Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-40284
HistoryNov 06, 2022 - 11:15 p.m.

Buffer overflow

2022-11-0623:15:00
PRIOn knowledge base
www.prio-n.com
12
buffer overflow
ntfs-3g
code execution
crafted metadata
local attacker
physically proximate
nvd

7.7 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

A buffer overflow was discovered in NTFS-3G before 2022.10.3. Crafted metadata in an NTFS image can cause code execution. A local attacker can exploit this if the ntfs-3g binary is setuid root. A physically proximate attacker can exploit this if NTFS-3G software is configured to execute upon attachment of an external storage device.