CVE-2022-29021

Severity CVSS v4.0:
Pending analysis
Type:
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
20/05/2022
Last modified:
03/11/2025

Description

A buffer overflow vulnerability exists in the razerkbd driver of OpenRazer up to version v3.3.0 allows attackers to cause a Denial of Service (DoS) and possibly escalate their privileges via a crafted buffer sent to the matrix_custom_frame device.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:openrazer_project:openrazer:*:*:*:*:*:*:*:* 3.3.0 (including)