CVE-2019-13179
Calamares versions 3.1 through 3.2.10 copies a LUKS encryption keyfile from /crypto_keyfile.bin (mode 0600 owned by root) to /boot within a globally readable initramfs image with insecure permissions, which allows this originally protected file to be…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (2.10%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Calamares versions 3.1 through 3.2.10 copies a LUKS encryption keyfile from /crypto_keyfile.bin (mode 0600 owned by root) to /boot within a globally readable initramfs image with insecure permissions, which allows this originally protected file to be read by any user, thereby disclosing decryption keys for LUKS containers created with Full Disk Encryption.
- CVSS 3.0
- 7.5 HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- EPSS
- 2.10% probability · 81th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-522
- Affected
- calamares/calamares
- Source
- cve@mitre.org
References
- https://bugs.launchpad.net/ubuntu/+source/initramfs-tools/+bug/1835095Exploit, Issue Tracking, Third Party Advisory
- https://bugs.launchpad.net/ubuntu/+source/initramfs-tools/+bug/1835096Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1726542Issue Tracking, Third Party Advisory
- https://calamares.io/calamares-3.2.11-is-out/Vendor Advisory
- https://calamares.io/calamares-cve-2019/Vendor Advisory
- https://github.com/calamares/calamares/issues/1191Exploit, Issue Tracking, Third Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Q57BOTBA2J5U4GVKUP7N2PD5H7B3BVUU/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/R2ZDQRGBGRVRW5LPJWKUNS3M66LZ3KYC/
- https://bugs.launchpad.net/ubuntu/+source/initramfs-tools/+bug/1835095Exploit, Issue Tracking, Third Party Advisory
- https://bugs.launchpad.net/ubuntu/+source/initramfs-tools/+bug/1835096Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1726542Issue Tracking, Third Party Advisory
- https://calamares.io/calamares-3.2.11-is-out/Vendor Advisory
- https://calamares.io/calamares-cve-2019/Vendor Advisory
- https://github.com/calamares/calamares/issues/1191Exploit, Issue Tracking, Third Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Q57BOTBA2J5U4GVKUP7N2PD5H7B3BVUU/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/R2ZDQRGBGRVRW5LPJWKUNS3M66LZ3KYC/
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.