ID

VAR-202211-0360


CVE

CVE-2021-42205


TITLE

Lenovo  of  Windows  for  elan miniport touchpad driver  Vulnerability in

Trust: 0.8

sources: JVNDB: JVNDB-2021-020491

DESCRIPTION

ELAN Miniport touchpad Windows driver before 24.21.51.2, as used in PC hardware from multiple manufacturers, allows local users to cause a system crash by sending a certain IOCTL request, because that request is handled twice. Lenovo of Windows for elan miniport touchpad driver Exists in unspecified vulnerabilities.Service operation interruption (DoS) It may be in a state

Trust: 1.71

sources: NVD: CVE-2021-42205 // JVNDB: JVNDB-2021-020491 // VULHUB: VHN-403302

AFFECTED PRODUCTS

vendor:lenovomodel:elan miniport touchpad driverscope:ltversion:24.21.51.2

Trust: 1.0

vendor:lenovomodel:elan miniport touchpad driverscope: - version: -

Trust: 0.8

vendor:lenovomodel:elan miniport touchpad driverscope:eqversion: -

Trust: 0.8

vendor:lenovomodel:elan miniport touchpad driverscope:eqversion:24.21.51.2

Trust: 0.8

sources: JVNDB: JVNDB-2021-020491 // NVD: CVE-2021-42205

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2021-42205
value: MEDIUM

Trust: 1.0

134c704f-9b21-4f2e-91b3-4a467353bcc0: CVE-2021-42205
value: MEDIUM

Trust: 1.0

NVD: CVE-2021-42205
value: MEDIUM

Trust: 0.8

CNNVD: CNNVD-202211-2203
value: MEDIUM

Trust: 0.6

nvd@nist.gov: CVE-2021-42205
baseSeverity: MEDIUM
baseScore: 4.7
vectorString: CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
attackVector: LOCAL
attackComplexity: HIGH
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: HIGH
exploitabilityScore: 1.0
impactScore: 3.6
version: 3.1

Trust: 2.0

NVD: CVE-2021-42205
baseSeverity: MEDIUM
baseScore: 4.7
vectorString: CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
attackVector: LOCAL
attackComplexity: HIGH
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: HIGH
exploitabilityScore: NONE
impactScore: NONE
version: 3.0

Trust: 0.8

sources: JVNDB: JVNDB-2021-020491 // CNNVD: CNNVD-202211-2203 // NVD: CVE-2021-42205 // NVD: CVE-2021-42205

PROBLEMTYPE DATA

problemtype:NVD-CWE-noinfo

Trust: 1.0

problemtype:CWE-703

Trust: 1.0

problemtype:Lack of information (CWE-noinfo) [NVD evaluation ]

Trust: 0.8

sources: JVNDB: JVNDB-2021-020491 // NVD: CVE-2021-42205

THREAT TYPE

local

Trust: 0.6

sources: CNNVD: CNNVD-202211-2203

TYPE

other

Trust: 0.6

sources: CNNVD: CNNVD-202211-2203

PATCH

title:Dell ELAN Miniport Touchpad Driver Security vulnerabilitiesurl:http://123.124.177.30/web/xxk/bdxqById.tag?id=213669

Trust: 0.6

sources: CNNVD: CNNVD-202211-2203

EXTERNAL IDS

db:NVDid:CVE-2021-42205

Trust: 3.3

db:JVNDBid:JVNDB-2021-020491

Trust: 0.8

db:CNNVDid:CNNVD-202211-2203

Trust: 0.6

db:VULHUBid:VHN-403302

Trust: 0.1

sources: VULHUB: VHN-403302 // JVNDB: JVNDB-2021-020491 // CNNVD: CNNVD-202211-2203 // NVD: CVE-2021-42205

REFERENCES

url:https://www.emc.com.tw/upload/f2e/vulnerability%20report/vulnerability%20report_miniport%20touchpad%20windows%20driver_20221107.pdf

Trust: 2.5

url:https://nvd.nist.gov/vuln/detail/cve-2021-42205

Trust: 0.8

url:https://cxsecurity.com/cveshow/cve-2021-42205/

Trust: 0.6

sources: VULHUB: VHN-403302 // JVNDB: JVNDB-2021-020491 // CNNVD: CNNVD-202211-2203 // NVD: CVE-2021-42205

SOURCES

db:VULHUBid:VHN-403302
db:JVNDBid:JVNDB-2021-020491
db:CNNVDid:CNNVD-202211-2203
db:NVDid:CVE-2021-42205

LAST UPDATE DATE

2025-05-03T23:31:30.059000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-403302date:2022-11-09T00:00:00
db:JVNDBid:JVNDB-2021-020491date:2023-11-02T08:06:00
db:CNNVDid:CNNVD-202211-2203date:2022-11-10T00:00:00
db:NVDid:CVE-2021-42205date:2025-05-02T19:15:48.493

SOURCES RELEASE DATE

db:VULHUBid:VHN-403302date:2022-11-07T00:00:00
db:JVNDBid:JVNDB-2021-020491date:2023-11-02T00:00:00
db:CNNVDid:CNNVD-202211-2203date:2022-11-07T00:00:00
db:NVDid:CVE-2021-42205date:2022-11-07T16:15:10.187