CVE-2026-46571
Awaiting Analysis Awaiting Analysis - Queue

Out-of-Bounds Read in NTFS-3G

Vulnerability report for CVE-2026-46571, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-10-07

Last updated on: 2026-10-07

Assigner: MITRE

Description

In NTFS-3G before 2026.7.7, a out-of-bounds read exists in ntfs_fix_file_name() in libntfs-3g/reparse.c that allows an attacker to read possibly confidential information in ntfs-3g process memory by crafting a malicious NTFS image. The out-of-bounds read is triggered by a readlink on a corrupted file.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-10-07
Last Modified
2026-10-07
Generated
2026-10-07
AI Q&A
2026-10-07
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
n/a n/a n/a

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-125 The product reads data past the end, or before the beginning, of the intended buffer.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

CVE-2026-46571 is an out-of-bounds read vulnerability in the NTFS-3G file system driver. It exists in the ntfs_fix_file_name() function in libntfs-3g/reparse.c. When a malicious NTFS image is crafted and a readlink operation is performed on a corrupted file, the driver reads beyond its intended buffer. This could allow an attacker to access confidential information in the memory of the ntfs-3g process.

Detection Guidance

Detecting this vulnerability requires checking the version of NTFS-3G installed on your system. Run 'ntfs-3g --version' to see if your version is below 2026.7.7. Additionally, monitor for unusual readlink operations on NTFS filesystems, especially on corrupted images.

Impact Analysis

This vulnerability could allow an attacker to read sensitive information from the memory of the ntfs-3g process. If you use NTFS-3G to mount untrusted NTFS images, an attacker with access to such an image could exploit this to access confidential data. The impact depends on what data the ntfs-3g process has access to in memory.

Compliance Impact

This vulnerability could potentially lead to unauthorized access to confidential information in memory, which may include sensitive data such as personal or health records. This could impact compliance with GDPR (data protection) and HIPAA (healthcare privacy) by exposing protected information.

Mitigation Strategies

Immediately update NTFS-3G to version 2026.7.7 or later. As a temporary workaround, avoid using the 'ignore_case' mount option until the issue is resolved. Also, restrict access to NTFS filesystem operations to trusted users only.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-46571. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart