Libfsntfs Project maintains a specialized library for parsing and analyzing NTFS filesystem structures, widely embedded in forensic, incident-response, and file-recovery tools despite its narrow product scope. The observed vulnerabilities center on information-disclosure, out-of-bounds read, and double-free weaknesses that reflect the memory-handling and parsing complexity inherent to filesystem metadata interpretation. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Libfsntfs Project over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-11731MEDIUM The libfsntfs_mft_entry_read_attributes function in libfsntfs_mft_entry.c in libfsntfs through 2018-04-20 allows remote attackers to cause an information disclosure (heap-based buf | Jun 19, 2018 | 5.5 | 18 | NO | NO |
CVE-2018-11730MEDIUM The libfsntfs_security_descriptor_values_free function in libfsntfs_security_descriptor_values.c in libfsntfs through 2018-04-20 allows remote attackers to cause a denial of servic | Jun 19, 2018 | 5.5 | 18 | NO | NO |
CVE-2018-11729MEDIUM The libfsntfs_mft_entry_read_header function in libfsntfs_mft_entry.c in libfsntfs through 2018-04-20 allows remote attackers to cause an information disclosure (heap-based buffer | Jun 19, 2018 | 5.5 | 18 | NO | NO |
CVE-2018-11728MEDIUM The libfsntfs_reparse_point_values_read_data function in libfsntfs_reparse_point_values.c in libfsntfs through 2018-04-20 allows remote attackers to cause an information disclosure | Jun 19, 2018 | 5.5 | 18 | NO | NO |
CVE-2018-11727MEDIUM The libfsntfs_attribute_read_from_mft function in libfsntfs_attribute.c in libfsntfs through 2018-04-20 allows remote attackers to cause an information disclosure (heap-based buffe | Jun 19, 2018 | 5.5 | 18 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Libfsntfs Project.
Media articles that mention a CVE ID that affects a product developed by Libfsntfs Project — matched by CVE ID, not by vendor name.