<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>Cpe:2.3:a:gnome:gvfs:*:*:*:*:*:*:*:* - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/cpes/cpe2.3agnomegvfs/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Tue, 01 Sep 2026 17:07:26 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/cpes/cpe2.3agnomegvfs/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>Heap-Based Buffer Overflow in gvfs SFTP Backend</title><link>https://feed.craftedsignal.io/briefs/2026-09-gvfs-sftp-overflow/</link><pubDate>Tue, 01 Sep 2026 17:07:26 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-09-gvfs-sftp-overflow/</guid><description>The gvfsd-sftp process contains a heap-based buffer overflow vulnerability that allows a malicious SFTP server to corrupt memory via crafted file read responses.</description><content:encoded><![CDATA[<p>A heap-based buffer overflow vulnerability (CVE-2026-84268) exists in the SFTP backend of the GNOME Virtual File System (gvfs). The flaw resides in the read_reply() function, which fails to properly validate the length of data returned by an SFTP server against the allocated buffer size. When a user mounts an SFTP share and attempts to read a file, a malicious SFTP server can provide a length value that exceeds the client-requested size. This causes the gvfsd-sftp process to write data beyond the intended buffer boundaries, corrupting adjacent heap memory. This exploitation can lead to a denial-of-service condition if the process crashes due to detected heap corruption, or potentially allow for arbitrary code execution in the context of the gvfsd-sftp process. Defenders should prioritize patching gvfs on all Linux systems using the GNOME desktop environment.</p>
<h2 id="impact">Impact</h2>
<p>Successful exploitation of CVE-2026-84268 can result in local denial-of-service or remote code execution via a malicious server connection. This affects Linux distributions utilizing the GNOME stack, particularly impacting workstations and servers that frequently mount external SFTP shares. The severity is rated at 8.8 (CVSS v3.1), reflecting the potential for significant memory corruption and system instability.</p>
<h2 id="recommendation">Recommendation</h2>
<ul>
<li>Apply security patches for the gvfs package provided by your Linux distribution maintainer to address CVE-2026-84268.</li>
<li>Audit system configurations to ensure users are not required to mount untrusted SFTP shares via gvfs until patches are applied.</li>
<li>Prioritize updating all GNOME-based desktop environments on internet-facing or high-risk endpoints.</li>
</ul>
]]></content:encoded><category domain="severity">high</category><category domain="type">threat</category><category>vulnerability</category><category>memory-corruption</category><category>linux</category></item></channel></rss>