HIGH · CVSS 8.8
EPSS exploitation probability: 0%
Published 2021-12-07T20:15:07.647 · Last modified 2026-06-17T04:10:19.177

Summary

NoMachine Enterprise Client is affected by Integer Overflow. IOCTL Handler 0x22001B in the NoMachine Enterprise Client above 4.0.346 and below 7.7.4 allow local attackers to execute arbitrary code in kernel mode or cause a denial of service (memory corruption and OS crash) via specially crafted I/O Request Packet.

Affected products

nomachine — enterprise_client

Does this affect you?

Add your gear to cvedb and we'll alert you only when nomachine ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.