CVE-2009-1296
published 2009-06-09CVE-2009-1296: The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6.1 on Ubuntu 9.04 stores the mount passphrase in installation logs, which might allow local users to…
PriorityP44low1.9CVSS 2.0
AVLACMAuNCPINAN
EPSS
0.29%
21.1th percentile
The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6.1 on Ubuntu 9.04 stores the mount passphrase in installation logs, which might allow local users to obtain access to the filesystem by reading the log files from disk. NOTE: the log files are only readable by root.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | ecryptfs-utils | < ecryptfs-utils 75-2 (bookworm) | ecryptfs-utils 75-2 (bookworm) |
| ecryptfs | ecryptfs-utils | >= 0 < 75-2 | 75-2 |
| ecryptfs | ecryptfs-utils | >= 0 < 75-2 | 75-2 |
| ecryptfs | ecryptfs-utils | >= 0 < 75-2 | 75-2 |
| ecryptfs | ecryptfs-utils | >= 0 < 75-2 | 75-2 |
| ubuntu | 73-oubuntu | — | — |
| ubuntu | ubuntu | — | — |
CVSS provenance
nvdv2.01.9LOWAV:L/AC:M/Au:N/C:P/I:N/A:N
osv1.9LOW
vendor_redhat2.1LOW
vendor_debian1.9LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
groff: improper handling of failed attempts to create temporary directories in eqn2graph/pic2graph/grap2graph
vendor_redhat·2009-08-14·CVSS 2.1
CVE-2009-5080 [LOW] groff: improper handling of failed attempts to create temporary directories in eqn2graph/pic2graph/grap2graph
groff: improper handling of failed attempts to create temporary directories in eqn2graph/pic2graph/grap2graph
The (1) contrib/eqn2graph/eqn2graph.sh, (2) contrib/grap2graph/grap2graph.sh, and (3) contrib/pic2graph/pic2graph.sh scripts in GNU troff (aka groff) 1.21 and earlier do not properly handle certain failed attempts to create temporary directories, which might allow local users to overwrite arbitrary files via a symlink attack on a file in a temporary directory, a different vulnerability than CVE-2004-1296.
Statement: Red Hat Product Security has rated this issue as having Low security impact. This issue is not currently planned to be addressed in future updates. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/class
Ubuntu
eCryptfs vulnerability
vendor_ubuntu·2009-06-08
CVE-2009-1296 eCryptfs vulnerability
Title: eCryptfs vulnerability
Summary: eCryptfs vulnerability
Chris Jones discovered that the eCryptfs support utilities would
report the mount passphrase into installation logs when an eCryptfs
home directory was selected during Ubuntu installation. The logs are
only readable by the root user, but this still left the mount passphrase
unencrypted on disk, potentially leading to a loss of privacy.
Instructions: In general, a standard system upgrade is sufficient to effect the
necessary changes.
Debian
CVE-2009-1296: ecryptfs-utils - The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6.1 on Ubuntu 9.04 sto...
vendor_debian·2009·CVSS 1.9
CVE-2009-1296 [LOW] CVE-2009-1296: ecryptfs-utils - The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6.1 on Ubuntu 9.04 sto...
The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6.1 on Ubuntu 9.04 stores the mount passphrase in installation logs, which might allow local users to obtain access to the filesystem by reading the log files from disk. NOTE: the log files are only readable by root.
Scope: local
bookworm: resolved (fixed in 75-2)
bullseye: resolved (fixed in 75-2)
forky: resolved (fixed in 75-2)
sid: resolved (fixed in 75-2)
trixie: resolved (fixed in 75-2)
Red Hat
CVE-2009-1296: The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6
vendor_redhat·CVSS 1.9
CVE-2009-1296 [LOW] CVE-2009-1296: The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6
The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6.1 on Ubuntu 9.04 stores the mount passphrase in installation logs, which might allow local users to obtain access to the filesystem by reading the log files from disk. NOTE: the log files are only readable by root.
Statement: Not vulnerable. This issue did not affect the versions of ecryptfs-utils as shipped with Red Hat Enterprise Linux 5. eCryptfs encrypted home directories are not set up during the system installation, so theres no possibility for leaking encryption passwords to the installation log file.
GHSA
GHSA-wp7j-cfx2-2rxm: The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6
ghsa_unreviewed·2022-05-02
CVE-2009-1296 [LOW] CWE-200 GHSA-wp7j-cfx2-2rxm: The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6
The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6.1 on Ubuntu 9.04 stores the mount passphrase in installation logs, which might allow local users to obtain access to the filesystem by reading the log files from disk. NOTE: the log files are only readable by root.
OSV
CVE-2009-1296: The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6
osv·2009-06-09·CVSS 1.9
CVE-2009-1296 [LOW] CVE-2009-1296: The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6
The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6.1 on Ubuntu 9.04 stores the mount passphrase in installation logs, which might allow local users to obtain access to the filesystem by reading the log files from disk. NOTE: the log files are only readable by root.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/35383http://www.securitytracker.com/id?1022347http://www.ubuntu.com/usn/usn-783-1https://exchange.xforce.ibmcloud.com/vulnerabilities/51191http://secunia.com/advisories/35383http://www.securitytracker.com/id?1022347http://www.ubuntu.com/usn/usn-783-1https://exchange.xforce.ibmcloud.com/vulnerabilities/51191
2009-06-09
Published