← Volver a CVEs
CVE-2019-13178
N/ADescripcion
modules/luksbootkeyfile/main.py in Calamares versions 3.1 through 3.2.10 has a race condition between the time when the LUKS encryption keyfile is created and when secure permissions are set.
Detalles CVE
Puntuacion CVSS v3.1N/A
Publicado7/2/2019
Ultima modificacion11/21/2024
Fuentenvd
Avistamientos honeypot0
Productos afectados
calamares:calamares
Debilidades (CWE)
CWE-362
Referencias
https://bugzilla.redhat.com/show_bug.cgi?id=1726565(cve@mitre.org)
https://calamares.io/calamares-3.2.11-is-out/(cve@mitre.org)
https://calamares.io/calamares-cve-2019/(cve@mitre.org)
https://github.com/calamares/calamares/issues/1190(cve@mitre.org)
https://github.com/calamares/calamares/issues/1191(cve@mitre.org)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Q57BOTBA2J5U4GVKUP7N2PD5H7B3BVUU/(cve@mitre.org)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/R2ZDQRGBGRVRW5LPJWKUNS3M66LZ3KYC/(cve@mitre.org)
https://www.pavelkogan.com/2015/01/25/linux-mint-encryption/(cve@mitre.org)
http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00017.html(af854a3a-2127-422b-91ae-364da2661108)
http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00020.html(af854a3a-2127-422b-91ae-364da2661108)
http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00021.html(af854a3a-2127-422b-91ae-364da2661108)
https://bugs.launchpad.net/ubuntu/+source/initramfs-tools/+bug/1835095(af854a3a-2127-422b-91ae-364da2661108)
https://bugs.launchpad.net/ubuntu/+source/initramfs-tools/+bug/1835096(af854a3a-2127-422b-91ae-364da2661108)
https://bugzilla.redhat.com/show_bug.cgi?id=1726565(af854a3a-2127-422b-91ae-364da2661108)
https://calamares.io/calamares-3.2.11-is-out/(af854a3a-2127-422b-91ae-364da2661108)
https://calamares.io/calamares-cve-2019/(af854a3a-2127-422b-91ae-364da2661108)
https://github.com/calamares/calamares/issues/1190(af854a3a-2127-422b-91ae-364da2661108)
https://github.com/calamares/calamares/issues/1191(af854a3a-2127-422b-91ae-364da2661108)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Q57BOTBA2J5U4GVKUP7N2PD5H7B3BVUU/(af854a3a-2127-422b-91ae-364da2661108)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/R2ZDQRGBGRVRW5LPJWKUNS3M66LZ3KYC/(af854a3a-2127-422b-91ae-364da2661108)
https://www.pavelkogan.com/2014/05/23/luks-full-disk-encryption/(af854a3a-2127-422b-91ae-364da2661108)
https://www.pavelkogan.com/2015/01/25/linux-mint-encryption/(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.