CVE-2014-9687
published 2015-03-16CVE-2014-9687: eCryptfs 104 and earlier uses a default salt to encrypt the mount passphrase, which makes it easier for attackers to obtain user passwords via a brute force…
PriorityP422medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
2.18%
80.3th percentile
eCryptfs 104 and earlier uses a default salt to encrypt the mount passphrase, which makes it easier for attackers to obtain user passwords via a brute force attack.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | ecryptfs-utils | < ecryptfs-utils 103-4 (bookworm) | ecryptfs-utils 103-4 (bookworm) |
| ecryptfs | ecryptfs-utils | <= 104 | — |
| ecryptfs | ecryptfs-utils | >= 0 < 103-4 | 103-4 |
| ecryptfs | ecryptfs-utils | >= 0 < 103-4 | 103-4 |
| ecryptfs | ecryptfs-utils | >= 0 < 103-4 | 103-4 |
| ecryptfs | ecryptfs-utils | >= 0 < 103-4 | 103-4 |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
osv5.0MEDIUM
vendor_debian5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
eCryptfs vulnerability
vendor_ubuntu·2015-03-11
CVE-2014-9687 eCryptfs vulnerability
Title: eCryptfs vulnerability
Summary: Sensitive information in encrypted home and Private directories could be
exposed if an attacker gained access to your files.
Sylvain Pelissier discovered that eCryptfs did not generate a random salt when
encrypting the mount passphrase with the login password. An attacker could use
this issue to discover the login password used to protect the mount passphrase
and gain unintended access to the encrypted files.
Instructions: After a standard system update you need to log out of all sessions and then log
back in to make all the necessary changes.
Debian
CVE-2014-9687: ecryptfs-utils - eCryptfs 104 and earlier uses a default salt to encrypt the mount passphrase, wh...
vendor_debian·2014·CVSS 5.0
CVE-2014-9687 [MEDIUM] CVE-2014-9687: ecryptfs-utils - eCryptfs 104 and earlier uses a default salt to encrypt the mount passphrase, wh...
eCryptfs 104 and earlier uses a default salt to encrypt the mount passphrase, which makes it easier for attackers to obtain user passwords via a brute force attack.
Scope: local
bookworm: resolved (fixed in 103-4)
bullseye: resolved (fixed in 103-4)
forky: resolved (fixed in 103-4)
sid: resolved (fixed in 103-4)
trixie: resolved (fixed in 103-4)
Red Hat
ecryptfs-utils: default salt is used for wrapping passphrase
vendor_redhat·2011-12-19·CVSS 5.0
CVE-2014-9687 [MEDIUM] CWE-547 ecryptfs-utils: default salt is used for wrapping passphrase
ecryptfs-utils: default salt is used for wrapping passphrase
eCryptfs 104 and earlier uses a default salt to encrypt the mount passphrase, which makes it easier for attackers to obtain user passwords via a brute force attack.
Package: ecryptfs-utils (Red Hat Enterprise Linux 5) - Will not fix
Package: ecryptfs-utils (Red Hat Enterprise Linux 6) - Will not fix
Package: ecryptfs-utils (Red Hat Enterprise Linux 7) - Will not fix
GHSA
GHSA-mc6q-88m2-653g: eCryptfs 104 and earlier uses a default salt to encrypt the mount passphrase, which makes it easier for attackers to obtain user passwords via a brute
ghsa_unreviewed·2022-05-17
CVE-2014-9687 [MEDIUM] GHSA-mc6q-88m2-653g: eCryptfs 104 and earlier uses a default salt to encrypt the mount passphrase, which makes it easier for attackers to obtain user passwords via a brute
eCryptfs 104 and earlier uses a default salt to encrypt the mount passphrase, which makes it easier for attackers to obtain user passwords via a brute force attack.
OSV
CVE-2014-9687: eCryptfs 104 and earlier uses a default salt to encrypt the mount passphrase, which makes it easier for attackers to obtain user passwords via a brute
osv·2015-03-16·CVSS 5.0
CVE-2014-9687 [MEDIUM] CVE-2014-9687: eCryptfs 104 and earlier uses a default salt to encrypt the mount passphrase, which makes it easier for attackers to obtain user passwords via a brute
eCryptfs 104 and earlier uses a default salt to encrypt the mount passphrase, which makes it easier for attackers to obtain user passwords via a brute force attack.
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-updates/2016-01/msg00118.htmlhttp://www.openwall.com/lists/oss-security/2015/02/10/16http://www.openwall.com/lists/oss-security/2015/02/17/7http://www.openwall.com/lists/oss-security/2015/02/28/3http://www.ubuntu.com/usn/USN-2524-1https://bugs.launchpad.net/ecryptfs/+bug/906550http://lists.opensuse.org/opensuse-updates/2016-01/msg00118.htmlhttp://www.openwall.com/lists/oss-security/2015/02/10/16http://www.openwall.com/lists/oss-security/2015/02/17/7http://www.openwall.com/lists/oss-security/2015/02/28/3http://www.ubuntu.com/usn/USN-2524-1https://bugs.launchpad.net/ecryptfs/+bug/906550
2015-03-16
Published