PT-2026-54926 · Fatfs · Fatfs

Hd Moore

+1

·

Published

2026-07-01

·

Updated

2026-07-06

·

CVE-2026-6684

CVSS v3.1

4.6

Medium

VectorAV:P/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions FatFs versions prior to R0.16
Description An issue exists when using GPT scanning with FF LBA64 = 1 where an unbounded loop count is derived from the GPT header field GPTH PtNum. This can lead to extremely long or effectively infinite scans during the mount-time process, resulting in a loop with an unreachable exit condition.
Recommendations Update FatFs to version R0.16 or later.

Exploit

Fix

Infinite Loop

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-6684

Affected Products

Fatfs