Seven Unpatched FatFs Flaws Expose Millions of Embedded Devices to Code Execution
Security firm runZero has disclosed seven unpatched vulnerabilities in FatFs, a widely used filesystem library for FAT and exFAT formats, embedded in…
Security firm runZero has disclosed seven unpatched vulnerabilities in FatFs, a widely used filesystem library for FAT and exFAT formats, embedded in…
A math wrap in FatFs cache handling on fragmented volumes can silently corrupt data. CVSS 6.1 (Medium).
A divide-by-zero in exFAT handling can crash or brick devices. CVSS 4.6 (Medium).
A file extended past its end in FatFs can leak leftover data from deleted files. CVSS 4.6 (Medium).
A malformed GPT partition table can hang the device during mount. Fixed in FatFs R0.16. CVSS 4.6 (Medium).
FatFs is a filesystem library for FAT/exFAT used in millions of embedded devices. Seven unpatched flaws were disclosed.