Computer Security
eCryptfs information leak
SecurityVulns ID:9974
Threat Level:
Description:mount passphrase may be logged to installation log.
Affected:ECRYPTFS : ecryptfs-utils 73
CVE:CVE-2009-1296 (The eCryptfs support utilities (ecryptfs-utils) 73-0ubuntu6.1 on Ubuntu 9.04 stores the mount passphrase in installation logs, which might allow local users to obtain access to the filesystem by reading the log files from disk. NOTE: the log files are only readable by root.)
Original documentdocumentUBUNTU, [USN-783-1] eCryptfs vulnerability (09.06.2009)

