High severity8.8NVD Advisory· Published Dec 7, 2021· Updated Jun 17, 2026
CVE-2021-42986
CVE-2021-42986
Description
NoMachine Enterprise Client is affected by Integer Overflow. IOCTL Handler 0x22001B in the NoMachine Enterprise Client above 4.0.346 and below 7.7.4 allow local attackers to execute arbitrary code in kernel mode or cause a denial of service (memory corruption and OS crash) via specially crafted I/O Request Packet.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:nomachine:enterprise_client:*:*:*:*:*:*:*:*Range: >4.0.346,<7.7.4
- NoMachine/NoMachine Enterprise Clientdescription
- Range: >4.0.346 and <7.7.4
Patches
Vulnerability mechanics
References
1- www.sentinelone.com/labs/usb-over-ethernet-multiple-privilege-escalation-vulnerabilities-in-aws-and-other-major-cloud-services/nvdExploitTechnical DescriptionThird Party Advisory
News mentions
0No linked articles in our index yet.