ecryptfs-setup-swap in eCryptfs does not prevent the unencrypted swap partition from activating during boot when using GPT partitioning on a (1) NVMe or (2) MMC drive, which allows local users to obtain sensitive information via unspecified vectors. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-8946.
References
Information
Published : 2016-07-22 07:59
Updated : 2017-08-07 18:33
NVD link : CVE-2016-6224
Mitre link : CVE-2016-6224
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
canonical
- ubuntu_linux
ecryptfs
- ecryptfs-utils