#VU63760 Code Injection in NTFS-3G - CVE-2022-30785
Published: May 27, 2022
NTFS-3G
Tuxera
Description
The vulnerability allows a local user to execute arbitrary code on the target system.
The vulnerability exists due to an arbitrary memory read and write operations issue when using libfuse-lite. A local administrator can send a specially crafted request and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.