Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-72265
HistorySep 08, 2021 - 12:00 a.m.

Tuxera NTFS-3G out-of-bounds read vulnerability

2021-09-0800:00:00
China National Vulnerability Database
www.cnvd.org.cn
9

0.0004 Low

EPSS

Percentile

14.2%

NTFS-3G is a stable, full-featured, read-write NTFS driver for Linux, Android, Mac OS X, FreeBSD, NetBSD, OpenSolaris, QNX, Haiku, and other operating systems. NTFS-3G versions prior to 2021.8.22 are vulnerable to an out-of-bounds read vulnerability. The vulnerability stems from an invalid attribute in ntfs_attr_find_in_attrdef. An attacker could exploit this vulnerability to cause out-of-bounds reads via a specially crafted NTFS image.

CPENameOperatorVersion
tuxera ntfs-3glt2021.8.22