CVE-2010-1149
12.04.2010, 18:30
probers/udisks-dm-export.c in udisks before 1.0.1 exports UDISKS_DM_TARGETS_PARAMS information to udev even for a crypt UDISKS_DM_TARGETS_TYPE, which allows local users to discover encryption keys by (1) running a certain udevadm command or (2) reading a certain file under /dev/.udev/db/.Enginsight
Vendor | Product | Version |
---|---|---|
freedesktop | udisks | 𝑥 ≤ 1.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References