CVE-2021-27203
MEDIUMDekart Private Disk 2.15 - Denial of Service via IOCTL Buffer Dereference
Title source: llmDescription
In Dekart Private Disk 2.15, invalid use of the Type3 user buffer for IOCTL codes using METHOD_NEITHER results in arbitrary memory dereferencing.
References (2)
Core 2
Core References
Product, Vendor Advisory x_refsource_misc
https://www.dekart.com/products/encryption/private_disk
Exploit, Third Party Advisory x_refsource_misc
https://www.rootshellsecurity.net/rootshell-discover-denial-of-service-flaw-dekart-private-disk-encryption-software/
Scores
CVSS v3
5.5
EPSS
0.0037
EPSS Percentile
29.3%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Details
CWE
CWE-476
Status
published
Products (1)
dekart/private_disk
2.15
Published
Feb 16, 2021
Tracked Since
Feb 18, 2026