Search CVE reports
31 – 35 of 35 results
CVE-2021-33285
Medium priorityIn NTFS-3G versions < 2021.8.22, when a specially crafted NTFS attribute is supplied to the function ntfs_get_attribute_value, a heap buffer overflow can occur allowing for memory disclosure or denial of service. The vulnerability...
1 affected package
ntfs-3g
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
ntfs-3g | — | Fixed | Fixed | Fixed | Fixed |
CVE-2019-9755
High prioritySome fixes available 3 of 4
An integer underflow issue exists in ntfs-3g 2017.3.23. A local attacker could potentially exploit this by running /bin/ntfs-3g with specially crafted arguments from a specially crafted directory to cause a heap buffer overflow,...
1 affected package
ntfs-3g
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
ntfs-3g | — | — | — | Fixed | Fixed |
CVE-2017-0358
Medium priorityJann Horn of Google Project Zero discovered that NTFS-3G, a read-write NTFS driver for FUSE, does not scrub the environment before executing modprobe with elevated privileges. A local user can take advantage of this flaw for local...
1 affected package
ntfs-3g
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
ntfs-3g | — | — | — | — | Fixed |
CVE-2015-3202
High priorityfusermount in FUSE before 2.9.3-15 does not properly clear the environment before invoking (1) mount or (2) umount as root, which allows local users to write to arbitrary files via a crafted LIBMOUNT_MTAB environment variable that...
2 affected packages
fuse, ntfs-3g
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
fuse | — | — | — | — | — |
ntfs-3g | — | — | — | — | — |
CVE-2007-5159
Medium prioritySome fixes available 1 of 3
The ntfs-3g package before 1.913-2.fc7 in Fedora 7, and an ntfs-3g package in Ubuntu 7.10/Gutsy, assign incorrect permissions (setuid root) to mount.ntfs-3g, which allows local users with fuse group membership to read from and...
1 affected package
ntfs-3g
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
ntfs-3g | — | — | — | — | — |