CVE-2010-3073

SSL_Cipher.cpp in EncFS before 1.7.0 does not properly handle integer data sizes when constructing headers intended for randomization of initialization vectors, which makes it easier for local users to obtain sensitive information by defeating cryptographic protection mechanisms.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:arg0:encfs:1.4.1.1:*:*:*:*:*:*:*
cpe:2.3:a:arg0:encfs:1.4.1:*:*:*:*:*:*:*
cpe:2.3:a:arg0:encfs:1.5.0:*:*:*:*:*:*:*
cpe:2.3:a:arg0:encfs:1.4.2:*:*:*:*:*:*:*
cpe:2.3:a:arg0:encfs:1.4.0:*:*:*:*:*:*:*
cpe:2.3:a:arg0:encfs:*:*:*:*:*:*:*:*

Information

Published : 2010-09-17 11:00

Updated : 2011-01-13 22:46


NVD link : CVE-2010-3073

Mitre link : CVE-2010-3073


JSON object : View

CWE
CWE-310

Cryptographic Issues

Advertisement

dedicated server usa

Products Affected

arg0

  • encfs