Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
EncFS before 1.7.0 encrypts multiple blocks by means of the CFB cipher mode with the same initialization vector, which makes it easier for local users to obtain sensitive information via calculations involving recovery of XORed data, as demonstrated by an attack on encrypted data in which the last block contains only one byte.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Arg0 EncFS加密问题漏洞
Vulnerability Description
EncFS 是一个加密传递的文件系统,运行于Linux 的用户空间,使用FUSE内核模块。 EncFS 1.7.0之前的版本通过具有相同初始化向量的CFB加密模式对多个块进行加密,这更容易使得本地用户借助涉及异或数据恢复的计算获取敏感信息,这体现在它的最后一个块只包含一个字节的数据加密攻击。
CVSS Information
N/A
Vulnerability Type
N/A