PT-2026-60531 · Ntfs-3G · Ntfs-3G

CVE-2026-46572

·

Published

2026-07-15

·

Updated

2026-07-30

CVSS v4.0

7.5

High

VectorAV:L/AC:H/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions NTFS-3G versions prior to 2026.2.25
Description A heap buffer overflow occurs in the ntfs ib cut tail() function within libntfs-3g/index.c. An attacker can corrupt heap memory in the SUID-root ntfs-3g binary by creating a file within a specially crafted directory in a malicious NTFS image.
Recommendations Update to version 2026.2.25 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-46572
OESA-2026-3108
OPENSUSE-SU-2026:11320-1
OPENSUSE-SU-2026:21484-1
SUSE-SU-2026:3213-1
SUSE-SU-2026:3214-1
USN-8554-1

Affected Products

Ntfs-3G