In the Linux kernel, the following vulnerability has been resolved:
fs/ntfs3: Prevent integer overflow in hdr_first_de()
The "de_off" and "used" variables come from the disk so they both need to
check. The problem is that on 32bit systems if they're both greater than
UINT_MAX - 16 then the check does work as intended because of an integer
overflow.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2025-04-16 15:16
Updated : 2025-10-01 17:15
NVD link : CVE-2025-22080
Mitre link : CVE-2025-22080
CVE.ORG link : CVE-2025-22080
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-190
Integer Overflow or Wraparound
