VYPR

nilfs-utils

by Nilf

CVEs (2)

  • CVE-2026-55392MedJun 18, 2026
    risk 0.29cvss 5.5epss 0.00

    NILFS utilities through 2.3.0, fixed in commit 26efb5d, nilfs_sb_is_valid() function fails to validate s_log_block_size field in NILFS2 superblock before bit-shift operations. Attackers supplying crafted NILFS2 images trigger undefined behavior through oversized shifts or…

  • CVE-2009-2657Aug 4, 2009
    risk 0.00cvss epss 0.01

    nilfs-utils before 2.0.14 installs multiple programs with unnecessary setuid privileges, which allows local users to execute arbitrary commands via the device string in a -c command line option to mkfs.nilfs2.