Computer Security
[EN] securityvulns.ru
no-pyccku



Grub, DiskCryptor, LILO, DriveCrypt, TrueCRYPT and Intel, IBM, HP BIOS disk ebcryption utilities information leak
updated since 26.08.2008
Published:01.09.2008
Source:BUGTRAQ
SecurityVulns ID:9247
Type:local
Level:5/10
Description:Cleartext password is not erased from BIOS data buffer.
Affected:DISKCRYPTOR : DiskCryptor 0.2
 GRUB : Grub Legacy 0.97
 LILO : lilo 22.6
 SECUSTAR : DriveCrypt 3.9
 TRUECRYPT : TrueCrypt 5.0
Original documentdocumentiViZ Security Advisories, [IVIZ-08-005] IBM Lenovo BIOS Plain Text Password Disclosure (01.09.2008)
 documentiViZ Security Advisories, [IVIZ-08-002] Hewlett-Packard BIOS Plain Text Password Disclosure (01.09.2008)
 documentiViZ Security Advisories, [IVIZ-08-004] Intel BIOS Plain Text Password Disclosure (01.09.2008)
 documentiViZ Security Advisories, [IVIZ-08-003] TrueCrypt Security Model bypass exploiting wrong BIOS API usage (01.09.2008)
 documentiViZ Security Advisories, [IVIZ-08-007] DriveCrypt Security Model bypass exploiting wrong BIOS API usage (01.09.2008)
 documentiViZ Security Advisories, [IVIZ-08-008] LILO Security Model bypass exploiting wrong BIOS API usage (01.09.2008)
 documentiViZ Security Advisories, [IVIZ-08-006] DiskCryptor Security Model bypass exploiting wrong BIOS API usage (26.08.2008)
 documentiViZ Security Advisories, [IVIZ-08-009] Grub Legacy Security Model bypass exploiting wrong BIOS API usage (26.08.2008)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server