PT-2026-60530 · Ntfs-3G · Ntfs-3G

CVE-2026-46571

·

Published

2026-07-15

·

Updated

2026-07-30

CVSS v4.0

7.5

High

VectorAV:L/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions NTFS-3G versions prior to 2026.2.25
Description An out-of-bounds read exists in the ntfs fix file name() function within libntfs-3g/reparse.c. This issue allows an attacker to read potentially confidential information from the ntfs-3g process memory by using a specially crafted malicious NTFS image. The flaw is triggered when a readlink operation is performed on a corrupted file.
Recommendations Update to version 2026.2.25 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-46571
OESA-2026-3108
OPENSUSE-SU-2026:11320-1
OPENSUSE-SU-2026:21484-1
SUSE-SU-2026:3213-1
SUSE-SU-2026:3214-1
USN-8554-1

Affected Products

Ntfs-3G