VDB

GCVE-110-CLOUD-2021-0005

GCVE-110-CLOUD-2021-0005
Advisory Published
Vulnetix · Advisory published December 7, 2021
Several cloud desktop solutions rely on a 3rd-party library called Eltima SDK to provide USB over Ethernet capabilities, to allow users to connect and share local devices such as webcams. SentinelLabs discovered vulnerabilities in Eltima drivers, including proprietary versions used by several cloud services (among them AWS Workspaces), that would allow unprivileged users to escalate privileges to kernel mode.

Affected Products

VendorProductVersionsPlatforms
AWSConnect
GCPCloud SQL
AWSWorkSpaces
AWSSageMaker Jupyter Notebook
AWSSageMaker
GCPCloud SQL, Cloud SQL Auth Proxy
AWSRDS

References

advisory
advisory
advisory
advisory
advisory

Browse GCVE Records

74,267 records in the GCVE database · Updated July 22, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›