Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2614▼ 473 respecto a la semana anterior
Críticas / altas1270▼ 74 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)243▼ 274 respecto a la semana anterior
–

37 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
Pendiente de análisisMedia (4.7)0.12%—Ntfs-3gAI24/8/20269/9/2026
In NTFS-3G through 2026.2.25, an out-of-bounds read exists in ntfs_ir_nill() in libntfs-3g/index.c that allows an attacker to read possibly confidential information in an ntfs-3g process by crafting a malicious NTFS image. This read operation is triggered by creation of a file with a crafted name.
Pendiente de análisisAlta (7.4)0.14%—Ntfs-3gAI24/8/20269/9/2026
In NTFS-3G through 2026.2.25, a heap-based buffer overflow exists in the function build_inherited_id() in libntfs-3g/security.c that allows an attacker to corrupt heap memory in the SUID-root ntfs-3g binary by crafting a malicious NTFS image. The overflow is triggered by creating a file in a crafted directory.
Pendiente de análisisAlta (8.4)0.21%—Ntfs-3gAI21/4/202617/6/2026
In NTFS-3G 2022.10.3 before 2026.2.25, a heap buffer overflow exists in ntfs_build_permissions_posix() in acls.c that allows an attacker to corrupt heap memory in the SUID-root ntfs-3g binary by crafting a malicious NTFS image. The overflow is triggered on the READ path (stat, readdir, open) when processing a security…
AplazadaMedia (4.5)0.16%—Ntfs-3gAI13/6/202417/6/2026
NTFS-3G before 75dcdc2 has a use-after-free in ntfs_uppercase_mbs in libntfs-3g/unistr.c. NOTE: discussion suggests that exploitation would be challenging.
ModificadaAlta (7.8)0.35%—Tuxera Ntfs-3gDebian LinuxFedoraproject Fedora6/11/202217/6/2026
A buffer overflow was discovered in NTFS-3G before 2022.10.3. Crafted metadata in an NTFS image can cause code execution. A local attacker can exploit this if the ntfs-3g binary is setuid root. A physically proximate attacker can exploit this if NTFS-3G software is configured to execute upon attachment of an external…
ModificadaAlta (7.8)0.45%—Tuxera Ntfs-3gDebian LinuxFedoraproject Fedora26/5/202217/6/2026
A crafted NTFS image can cause a heap-based buffer overflow in ntfs_check_log_client_array in NTFS-3G through 2021.8.22.
ModificadaAlta (7.8)0.45%—Tuxera Ntfs-3gFedoraproject FedoraDebian Linux26/5/202217/6/2026
A crafted NTFS image can cause a heap-based buffer overflow in ntfs_mft_rec_alloc in NTFS-3G through 2021.8.22.
ModificadaMedia (6.7)0.43%—Tuxera Ntfs-3gFedoraproject FedoraDebian Linux26/5/202217/6/2026
An integer underflow in fuse_lib_readdir enables arbitrary memory read operations in NTFS-3G through 2021.8.22 when using libfuse-lite.
ModificadaAlta (7.8)0.45%—Tuxera Ntfs-3gFedoraproject FedoraDebian Linux26/5/202217/6/2026
A crafted NTFS image can cause a heap-based buffer overflow in ntfs_names_full_collate in NTFS-3G through 2021.8.22.
ModificadaMedia (6.7)0.41%—Tuxera Ntfs-3gFedoraproject FedoraDebian Linux26/5/202217/6/2026
A file handle created in fuse_lib_opendir, and later used in fuse_lib_readdir, enables arbitrary memory read and write operations in NTFS-3G through 2021.8.22 when using libfuse-lite.
ModificadaAlta (7.8)0.41%—Tuxera Ntfs-3gDebian LinuxFedoraproject Fedora26/5/202217/6/2026
A crafted NTFS image can cause heap exhaustion in ntfs_get_attribute_value in NTFS-3G through 2021.8.22.
ModificadaMedia (6.7)0.43%—Tuxera Ntfs-3gFedoraproject FedoraDebian Linux26/5/202217/6/2026
An invalid return code in fuse_kern_mount enables intercepting of libfuse-lite protocol traffic between NTFS-3G and the kernel in NTFS-3G through 2021.8.22 when using libfuse-lite.
ModificadaAlta (7.8)0.50%—Tuxera Ntfs-3gDebian LinuxFedoraproject Fedora2/5/202217/6/2026
ntfsck in NTFS-3G through 2021.8.22 has a heap-based buffer overflow involving buffer+512*3-2. NOTE: the upstream position is that ntfsck is deprecated; however, it is shipped by some Linux distributions.
ModificadaAlta (7.8)0.45%—Tuxera Ntfs-3gDebian Linux7/9/202117/6/2026
A crafted NTFS image can trigger a heap-based buffer overflow, caused by an unsanitized attribute in ntfs_get_attribute_value, in NTFS-3G < 2021.8.22.
ModificadaAlta (7.8)0.42%—Tuxera Ntfs-3gDebian Linux7/9/202117/6/2026
A crafted NTFS image can cause an out-of-bounds access in ntfs_decompress in NTFS-3G < 2021.8.22.
ModificadaAlta (7.8)0.45%—Tuxera Ntfs-3gDebian Linux7/9/202117/6/2026
A crafted NTFS image can cause a heap-based buffer overflow in ntfs_compressed_pwrite in NTFS-3G < 2021.8.22.
ModificadaAlta (7.8)0.42%—Tuxera Ntfs-3gDebian Linux7/9/202117/6/2026
A crafted NTFS image can cause an out-of-bounds access in ntfs_inode_sync_standard_information in NTFS-3G < 2021.8.22.
ModificadaAlta (7.8)0.42%—Tuxera Ntfs-3gDebian Linux7/9/202117/6/2026
A crafted NTFS image can trigger an out-of-bounds access, caused by an unsanitized attribute length in ntfs_inode_lookup_by_name, in NTFS-3G < 2021.8.22.
ModificadaAlta (7.8)0.42%—Tuxera Ntfs-3gDebian Linux7/9/202117/6/2026
A crafted NTFS image can cause out-of-bounds reads in ntfs_attr_find and ntfs_external_attr_find in NTFS-3G < 2021.8.22.
ModificadaMedia (5.5)0.40%—Tuxera Ntfs-3gDebian Linux7/9/202117/6/2026
A crafted NTFS image with an unallocated bitmap can lead to a endless recursive function call chain (starting from ntfs_attr_pwrite), causing stack consumption in NTFS-3G < 2021.8.22.
ModificadaAlta (7.8)0.46%—Tuxera Ntfs-3gDebian Linux7/9/202117/6/2026
A crafted NTFS image can cause a heap-based buffer overflow in ntfs_inode_lookup_by_name in NTFS-3G < 2021.8.22.
ModificadaAlta (7.8)0.42%—Tuxera Ntfs-3gDebian Linux7/9/202117/6/2026
A crafted NTFS image can trigger an out-of-bounds read, caused by an invalid attribute in ntfs_attr_find_in_attrdef, in NTFS-3G < 2021.8.22.
ModificadaAlta (7.8)0.44%—Tuxera Ntfs-3gDebian LinuxFedoraproject Fedora7/9/202117/6/2026
A crafted NTFS image can cause an integer overflow in memmove, leading to a heap-based buffer overflow in the function ntfs_attr_record_resize, in NTFS-3G < 2021.8.22.
ModificadaAlta (7.8)0.42%—Tuxera Ntfs-3gDebian LinuxFedoraproject Fedora7/9/202117/6/2026
A crafted NTFS image can cause an out-of-bounds read in ntfs_runlists_merge_i in NTFS-3G < 2021.8.22.
ModificadaAlta (7.8)0.43%—Tuxera Ntfs-3gDebian LinuxFedoraproject Fedora7/9/202117/6/2026
A crafted NTFS image can cause an out-of-bounds read in ntfs_ie_lookup in NTFS-3G < 2021.8.22.