Bug 2001608 (CVE-2021-33285)
Summary: | CVE-2021-33285 ntfs-3g: Out-of-bounds heap buffer access in ntfs_get_attribute_value() due to incorrect check of bytes_in_use value in MFT records | ||
---|---|---|---|
Product: | [Other] Security Response | Reporter: | Pedro Sampaio <psampaio> |
Component: | vulnerability | Assignee: | Red Hat Product Security <security-response-team> |
Status: | CLOSED ERRATA | QA Contact: | |
Severity: | medium | Docs Contact: | |
Priority: | medium | ||
Version: | unspecified | CC: | devthomp, rjones, spotrh, virt-maint |
Target Milestone: | --- | Keywords: | Security |
Target Release: | --- | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | |||
Fixed In Version: | ntfs3g-2021.8.22 | Doc Type: | If docs needed, set a value |
Doc Text: |
The ntfs3g package is susceptible to a heap overflow on crafted input. When processing NTFS attributes, proper bounds checking was not enforced leading to this software flaw. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.
|
Story Points: | --- |
Clone Of: | Environment: | ||
Last Closed: | 2021-09-30 18:21:25 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | 2002985, 2004490, 2004491, 2004493, 2004494, 2004497, 2004498, 2006383, 2006384 | ||
Bug Blocks: | 2001669 |
Description
Pedro Sampaio
2021-09-06 14:32:48 UTC
Will bugs be created against libguestfs-winsupport in RHEL 7/8/AV/9 for this and the many other ntfs-3g CVEs? I'm still doing analysis but given the count and severity for some of these (6.7 being the highest) It is VERY likely that we will have bugs created against libguestfs-winsupport. Note I already rebased this package in RHEL 9 GA: https://bugzilla.redhat.com/show_bug.cgi?id=2002985 Created ntfs-3g tracking bugs for this issue: Affects: epel-all [bug 2004498] Affects: fedora-all [bug 2004497] link to commits: https://github.com/tuxera/ntfs-3g/commits/2021.8.22 This issue has been addressed in the following products: Advanced Virtualization for RHEL 8.4.0.Z Via RHSA-2021:3703 https://access.redhat.com/errata/RHSA-2021:3703 This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2021-33285 This issue has been addressed in the following products: Advanced Virtualization for RHEL 8.2.1 Via RHSA-2021:3704 https://access.redhat.com/errata/RHSA-2021:3704 This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2022:1759 https://access.redhat.com/errata/RHSA-2022:1759 |