Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2026-40706

Опубликовано: 23 апр. 2026
Источник: msrc
CVSS3: 8.4
EPSS Низкий

Описание

Описание отсутствует

EPSS

Процентиль: 6%
0.00165
Низкий

8.4 High

CVSS3

Связанные уязвимости

CVSS3: 8.4
ubuntu
4 месяца назад

In NTFS-3G 2022.10.3 before 2026.2.25, a heap buffer overflow exists in ntfs_build_permissions_posix() in acls.c that allows an attacker to corrupt heap memory in the SUID-root ntfs-3g binary by crafting a malicious NTFS image. The overflow is triggered on the READ path (stat, readdir, open) when processing a security descriptor with multiple ACCESS_DENIED ACEs containing WRITE_OWNER from distinct group SIDs.

CVSS3: 8.4
nvd
4 месяца назад

In NTFS-3G 2022.10.3 before 2026.2.25, a heap buffer overflow exists in ntfs_build_permissions_posix() in acls.c that allows an attacker to corrupt heap memory in the SUID-root ntfs-3g binary by crafting a malicious NTFS image. The overflow is triggered on the READ path (stat, readdir, open) when processing a security descriptor with multiple ACCESS_DENIED ACEs containing WRITE_OWNER from distinct group SIDs.

CVSS3: 8.4
debian
4 месяца назад

In NTFS-3G 2022.10.3 before 2026.2.25, a heap buffer overflow exists i ...

suse-cvrf
3 месяца назад

Security update for ntfs-3g_ntfsprogs

suse-cvrf
4 месяца назад

Security update for ntfs-3g_ntfsprogs

EPSS

Процентиль: 6%
0.00165
Низкий

8.4 High

CVSS3