CVE-2010-3074
Publication date 17 September 2010
Last updated 24 July 2024
Ubuntu priority
Description
SSL_Cipher.cpp in EncFS before 1.7.0 uses an improper combination of an AES cipher and a CBC cipher mode for encrypted filesystems, which allows local users to obtain sensitive information via a watermark attack.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| encfs | 18.04 LTS bionic |
Not affected
|
| 16.04 LTS xenial |
Not affected
|
|
| 14.04 LTS trusty | Not in release | |