Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-56136

Опубликовано: 24 авг. 2026
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 4.7

Описание

In NTFS-3G through 2026.2.25, an out-of-bounds read exists in ntfs_ir_nill() in libntfs-3g/index.c that allows an attacker to read possibly confidential information in an ntfs-3g process by crafting a malicious NTFS image. This read operation is triggered by creation of a file with a crafted name.

РелизСтатусПримечание
devel

not-affected

1:2026.7.7-2
esm-infra-legacy/trusty

needs-triage

esm-infra-legacy/xenial

needs-triage

esm-infra/bionic

needs-triage

esm-infra/focal

needs-triage

jammy

released

1:2021.8.22-3ubuntu1.4
noble

released

1:2022.10.3-1.2ubuntu3.2
resolute

released

1:2022.10.3-5ubuntu1.1
upstream

needs-triage

Показывать по

EPSS

Процентиль: 1%
0.00091
Низкий

4.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.7
nvd
12 дней назад

In NTFS-3G through 2026.2.25, an out-of-bounds read exists in ntfs_ir_nill() in libntfs-3g/index.c that allows an attacker to read possibly confidential information in an ntfs-3g process by crafting a malicious NTFS image. This read operation is triggered by creation of a file with a crafted name.

msrc
10 дней назад

In NTFS-3G through 2026.2.25, an out-of-bounds read exists in ntfs_ir_nill() in libntfs-3g/index.c that allows an attacker to read possibly confidential information in an ntfs-3g process by crafting a malicious NTFS image. This read operation is triggered by creation of a file with a crafted name.

CVSS3: 4.7
debian
12 дней назад

In NTFS-3G through 2026.2.25, an out-of-bounds read exists in ntfs_ir_ ...

suse-cvrf
около 1 месяца назад

Security update for ntfs-3g_ntfsprogs

suse-cvrf
около 1 месяца назад

Security update for ntfs-3g_ntfsprogs

EPSS

Процентиль: 1%
0.00091
Низкий

4.7 Medium

CVSS3