CVE-2019-13179

CVE-2019-13179

Calamares through 3.2.4 copies a LUKS encryption keyfile from /crypto_keyfile.bin (mode 0600 owned by root) to /boot within a globally readable initramfs image with insecure permissions, which allows this originally protected file to be read by any user, thereby disclosing decryption keys for LUKS containers created with Full Disk Encryption.

Source: CVE-2019-13179

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다