Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pg87-372g-hvgc

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

Tuxera NTFS-3G versions < 2021.8.22, when a specially crafted NTFS attribute from the MFT is setup in the function ntfs_attr_setup_flag, a heap buffer overflow can occur allowing for code execution and escalation of privileges.

Tuxera NTFS-3G versions < 2021.8.22, when a specially crafted NTFS attribute from the MFT is setup in the function ntfs_attr_setup_flag, a heap buffer overflow can occur allowing for code execution and escalation of privileges.

EPSS

Процентиль: 18%
0.00057
Низкий

7.8 High

CVSS3

Дефекты

CWE-269
CWE-787

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 4 лет назад

NTFS-3G versions < 2021.8.22, when a specially crafted NTFS attribute from the MFT is setup in the function ntfs_attr_setup_flag, a heap buffer overflow can occur allowing for code execution and escalation of privileges.

CVSS3: 7.8
redhat
около 4 лет назад

NTFS-3G versions < 2021.8.22, when a specially crafted NTFS attribute from the MFT is setup in the function ntfs_attr_setup_flag, a heap buffer overflow can occur allowing for code execution and escalation of privileges.

CVSS3: 7.8
nvd
около 4 лет назад

NTFS-3G versions < 2021.8.22, when a specially crafted NTFS attribute from the MFT is setup in the function ntfs_attr_setup_flag, a heap buffer overflow can occur allowing for code execution and escalation of privileges.

CVSS3: 7.8
msrc
почти 4 года назад

Описание отсутствует

CVSS3: 7.8
debian
около 4 лет назад

NTFS-3G versions < 2021.8.22, when a specially crafted NTFS attribute ...

EPSS

Процентиль: 18%
0.00057
Низкий

7.8 High

CVSS3

Дефекты

CWE-269
CWE-787