Erofs Utils Project provides filesystem utility tools for the EROFS (Efficient Read-Only File System) format, a niche but notable component in embedded Linux and containerized environments where read-only storage efficiency is valued. Treat this as a compact vendor profile focused on a specialized utility rather than a broad platform; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Erofs Utils Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-33552HIGH Heap Buffer Overflow in the erofs_read_one_data function at data.c in erofs-utils v1.6 allows remote attackers to execute arbitrary code via a crafted erofs filesystem image. | Jun 1, 2023 | 7.8 | 23 | NO | NO |
CVE-2023-33551HIGH Heap Buffer Overflow in the erofsfsck_dirent_iter function in fsck/main.c in erofs-utils v1.6 allows remote attackers to execute arbitrary code via a crafted erofs filesystem image | Jun 1, 2023 | 7.8 | 22 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Erofs Utils Project.
Media articles that mention a CVE ID that affects a product developed by Erofs Utils Project — matched by CVE ID, not by vendor name.