Heap-based buffer overflow in NTFS-3G - CVE-2019-9755
Published: April 19, 2019
Vulnerability details
The vulnerability allows a local user to escalate privileges on the target system.
The vulnerability exists due to a boundary error when executing the NTFS-3G driver with an overly long relative mount point path. A local usre can create directory structure with specially crafted names, trigger heap-based buffer overflow and execute arbitrary code on the target system with elevated privileges.
Affected software
Gentoo Linux
Fedora
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux for x86_64
Opensuse
openEuler
Red Hat Virtualization
ntfs-3g (Ubuntu package)
ntfs-3g (Debian package)
ntfs-3g (Alpine package)
ntfs-3g
ntfs-3g-devel
ntfs-3g-debugsource
ntfs-3g-debuginfo
ntfs-3g-help
How to mitigate CVE-2019-9755
ntfs-3g (Debian package) - update to 1:2016.2.22AR.1+dfsg-1+deb9u1
ntfs-3g (Alpine package) - update to 2017.3.23-r2
ntfs-3g - update to 2017.3.23-11
ntfs-3g-devel - update to 2017.3.23-11
ntfs-3g-debugsource - update to 2017.3.23-11
ntfs-3g-debuginfo - update to 2017.3.23-11
ntfs-3g-help - update to 2017.3.23-11
ntfs-3g - addressed in versions 2017.3.23-11.el6, 2017.3.23-11.el7, 2017.3.23-11.fc28, 2017.3.23-11.fc29, 2017.3.23-11.fc30
External References
Related Security Bulletins
- Ubuntu update for NTFS-3G
- Ubuntu update for NTFS-3G
- Debian update for ntfs-3g
- OpenSUSE Linux update for ntfs-3g
- OpenSUSE Linux update for ntfs-3g
- Red Hat update for libguestfs-winsupport
- Red Hat update for virt:rhel
- Multiple vulnerabilities in Red Hat Enterprise Linux Advanced Virtualization
- Gentoo update for NTFS-3G
- Heap-based buffer overflow in ntfs-3g (Alpine package)
- openEuler 20.03 LTS update for ntfs-3g
- Fedora 29 update for ntfs-3g
- Fedora 30 update for ntfs-3g
- Fedora 28 update for ntfs-3g
- Fedora EPEL 6 update for ntfs-3g
- Fedora EPEL 7 update for ntfs-3g