CVE-2005-1858

FUSE 2.x <2.3.0 - Info Disclosure

Title source: llm

Description

FUSE 2.x before 2.3.0 does not properly clear previously used memory from unfilled pages when the filesystem returns a short byte count to a read request, which may allow local users to obtain sensitive information.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Miklos Szeredi · clocallinux
https://www.exploit-db.com/exploits/25789

Scores

EPSS 0.0018
EPSS Percentile 39.7%

Details

Status published
Products (4)
fuse/fuse 2.2
fuse/fuse 2.2.1
fuse/fuse 2.3_pre
fuse/fuse 2.3_rc1
Published Jun 03, 2005
Tracked Since Feb 18, 2026