|    |    |    | Today: 19-Nov-2017 |

Cryptsetup 2:1.7.3-2 Root Initramfs Shell

November 16, 2016 | Posted in ExploitAlert

A vulnerability in Cryptsetup, concretely in the scripts that unlock the system partition when the partition is ciphered using LUKS (Linux Unified Key Setup). This vulnerability allows to obtain a root initramfs shell on affected systems. The vulnerability is very reliable because it doesn't depend on specific systems or configurations. Attackers can copy, modify or destroy the hard disc as well as set up the network to data. In cloud environments it is also possible to remotely exploit this vulnerability without having "physical access". Cryptsetup versions 2:1.7.3-2 and below are affected.


Source: Cryptsetup 2:1.7.3-2 Root Initramfs Shell

Taged in: cryptsetup, initramfs, shell