Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-72264
HistorySep 08, 2021 - 12:00 a.m.

Tuxera NTFS-3G integer overflow vulnerability

2021-09-0800:00:00
China National Vulnerability Database
www.cnvd.org.cn
13
tuxera ntfs-3g
integer overflow
linux
android
mac os x
freebsd
netbsd
opensolaris
qnx
haiku
heap buffer overflow

EPSS

0.001

Percentile

19.0%

NTFS-3G is a stable, full-featured, read-write NTFS driver for Linux, Android, Mac OS X, FreeBSD, NetBSD, OpenSolaris, QNX, Haiku, and other operating systems. memmove in versions prior to NTFS-3G 2021.8.22 is vulnerable to integer overflow vulnerability. An attacker can exploit this vulnerability via a specially crafted NTFS image to cause a heap buffer overflow in the ntfs_attr_record_resize function.