Advisories ยป MGASA-2022-0047

Updated cryptsetup packages fix security vulnerability

Publication date: 03 Feb 2022
Modification date: 03 Feb 2022
Type: security
Affected Mageia releases : 8
CVE: CVE-2021-4122

Description

An attacker can modify on-disk metadata to simulate decryption in progress
with crashed (unfinished) reencryption step and persistently decrypt part
of the LUKS device (CVE-2021-4122).
                

References

SRPMS

8/core