Maxim Suhanov discovered that the NTFS file system implementation in the Linux kernel did not properly validate file name length in certain situations, leading to an out-of-bounds read. An attacker could use this to construct a malicious NTFS image that, when mounted and operated on, could expose sensitive information (kernel memory).
USN-8668-2: Linux kernel (Raspberry Pi) vulnerabilities
About this summary. This is a short, independently written summary of an article first published by Ubuntu Security. Cyber Security News did not report or verify the underlying story. Read the original: https://ubuntu.com/security/notices/USN-8668-2
Source attribution: headline and facts are from Ubuntu Security (ubuntu.com). Summary method: excerpt of the source description. See our source attribution policy.

