Heap-based buffer overflow in NTFS-3G - #VU152939
Published: September 30, 2026
Vulnerability details
The vulnerability allows a local attacker to compromise the target system.
The vulnerability exists due to a boundary error in the ntfs_mapping_pairs_decompress_i() function in runlist.c file. A local attacker can pass specially crafted data to the application, trigger a heap-based buffer overflow and cause subsequent read and write operations to access unintended locations.