← Voltar para CVEs
CVE-2019-13178
N/ADescricao
modules/luksbootkeyfile/main.py in Calamares versions 3.1 through 3.2.10 has a race condition between the time when the LUKS encryption keyfile is created and when secure permissions are set.
Detalhes CVE
Pontuacao CVSS v3.1N/A
Publicado7/2/2019
Ultima modificacao11/21/2024
Fontenvd
Avistamentos honeypot0
Produtos afetados
calamares:calamares
Fraquezas (CWE)
CWE-362
Referencias
https://bugzilla.redhat.com/show_bug.cgi?id=1726565(cve@mitre.org)
https://calamares.io/calamares-3.2.11-is-out/(cve@mitre.org)
https://calamares.io/calamares-cve-2019/(cve@mitre.org)
https://github.com/calamares/calamares/issues/1190(cve@mitre.org)
https://github.com/calamares/calamares/issues/1191(cve@mitre.org)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Q57BOTBA2J5U4GVKUP7N2PD5H7B3BVUU/(cve@mitre.org)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/R2ZDQRGBGRVRW5LPJWKUNS3M66LZ3KYC/(cve@mitre.org)
https://www.pavelkogan.com/2015/01/25/linux-mint-encryption/(cve@mitre.org)
http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00017.html(af854a3a-2127-422b-91ae-364da2661108)
http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00020.html(af854a3a-2127-422b-91ae-364da2661108)
http://lists.opensuse.org/opensuse-security-announce/2019-12/msg00021.html(af854a3a-2127-422b-91ae-364da2661108)
https://bugs.launchpad.net/ubuntu/+source/initramfs-tools/+bug/1835095(af854a3a-2127-422b-91ae-364da2661108)
https://bugs.launchpad.net/ubuntu/+source/initramfs-tools/+bug/1835096(af854a3a-2127-422b-91ae-364da2661108)
https://bugzilla.redhat.com/show_bug.cgi?id=1726565(af854a3a-2127-422b-91ae-364da2661108)
https://calamares.io/calamares-3.2.11-is-out/(af854a3a-2127-422b-91ae-364da2661108)
https://calamares.io/calamares-cve-2019/(af854a3a-2127-422b-91ae-364da2661108)
https://github.com/calamares/calamares/issues/1190(af854a3a-2127-422b-91ae-364da2661108)
https://github.com/calamares/calamares/issues/1191(af854a3a-2127-422b-91ae-364da2661108)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Q57BOTBA2J5U4GVKUP7N2PD5H7B3BVUU/(af854a3a-2127-422b-91ae-364da2661108)
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/R2ZDQRGBGRVRW5LPJWKUNS3M66LZ3KYC/(af854a3a-2127-422b-91ae-364da2661108)
https://www.pavelkogan.com/2014/05/23/luks-full-disk-encryption/(af854a3a-2127-422b-91ae-364da2661108)
https://www.pavelkogan.com/2015/01/25/linux-mint-encryption/(af854a3a-2127-422b-91ae-364da2661108)
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.