CVE-2021-35267 describes a stack buffer overflow vulnerability in NTFS-3G versions prior to 2021.8.22, specifically when correcting inconsistencies between the MFT and MFTMirror. This flaw primarily impacts various distributions of Debian and Fedora that utilize NTFS-3G. The vulnerability carries a CVSS score of 7.8 (High), indicating a significant risk. An attacker with local access and low privileges could exploit this to achieve code execution or escalate privileges, particularly if NTFS-3G is configured with setuid-root. Currently, there is no evidence of active exploitation, and no public exploit code is available in Metasploit, Nuclei, or ExploitDB. The vulnerability has garnered minimal community discussion and media coverage, suggesting a low level of public awareness or active threat.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 2021.8.22CPE matchmatch criteria | cpe:2.3:a:tuxera:ntfs-3g:*:*:*:*:*:*:*:* | ||
9.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:* | ||
10.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* | ||
11.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:* | ||
33CPE matchmatch criteria | cpe:2.3:o:fedoraproject:fedora:33:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
CVE-2021-35267
Dec 14, 2021NTFS-3G versions < 2021.8.22 a stack buffer overflow can occur when correcting differences in the MFT and MFTMirror allowing for code execution or escalation of privileges when setuid-root.
Sep 14, 2021ntfs-3g: Stack buffer overflow triggered when correcting differences between MFT and MFTMirror sections
Aug 30, 2021