Known vulnerabilities in ntfs-3g (Debian package)
Vendor:
Debian
Software:
ntfs-3g (Debian package)
Software CPE:
cpe:2.3:o:debian:ntfs-3g_debian_package:*:*:*:*:*:debian_linux:*:*
Website:
https://www.debian.org/
Total vulnerabilities:
11
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
1:2022.10.3-5+deb13u2
1:2022.10.3-5+deb13u1
1:2022.10.3-1+deb12u3
1:2016.2.22AR.1+dfsg-1+deb9u2
1:2016.2.22AR.1+dfsg-1+deb9u3
1:2017.3.23AR.3-3+deb10u3
1:2017.3.23AR.3-4
1:2017.3.23AR.3-4+deb11u4
1:2017.3.23AR.5-1
1:2017.3.23AR.6-1
1:2021.8.22-1
1:2021.8.22-2
1:2021.8.22-3
1:2022.5.17-1
1:2022.10.3-1
1:2022.10.3-1+deb12u1
1:2022.10.3-1+deb12u2
1:2022.10.3-1.1~exp1
1:2022.10.3-1.1
1:2022.10.3-1.2
1:2022.10.3-2
1:2022.10.3-3
1:2022.10.3-4
1:2022.10.3-5
1:2017.3.23AR.3-4+deb11u3
1:2017.3.23AR.3-4+deb11u1
1:2017.3.23AR.3-3+deb10u1
1:2017.3.23AR.3-4+deb11u2
1:2017.3.23AR.3-3+deb10u2
2017.3.23AR.5
2017.3.23AR.5-1
1:2010.3.6-1+b100
1:2011.10.9AR.1-1+b1
1:2011.10.9AR.1-1+b2
1:2013.1.13AR.1-2+b1
1:2014.2.15AR.1-5+b1
1:2014.2.15AR.2-1+b1
1:2014.2.15AR.3-1+b1
1:2015.3.14AR.1-1+b1
1:2015.3.14AR.1-1+b2
2017.3.23AR.4
2017.3.23AR.4-1
2017.3.23AR.3
2017.3.23AR.3-3
2016.2.22AR.1+dfsg
2016.2.22AR.1+dfsg-1+deb9u1
2014.2.15AR.2
2014.2.15AR.2-1+deb8u3
1:2017.3.23AR.4-1
1:2014.2.15AR.2-1+deb8u4
1:2016.2.22AR.1+dfsg-1+deb9u1
1:2017.3.23AR.3-3
1:2017.3.23AR.3-2
1:2017.3.23AR.3-1
1:0.0.0+20061031-4~bpo.1
1:0.0.0+20061031-6+b1
1:0.0.0+20061031-6+b2
1:0.0.0+20061031-7
1:0.0.0+20061031-8
1:0.0.0+20061031-9
1:0.0.0+20061031-10
1:1.516-1~bpo.1
1:1.2531-1.1~bpo40+1
1:1.2531-1.1
1:2012.1.15AR.5-2.1+deb7u3
1:2017.3.23AR.2-1
1:2017.3.23AR.1-1
1:2017.3.23-2
1:2017.3.23-1
1:2016.2.22AR.3-1
1:2016.2.22AR.2-2
1:2016.2.22AR.1-4
1:2016.2.22AR.1+dfsg-1
1:2014.2.15AR.2-1+deb8u1
1:2014.2.15AR.2-1+deb8u2
1:2014.2.15AR.2-1+deb8u3
1:2012.1.15AR.5-2.1
1:2012.1.15AR.5-2.1+deb7u1
1:2012.1.15AR.5-2.1+deb7u2
1:2010.3.6-1+deb6u1
1:2010.3.6-1+deb6u2
0.0.0+20070920-1
0.0.0+20070920-2
1:0.0.0+20061031-1
1:0.0.0+20061031-2
1:0.0.0+20061031-3
1:0.0.0+20061031-4
1:0.0.0+20061031-5
1:0.0.0+20061031-6
1:0.0.0+20070118-1
1:0.0.0+20070207-1
1:1.0-1
1:1.0-2
1:1.328-1
1:1.328-2
1:1.416-1
1:1.417-1
1:1.516-1
1:1.616-1
1:1.710-1
1:1.710-2
1:1.810-1
1:1.826-1
1:1.913-1
1:1.913-2
1:1.1004-1
1:1.1104-1
1:1.1120-1
1:1.2129-1
1:1.2129-2
1:1.2216-1
1:1.2310-1
1:1.2506-1
1:1.2531-1
1:1.2712-1
1:1.2918-1
1:2009.2.1-1
1:2009.4.4-1
1:2010.1.16-0.1
1:2010.3.6-1
1:2010.10.2-0.1
1:2011.1.15-0.1
1:2011.1.15-1
1:2011.1.15AR.4-1
1:2011.1.15AR.4-2
1:2011.1.15AR.4+2011.4.12-1
1:2011.1.15AR.4+2011.4.12-2
1:2011.4.12AR.3-1
1:2011.4.12AR.3-2
1:2011.4.12AR.4-1
1:2011.4.12AR.4-2
1:2011.4.12AR.6-1
1:2011.4.12AR.6-2
1:2011.4.12AR.7-1
1:2011.4.12AR.7-2
1:2011.4.12AR.7-3
1:2011.4.12AR.7-4
1:2011.4.12AR.7-5
1:2011.4.12AR.7-6
1:2011.10.9AR.1-1
1:2011.10.9AR.1-2
1:2011.10.9AR.1-3
1:2011.10.9AR.1-4
1:2012.1.15AR.1-1
1:2012.1.15AR.5-1
1:2012.1.15AR.5-2
1:2012.1.15AR.5-3
1:2012.1.15AR.5-4
1:2012.1.15AR.6-1
1:2012.1.15AR.7-1
1:2012.1.15AR.7-2
1:2012.1.15AR.8-1
1:2012.1.15AR.8-2
1:2013.1.13AR.1-1
1:2013.1.13AR.1-2
1:2013.1.13AR.2-1
1:2013.1.13AR.2-2
1:2013.1.13AR.2-3
1:2013.1.13AR.3-1
1:2013.1.13AR.3-2
1:2013.1.13AR.3-3
1:2013.1.13AR.3-4
1:2013.1.13AR.4-1
1:2013.1.13AR.4-2
1:2014.2.15AR.1-1
1:2014.2.15AR.1-2
1:2014.2.15AR.1-3
1:2014.2.15AR.1-4
1:2014.2.15AR.1-5
1:2014.2.15AR.2-1
1:2014.2.15AR.3-1
1:2014.2.15AR.3-2
1:2014.2.15AR.3-3
1:2015.3.14AR.1-1
1:2015.3.14AR.3-1
1:2015.3.14AR.3-2
1:2016.2.22AR.1-1
1:2016.2.22AR.1-2
1:2016.2.22AR.1-3
1:2016.2.22AR.2-1
Vulnerabilities (11)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU128272 - Heap-based Buffer Overflow CVE-2026-40706 |
CWE-122 | Low | 1:2022.10.3-1+deb12u3, 1:2022.10.3-5+deb13u1 | 28.04.2026 |
SB2026042832 SB2026042839 SB2026042840 and 7 more |
||
| #VU68937 - Improper input validation CVE-2022-40284 |
CWE-20 | Low | 1:2017.3.23AR.3-4+deb11u3 | 02.11.2022 |
SB2022110242 SB2022110243 SB2022110322 and 19 more |
||
| #VU64094 - Heap-based Buffer Overflow CVE-2022-30789 |
CWE-122 | Low | 1:2017.3.23AR.3-3+deb10u2, 1:2017.3.23AR.3-4+deb11u2 | 08.06.2022 |
SB2022060818 SB2022060829 SB2022061202 and 15 more |
||
| #VU64092 - Heap-based Buffer Overflow CVE-2021-46790 |
CWE-122 | Low | 1:2017.3.23AR.3-3+deb10u2, 1:2017.3.23AR.3-4+deb11u2 | 08.06.2022 |
SB2022060818 SB2022060829 SB2022060831 and 15 more |
||
| #VU63796 - Heap-based Buffer Overflow CVE-2022-30784 |
CWE-122 | Low | 1:2017.3.23AR.3-3+deb10u2, 1:2017.3.23AR.3-4+deb11u2 | 30.05.2022 |
SB2022052707 SB2022060829 SB2022061202 and 15 more |
||
| #VU63793 - Heap-based Buffer Overflow CVE-2022-30786 |
CWE-122 | Low | 1:2017.3.23AR.3-3+deb10u2, 1:2017.3.23AR.3-4+deb11u2 | 30.05.2022 |
SB2022052707 SB2022060829 SB2022061202 and 15 more |
||
| #VU63790 - Heap-based Buffer Overflow CVE-2022-30788 |
CWE-122 | Low | 1:2017.3.23AR.3-3+deb10u2, 1:2017.3.23AR.3-4+deb11u2 | 30.05.2022 |
SB2022052707 SB2022060829 SB2022061202 and 15 more |
||
| #VU63761 - Integer underflow CVE-2022-30787 |
CWE-191 | Low | 1:2017.3.23AR.3-3+deb10u2, 1:2017.3.23AR.3-4+deb11u2 | 27.05.2022 |
SB2022052707 SB2022060829 SB2022061202 and 12 more |
||
| #VU63760 - Improper Control of Generation of Code ('Code Injection') CVE-2022-30785 |
CWE-94 | Low | 1:2017.3.23AR.3-3+deb10u2, 1:2017.3.23AR.3-4+deb11u2 | 27.05.2022 |
SB2022052707 SB2022060829 SB2022061202 and 12 more |
||
| #VU63759 - Improper Control of Generation of Code ('Code Injection') CVE-2022-30783 |
CWE-94 | Low | 1:2017.3.23AR.3-3+deb10u2, 1:2017.3.23AR.3-4+deb11u2 | 27.05.2022 |
SB2022052707 SB2022060829 SB2022061202 and 12 more |
||
| #VU18324 - Heap-based Buffer Overflow CVE-2019-9755 |
CWE-122 | Low | 1:2016.2.22AR.1+dfsg-1+deb9u1 | 19.04.2019 |
SB2019041708 SB2019032111 SB2019032112 and 13 more |