Записи cryptsetup project
3 опубликованных записей вендора cryptsetup project.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 100 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-287 Improper Authentication1
- CWE-345 Insufficient Verification of Data Authenticity1
- CWE-787 Out-of-bounds Write1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
3 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
31Наблюдать | CVE-2020-14382Эксплойта нет | A vulnerability was found in upstream release cryptsetup-2.2.0 where, there's a bug in LUKS2 format validation code, that is effectively invcryptsetup project · cryptsetup · CWE-787 | Высокая7,8 | — | 1,2 % | 16 сент. 2020 г. |
27Наблюдать | CVE-2016-4484Эксплойта нет | The Debian initrd script for the cryptsetup package 2:1.7.3-2 and earlier allows physically proximate attackers to gain shell access via mancryptsetup project · cryptsetup · CWE-287 | Средняя6,8 | — | 0,7 % | 23 янв. 2017 г. |
17Наблюдать | CVE-2021-4122Эксплойта нет | It was found that a specially crafted LUKS header could trick cryptsetup into disabling encryption during the recovery of the device.cryptsetup project · cryptsetup · CWE-345 | Средняя4,3 | — | 0,3 % | 24 авг. 2022 г. |
- CVE-2020-1438231Наблюдать
A vulnerability was found in upstream release cryptsetup-2.2.0 where, there's a bug in LUKS2 format validation code, that is effectively inv
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %cryptsetup project · cryptsetup16 сент. 2020 г.
- CVE-2016-448427Наблюдать
The Debian initrd script for the cryptsetup package 2:1.7.3-2 and earlier allows physically proximate attackers to gain shell access via man
СредняяCVSS 6,8Эксплойта нетEPSS 1 %cryptsetup project · cryptsetup23 янв. 2017 г.
- CVE-2021-412217Наблюдать
It was found that a specially crafted LUKS header could trick cryptsetup into disabling encryption during the recovery of the device.
СредняяCVSS 4,3Эксплойта нетEPSS 0 %cryptsetup project · cryptsetup24 авг. 2022 г.