Vulnerabilities > Tuxera > Ntfs 3G > High

DATE CVE VULNERABILITY TITLE RISK
2022-11-06 CVE-2022-40284 Classic Buffer Overflow vulnerability in multiple products
A buffer overflow was discovered in NTFS-3G before 2022.10.3.
local
low complexity
tuxera debian fedoraproject CWE-120
7.8
2022-05-26 CVE-2022-30784 Classic Buffer Overflow vulnerability in multiple products
A crafted NTFS image can cause heap exhaustion in ntfs_get_attribute_value in NTFS-3G through 2021.8.22.
local
low complexity
tuxera debian fedoraproject CWE-120
7.8
2022-05-26 CVE-2022-30786 Out-of-bounds Write vulnerability in multiple products
A crafted NTFS image can cause a heap-based buffer overflow in ntfs_names_full_collate in NTFS-3G through 2021.8.22.
local
low complexity
tuxera fedoraproject debian CWE-787
7.8
2022-05-26 CVE-2022-30788 Out-of-bounds Write vulnerability in multiple products
A crafted NTFS image can cause a heap-based buffer overflow in ntfs_mft_rec_alloc in NTFS-3G through 2021.8.22.
local
low complexity
tuxera fedoraproject debian CWE-787
7.8
2022-05-26 CVE-2022-30789 Out-of-bounds Write vulnerability in multiple products
A crafted NTFS image can cause a heap-based buffer overflow in ntfs_check_log_client_array in NTFS-3G through 2021.8.22.
local
low complexity
tuxera debian fedoraproject CWE-787
7.8
2022-05-02 CVE-2021-46790 Out-of-bounds Write vulnerability in multiple products
ntfsck in NTFS-3G through 2021.8.22 has a heap-based buffer overflow involving buffer+512*3-2.
local
low complexity
tuxera debian fedoraproject CWE-787
7.8
2021-09-07 CVE-2021-33286 Out-of-bounds Write vulnerability in multiple products
In NTFS-3G versions < 2021.8.22, when a specially crafted unicode string is supplied in an NTFS image a heap buffer overflow can occur and allow for code execution.
local
low complexity
tuxera debian CWE-787
7.8
2021-09-07 CVE-2021-33287 Out-of-bounds Write vulnerability in multiple products
In NTFS-3G versions < 2021.8.22, when specially crafted NTFS attributes are read in the function ntfs_attr_pread_i, a heap buffer overflow can occur and allow for writing to arbitrary memory or denial of service of the application.
local
low complexity
tuxera debian fedoraproject CWE-787
7.8
2021-09-07 CVE-2021-35266 Out-of-bounds Write vulnerability in multiple products
In NTFS-3G versions < 2021.8.22, when a specially crafted NTFS inode pathname is supplied in an NTFS image a heap buffer overflow can occur resulting in memory disclosure, denial of service and even code execution.
local
low complexity
tuxera debian fedoraproject CWE-787
7.8
2021-09-07 CVE-2021-35267 Out-of-bounds Write vulnerability in multiple products
NTFS-3G versions < 2021.8.22, a stack buffer overflow can occur when correcting differences in the MFT and MFTMirror allowing for code execution or escalation of privileges when setuid-root.
local
low complexity
tuxera debian fedoraproject CWE-787
7.8