Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability exists in the Linux kernel's NTFS3 file system handling, specifically regarding the treatment of $Extend records. These records are incorrectly treated as regular files, which can lead to improper file system behavior. This issue affects several versions of the Linux kernel.
Exploitation of this vulnerability could cause the file system to misinterpret $Extend records, potentially leading to incorrect file handling or file system errors.
The vulnerability can be reproduced by accessing a NTFS3 file system that contains $Extend records. The kernel will incorrectly treat these records as regular files, which can be observed by checking the file type interpretation.
Users can upgrade to the latest version of the Linux kernel where this vulnerability has been addressed.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.