4.7
CVSSv3

CVE-2022-29973

Published: 02/05/2022 Updated: 11/05/2022
CVSS v2 Base Score: 1.9 | Impact Score: 2.9 | Exploitability Score: 3.4
CVSS v3 Base Score: 4.7 | Impact Score: 3.6 | Exploitability Score: 1
VMScore: 169
Vector: AV:L/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

relan exFAT 1.3.0 allows local users to obtain sensitive information (data from deleted files in the filesystem) in certain situations involving offsets beyond ValidDataLength.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

exfat project exfat 1.3.0

Vendor Advisories

Debian Bug report logs - #1014538 fuse-exfat: CVE-2022-29973 Package: src:fuse-exfat; Maintainer for src:fuse-exfat is Sven Hoexter <hoexter@debianorg>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Thu, 7 Jul 2022 15:54:01 UTC Severity: important Tags: security Reply or subscribe to this bug Toggle ...