Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2022:370

Опубликовано: 02 фев. 2022
Источник: rocky
Оценка: Moderate

Описание

Moderate: cryptsetup security update

For more information visit https://errata.rockylinux.org/RLSA-2022:370

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
cryptsetup-develaarch644.el8_5.1cryptsetup-devel-2.3.3-4.el8_5.1.aarch64.rpm
cryptsetup-develi6864.el8_5.1cryptsetup-devel-2.3.3-4.el8_5.1.i686.rpm
cryptsetup-develx86_644.el8_5.1cryptsetup-devel-2.3.3-4.el8_5.1.x86_64.rpm
cryptsetupaarch644.el8_5.1cryptsetup-2.3.3-4.el8_5.1.aarch64.rpm
cryptsetup-libsaarch644.el8_5.1cryptsetup-libs-2.3.3-4.el8_5.1.aarch64.rpm
cryptsetup-reencryptaarch644.el8_5.1cryptsetup-reencrypt-2.3.3-4.el8_5.1.aarch64.rpm
integritysetupaarch644.el8_5.1integritysetup-2.3.3-4.el8_5.1.aarch64.rpm
veritysetupaarch644.el8_5.1veritysetup-2.3.3-4.el8_5.1.aarch64.rpm
cryptsetupx86_644.el8_5.1cryptsetup-2.3.3-4.el8_5.1.x86_64.rpm
cryptsetup-libsi6864.el8_5.1cryptsetup-libs-2.3.3-4.el8_5.1.i686.rpm

Показывать по

Связанные CVE

Связанные уязвимости

CVSS3: 4.3
ubuntu
около 4 лет назад

It was found that a specially crafted LUKS header could trick cryptsetup into disabling encryption during the recovery of the device. An attacker with physical access to the medium, such as a flash disk, could use this flaw to force a user into permanently disabling the encryption layer of that medium.

CVSS3: 5.9
redhat
больше 4 лет назад

It was found that a specially crafted LUKS header could trick cryptsetup into disabling encryption during the recovery of the device. An attacker with physical access to the medium, such as a flash disk, could use this flaw to force a user into permanently disabling the encryption layer of that medium.

CVSS3: 4.3
nvd
около 4 лет назад

It was found that a specially crafted LUKS header could trick cryptsetup into disabling encryption during the recovery of the device. An attacker with physical access to the medium, such as a flash disk, could use this flaw to force a user into permanently disabling the encryption layer of that medium.

CVSS3: 4.3
msrc
около 4 лет назад

It was found that a specially crafted LUKS header could trick cryptsetup into disabling encryption during the recovery of the device. An attacker with physical access to the medium such as a flash disk could use this flaw to force a user into permanently disabling the encryption layer of that medium.

CVSS3: 4.3
debian
около 4 лет назад

It was found that a specially crafted LUKS header could trick cryptset ...