PT-2015-7934 · Unknown · Exfat-Utils

Published

2015-11-02

·

Updated

2015-11-02

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions exfat-utils (affected versions not specified)
Description The issue concerns a collection of tools for working with the exFAT filesystem. Fuzzing with american fuzzy lop revealed a write heap overflow and an endless loop in exfatfsck. Systems that automatically run filesystem checks on external devices are especially at risk. A malformed input can cause a write heap overflow in the verify vbr checksum function, potentially allowing code execution. Another malformed input can cause an endless loop, leading to a possible denial of service.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

MGASA-2015-0422

Affected Products

Exfat-Utils