CVE-2021-0701

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Jun 15, 2023
Updated: Dec 18, 2024
CWE ID 190

Summary

CVE-2021-0701 is a vulnerability affecting the PowerVR kernel driver. The issue lies in the PVRSRVBridgeSyncPrimOpCreate function, where a missing size check can result in an integer overflow. This overflow allows for out-of-bounds heap access, potentially leading to local privilege escalation. Importantly, user interaction is not required for exploitation, making this a significant security concern.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share