Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-6224

Опубликовано: 22 июл. 2016
Источник: debian

Описание

ecryptfs-setup-swap in eCryptfs does not prevent the unencrypted swap partition from activating during boot when using GPT partitioning on a (1) NVMe or (2) MMC drive, which allows local users to obtain sensitive information via unspecified vectors. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-8946.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ecryptfs-utilsnot-affectedpackage

Примечания

  • Actually due to an incomplete fix of LP#1447282

  • https://launchpad.net/bugs/1597154

  • https://bazaar.launchpad.net/~ecryptfs/ecryptfs/trunk/revision/882

  • https://www.openwall.com/lists/oss-security/2016/07/13/2

Связанные уязвимости

CVSS3: 3.3
ubuntu
больше 9 лет назад

ecryptfs-setup-swap in eCryptfs does not prevent the unencrypted swap partition from activating during boot when using GPT partitioning on a (1) NVMe or (2) MMC drive, which allows local users to obtain sensitive information via unspecified vectors. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-8946.

CVSS3: 4.7
redhat
больше 9 лет назад

ecryptfs-setup-swap in eCryptfs does not prevent the unencrypted swap partition from activating during boot when using GPT partitioning on a (1) NVMe or (2) MMC drive, which allows local users to obtain sensitive information via unspecified vectors. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-8946.

CVSS3: 3.3
nvd
больше 9 лет назад

ecryptfs-setup-swap in eCryptfs does not prevent the unencrypted swap partition from activating during boot when using GPT partitioning on a (1) NVMe or (2) MMC drive, which allows local users to obtain sensitive information via unspecified vectors. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-8946.

CVSS3: 3.3
github
больше 3 лет назад

ecryptfs-setup-swap in eCryptfs does not prevent the unencrypted swap partition from activating during boot when using GPT partitioning on a (1) NVMe or (2) MMC drive, which allows local users to obtain sensitive information via unspecified vectors. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-8946.

suse-cvrf
около 8 лет назад

Security update for ecryptfs-utils