The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6.1 on Ubuntu 9.04 stores the mount passphrase in installation logs, which might allow local users to obtain access to the filesystem by reading the log files from disk. NOTE: the log files are only readable by root.
References
Link | Resource |
---|---|
http://www.ubuntu.com/usn/usn-783-1 | Vendor Advisory |
http://secunia.com/advisories/35383 | Vendor Advisory |
http://www.securitytracker.com/id?1022347 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/51191 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2009-06-09 13:30
Updated : 2017-08-16 18:30
NVD link : CVE-2009-1296
Mitre link : CVE-2009-1296
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
ubuntu
- 73-oubuntu
- ubuntu