ALPINE-CVE-2022-30784 PUBLISHED CVSS 7.800000190734863 HIGH

A crafted NTFS image can cause heap exhaustion in ntfs_get_attribute_value in NTFS-3G through 2021.8.22.

Risk Scores

CVSS v3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersions
Alpine:v3.22ntfs-3g2009.11.14-r0, 2021.8.22-r0, 2017.3.23-r3
Alpine:v3.18ntfs-3g2021.8.22-r0, 0, 2009.11.14-r0
Alpine:v3.17ntfs-3g2009.11.14-r0, 2009.4.4-r0, 2010.10.2-r0
Alpine:v3.23ntfs-3g2021.8.22-r0, 0, 2009.11.14-r0
Alpine:v3.21ntfs-3g2021.8.22-r0, 0, 2009.11.14-r0
Alpine:v3.20ntfs-3g2009.11.14-r0, 0, 2009.4.4-r0
Alpine:v3.19ntfs-3g2021.8.22-r0, 0, 2009.11.14-r0
Alpine:v3.16ntfs-3g0, 2021.8.22-r0, 2017.3.23-r3

Timeline

References

Open in Interactive Console →