* SECURITY UPDATE: mount passphrase recorded in install log (LP: #383650).
- debian/ecryptfs-utils.postinst: prune private information from
installer log
- src/utils/ecryptfs-setup-private: don't echo passphrase if running in
bootstrap mode
- CVE-2009-1296
This bug was fixed in the package ecryptfs-utils - 75-0ubuntu2
---------------
ecryptfs-utils (75-0ubuntu2) karmic; urgency=low
* SECURITY UPDATE: mount passphrase recorded in install log (LP: #383650). ecryptfs- utils.postinst: prune private information from ecryptfs- setup-private: don't echo passphrase if running in
- debian/
installer log
- src/utils/
bootstrap mode
- CVE-2009-1296
-- Dustin Kirkland <email address hidden> Fri, 05 Jun 2009 09:39:13 -0500