ecryptfs records
12 published records for vendor ecryptfs.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-264 Permissions, Privileges, and Access Controls5
- CWE-20 Improper Input Validation3
- CWE-255 Credentials Management Errors3
- CWE-269 Improper Privilege Management1
The weakness classes this vendor ships most often: where to look.
CWEAll records
12 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
33Monitor | CVE-2016-1572No exploit | mount.ecryptfs_private.c in eCryptfs-utils does not validate mount destination filesystem types, which allows local users to gain privilegesecryptfs · ecryptfs-utils · CWE-269 | High8.4 | — | 0.4% | Jan 22, 2016 |
31Monitor | CVE-2012-3409No exploit | ecryptfs-utils: suid helper does not restrict mounting filesystems with nosuid,nodev which creates a possible privilege escalationecryptfs · ecryptfs-utils · CWE-20 | High7.8 | — | 0.4% | Dec 20, 2019 |
28Monitor | CVE-2008-5188No exploit | The (1) ecryptfs-setup-private, (2) ecryptfs-setup-confidential, and (3) ecryptfs-setup-pam-wrapped.sh scripts in ecryptfs-utils 45 through ecryptfs · ecryptfs utils · CWE-255 | High7.2 | — | 0.4% | Nov 20, 2008 |
21Monitor | CVE-2014-9687No exploit | eCryptfs 104 and earlier uses a default salt to encrypt the mount passphrase, which makes it easier for attackers to obtain user passwords vecryptfs · ecryptfs-utils · CWE-255 | Medium5.0 | — | 2.2% | Mar 16, 2015 |
18Monitor | CVE-2011-1836No exploit | utils/ecryptfs-recover-private in ecryptfs-utils before 90 does not establish a subdirectory with safe permissions, which might allow local ecryptfs · ecryptfs-utils · CWE-264 | Medium4.6 | — | 0.4% | Feb 15, 2014 |
18Monitor | CVE-2011-1831No exploit | utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 does not properly check mountpoint permissions, which allows local users to effececryptfs · ecryptfs-utils · CWE-264 | Medium4.6 | — | 0.4% | Feb 15, 2014 |
17Monitor | CVE-2011-1835No exploit | The encrypted private-directory setup process in utils/ecryptfs-setup-private in ecryptfs-utils before 90 does not properly ensure that the ecryptfs · ecryptfs-utils · CWE-255 | Medium4.4 | — | 0.4% | Feb 15, 2014 |
14Monitor | CVE-2011-1837No exploit | The lock-counter implementation in utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 allows local users to overwrite arbitrary fileecryptfs · ecryptfs-utils · CWE-264 | Low3.6 | — | 0.4% | Feb 15, 2014 |
13Monitor | CVE-2016-6224No exploit | ecryptfs-setup-swap in eCryptfs does not prevent the unencrypted swap partition from activating during boot when using GPT partitioning on aecryptfs · ecryptfs-utils · CWE-20 | Low3.3 | — | 0.4% | Jul 22, 2016 |
13Monitor | CVE-2015-8946No exploit | ecryptfs-setup-swap in eCryptfs before 111 does not prevent the unencrypted swap partition from activating during boot when using GPT partitecryptfs · ecryptfs-utils · CWE-20 | Low3.3 | — | 0.4% | Jul 22, 2016 |
8Monitor | CVE-2011-1834No exploit | utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 does not properly maintain the mtab file during error conditions, which allows loecryptfs · ecryptfs-utils · CWE-264 | Low2.1 | — | 0.4% | Feb 15, 2014 |
8Monitor | CVE-2011-1832No exploit | utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 does not properly check mountpoint permissions, which allows local users to removecryptfs · ecryptfs-utils · CWE-264 | Low2.1 | — | 0.4% | Feb 15, 2014 |
- CVE-2016-157233Monitor
mount.ecryptfs_private.c in eCryptfs-utils does not validate mount destination filesystem types, which allows local users to gain privileges
HighCVSS 8.4No exploitEPSS 0%ecryptfs · ecryptfs-utilsJan 22, 2016
- CVE-2012-340931Monitor
ecryptfs-utils: suid helper does not restrict mounting filesystems with nosuid,nodev which creates a possible privilege escalation
HighCVSS 7.8No exploitEPSS 0%ecryptfs · ecryptfs-utilsDec 20, 2019
- CVE-2008-518828Monitor
The (1) ecryptfs-setup-private, (2) ecryptfs-setup-confidential, and (3) ecryptfs-setup-pam-wrapped.sh scripts in ecryptfs-utils 45 through
HighCVSS 7.2No exploitEPSS 0%ecryptfs · ecryptfs utilsNov 20, 2008
- CVE-2014-968721Monitor
eCryptfs 104 and earlier uses a default salt to encrypt the mount passphrase, which makes it easier for attackers to obtain user passwords v
MediumCVSS 5.0No exploitEPSS 2%ecryptfs · ecryptfs-utilsMar 16, 2015
- CVE-2011-183618Monitor
utils/ecryptfs-recover-private in ecryptfs-utils before 90 does not establish a subdirectory with safe permissions, which might allow local
MediumCVSS 4.6No exploitEPSS 0%ecryptfs · ecryptfs-utilsFeb 15, 2014
- CVE-2011-183118Monitor
utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 does not properly check mountpoint permissions, which allows local users to effec
MediumCVSS 4.6No exploitEPSS 0%ecryptfs · ecryptfs-utilsFeb 15, 2014
- CVE-2011-183517Monitor
The encrypted private-directory setup process in utils/ecryptfs-setup-private in ecryptfs-utils before 90 does not properly ensure that the
MediumCVSS 4.4No exploitEPSS 0%ecryptfs · ecryptfs-utilsFeb 15, 2014
- CVE-2011-183714Monitor
The lock-counter implementation in utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 allows local users to overwrite arbitrary file
LowCVSS 3.6No exploitEPSS 0%ecryptfs · ecryptfs-utilsFeb 15, 2014
- CVE-2016-622413Monitor
ecryptfs-setup-swap in eCryptfs does not prevent the unencrypted swap partition from activating during boot when using GPT partitioning on a
LowCVSS 3.3No exploitEPSS 0%ecryptfs · ecryptfs-utilsJul 22, 2016
- CVE-2015-894613Monitor
ecryptfs-setup-swap in eCryptfs before 111 does not prevent the unencrypted swap partition from activating during boot when using GPT partit
LowCVSS 3.3No exploitEPSS 0%ecryptfs · ecryptfs-utilsJul 22, 2016
- CVE-2011-18348Monitor
utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 does not properly maintain the mtab file during error conditions, which allows lo
LowCVSS 2.1No exploitEPSS 0%ecryptfs · ecryptfs-utilsFeb 15, 2014
- CVE-2011-18328Monitor
utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 does not properly check mountpoint permissions, which allows local users to remov
LowCVSS 2.1No exploitEPSS 0%ecryptfs · ecryptfs-utilsFeb 15, 2014