tuxera

7 records · 7 with a public proof-of-concept

Disclosed vulnerabilities where the NVD names tuxera as an affected vendor, highest CVSS first.

  1. HIGH 8.1CVE-2026-46570public PoC

    In NTFS-3G before 2026.7.7, a heap buffer overflow exists in ntfs_index_walk_down() in libntfs-3g/index.c that allows an attacker to corrupt heap memory in the SUID-root ntfs-3g binary by crafting a malicious NTFS image. The overflow is triggered by reading th…

    ntfs-3g

    AI risk analysis on Exploit-DB.ai →

  2. HIGH 7.8CVE-2026-42616public PoC

    In NTFS-3G before 2026.7.7, a heap buffer overflow exists in cat() in ntfscat.c that allows an attacker to corrupt heap memory in the ntfscat binary by crafting a malicious NTFS image. The overflow is triggered by reading a file.

    ntfs-3g

    AI risk analysis on Exploit-DB.ai →

  3. HIGH 7.7CVE-2026-46569public PoC

    In NTFS-3G before 2026.7.7, a heap buffer overflow exists in ntfs_ib_copy_tail(), in libntfs-3g/index.c, that allows an attacker to corrupt heap memory in the SUID-root ntfs-3g binary by crafting a malicious NTFS image. The overflow is triggered by extending a…

    ntfs-3g

    AI risk analysis on Exploit-DB.ai →

  4. HIGH 7.4CVE-2026-46572public PoC

    In NTFS-3G before 2026.7.7, a heap buffer overflow exists in ntfs_ib_cut_tail() in libntfs-3g/index.c that allows an attacker to corrupt heap memory in the SUID-root ntfs-3g binary by crafting a malicious NTFS image. The overflow is triggered by creating a fil…

    ntfs-3g

    AI risk analysis on Exploit-DB.ai →

  5. HIGH 7.1CVE-2026-42618public PoC

    In NTFS-3G before 2026.7.7, a heap buffer overflow exists in ntfs_decompress() in compress.c that allows an attacker to corrupt one byte of heap memory in the SUID-root ntfs-3g binary by crafting a malicious NTFS image. The overflow is triggered by reading the…

    ntfs-3g

    AI risk analysis on Exploit-DB.ai →

  6. HIGH 7.1CVE-2026-42617public PoC

    In NTFS-3G before 2026.7.7, a heap buffer overflow exists in ntfs_ir_to_ib() in index.c that allows an attacker to corrupt heap memory in the SUID-root ntfs-3g binary by crafting a malicious NTFS image. The overflow is triggered by extending a directory, e.g.,…

    ntfs-3g

    AI risk analysis on Exploit-DB.ai →

  7. MEDIUM 5.5CVE-2026-46571public PoC

    In NTFS-3G before 2026.7.7, a out-of-bounds read exists in ntfs_fix_file_name() in libntfs-3g/reparse.c that allows an attacker to read possibly confidential information in ntfs-3g process memory by crafting a malicious NTFS image. The out-of-bounds read is tr…

    ntfs-3g

    AI risk analysis on Exploit-DB.ai →