cbcvebase.
CVE-2020-11932
published 2020-05-13

CVE-2020-11932: It was discovered that the Subiquity installer for Ubuntu Server logged the LUKS full disk encryption password if one was entered.

low2.3CVSS 3.1
AVLACLPRHUINSUCLINAN
It was discovered that the Subiquity installer for Ubuntu Server logged the LUKS full disk encryption password if one was entered.

Affected

2 ranges
VendorProductVersion rangeFixed in
canonicalsubiquity< 20.05.220.05.2
canonicalsubiquity>= unspecified < 20.05.220.05.2

CVSS provenance

nvdv3.12.3LOWCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
osv2.3LOW