CVE-2026-40706: ntfs-3g 2022.10.3: Heap buffer overflow
In NTFS-3G 2022.10.3 before 2026.2.25, a heap buffer overflow exists in ntfsbuildpermissionsposix() in acls.c that allows an attacker to corrupt heap memory in the SUID-root ntfs-3g binary by crafting a malicious NTFS image. The overflow is triggered on the READ path (stat, readdir, open) when processing a security descriptor with multiple ACCESSDENIED ACEs containing WRITEOWNER from distinct group SIDs.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-40706?
CVE-2026-40706 has a high severity due to the potential for remote code execution through heap buffer overflow.
How do I fix CVE-2026-40706?
To fix CVE-2026-40706, upgrade ntfs-3g to version 2026.2.25 or later.
What product versions are affected by CVE-2026-40706?
The affected product versions for CVE-2026-40706 are ntfs-3g version 2022.10.3 up to version 2026.2.25.
What type of vulnerability is CVE-2026-40706?
CVE-2026-40706 is categorized as a heap buffer overflow vulnerability.
Can CVE-2026-40706 be exploited remotely?
Yes, CVE-2026-40706 can be exploited remotely by an attacker using a crafted NTFS image.