|
|
| |
|
| |
ecryptfs-utils: passphrase leak
| Package(s): | ecryptfs-utils |
CVE #(s): | CVE-2009-1296
|
| Created: | June 9, 2009 |
Updated: | September 16, 2009 |
| Description: |
From the Ubuntu advisory: Chris Jones discovered that the eCryptfs support utilities would report the mount passphrase into installation logs when an eCryptfs home directory was selected during Ubuntu installation. The logs are only readable by the root user, but this still left the mount passphrase
unencrypted on disk, potentially leading to a loss of privacy.
|
| Alerts: |
|
( Log in to post comments)
|
|
|