Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c4xf-64jj-vrh2

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

EncFS before 1.7.0 encrypts multiple blocks by means of the CFB cipher mode with the same initialization vector, which makes it easier for local users to obtain sensitive information via calculations involving recovery of XORed data, as demonstrated by an attack on encrypted data in which the last block contains only one byte.

EncFS before 1.7.0 encrypts multiple blocks by means of the CFB cipher mode with the same initialization vector, which makes it easier for local users to obtain sensitive information via calculations involving recovery of XORed data, as demonstrated by an attack on encrypted data in which the last block contains only one byte.

EPSS

Процентиль: 76%
0.01004
Низкий

Связанные уязвимости

ubuntu
больше 15 лет назад

EncFS before 1.7.0 encrypts multiple blocks by means of the CFB cipher mode with the same initialization vector, which makes it easier for local users to obtain sensitive information via calculations involving recovery of XORed data, as demonstrated by an attack on encrypted data in which the last block contains only one byte.

nvd
больше 15 лет назад

EncFS before 1.7.0 encrypts multiple blocks by means of the CFB cipher mode with the same initialization vector, which makes it easier for local users to obtain sensitive information via calculations involving recovery of XORed data, as demonstrated by an attack on encrypted data in which the last block contains only one byte.

debian
больше 15 лет назад

EncFS before 1.7.0 encrypts multiple blocks by means of the CFB cipher ...

EPSS

Процентиль: 76%
0.01004
Низкий