** DISPUTED ** The libfsntfsreparsepointvaluesreaddata function in libfsntfsreparsepointvalues.c in libfsntfs through 2018-04-20 allows remote attackers to cause an information disclosure (heap-based buffer over-read) via a crafted ntfs file. NOTE: the vendor has disputed this as described in libyal/libfsntfs issue 8 on GitHub.
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "libfsntfs-dev",
"binary_version": "20190104-1"
},
{
"binary_name": "libfsntfs-utils",
"binary_version": "20190104-1"
},
{
"binary_name": "libfsntfs-utils-dbgsym",
"binary_version": "20190104-1"
},
{
"binary_name": "libfsntfs1",
"binary_version": "20190104-1"
},
{
"binary_name": "libfsntfs1-dbgsym",
"binary_version": "20190104-1"
},
{
"binary_name": "python-libfsntfs",
"binary_version": "20190104-1"
},
{
"binary_name": "python-libfsntfs-dbgsym",
"binary_version": "20190104-1"
},
{
"binary_name": "python3-libfsntfs",
"binary_version": "20190104-1"
},
{
"binary_name": "python3-libfsntfs-dbgsym",
"binary_version": "20190104-1"
}
]
}