This bug was fixed in the package calamares - 3.2.11-0ubuntu1
---------------
calamares (3.2.11-0ubuntu1) eoan; urgency=medium
* New upstream release.
* Proper handling of files and permissions with FDE: (LP: #1835095)
- CVE-2019-13178 Set proper umask for luks crypto_keyfile.
- CVE-2019-13179 Set proper umask for initramfs.
* Bump Standards-version to 4.4.0, no changes needed.
-- Dan Simmons <[email protected]> Fri, 12 Jul 2019 19:52:38 -0400
** Changed in: calamares (Ubuntu)
Status: Confirmed => Fix Released
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1835095
Title:
Lubuntu initrd images leaking cryptographic secret when disk
encryption is used
To manage notifications about this bug go to:
https://bugs.launchpad.net/calamares/+bug/1835095/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs