In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Validate ff offset This adds sanity checks for ff offset. There is a check on rt->first_free at first, but walking through by ff without any check. If the second ff is a large offset. We may encounter an out-of-bound read.
| Product | Vendor | Version |
|---|---|---|
| Linux | Linux | 12.4(4)XD9 |
| Linux | Linux | 12.4(6)XE |
| Linux | Linux | All versions prior to version 14.0.3 |
| Linux | Linux | through 0.55.0 |