6.8
CVSSv2

CVE-2020-14382

Published: 16/09/2020 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

A vulnerability was found in upstream release cryptsetup-2.2.0 where, there's a bug in LUKS2 format validation code, that is effectively invoked on every device/image presenting itself as LUKS2 container. The bug is in segments validation code in file 'lib/luks2/luks2_json_metadata.c' in function hdr_validate_segments(struct crypt_device *cd, json_object *hdr_jobj) where the code does not check for possible overflow on memory allocation used for intervals array (see statement "intervals = malloc(first_backup * sizeof(*intervals));"). Due to the bug, library can be *tricked* to expect such allocation was successful but for far less memory then originally expected. Later it may read data FROM image crafted by an attacker and actually write such data BEYOND allocated memory.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cryptsetup project cryptsetup 2.2.0

redhat enterprise linux 8.0

canonical ubuntu linux 20.04

fedoraproject fedora 31

fedoraproject fedora 33

Vendor Advisories

Debian Bug report logs - #969471 cryptsetup: CVE-2020-14382 Package: src:cryptsetup; Maintainer for src:cryptsetup is Debian Cryptsetup Team <pkg-cryptsetup-devel@alioth-listsdebiannet>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Thu, 3 Sep 2020 15:30:03 UTC Severity: important Tags: security, ups ...
Synopsis Moderate: OpenShift Container Platform 4616 extras security update Type/Severity Security Advisory: Moderate Topic Red Hat OpenShift Container Platform release 4616 is now available withupdates to packages and images that fix several bugsRed Hat Product Security has rated this update as having ...
Synopsis Important: OpenShift Container Platform 4531 bug fix and security update Type/Severity Security Advisory: Important Topic Red Hat OpenShift Container Platform release 4531 is now available withupdates to packages and images that fix several bugsThis release also includes a security update for ...
Synopsis Moderate: cryptsetup security, bug fix, and enhancement update Type/Severity Security Advisory: Moderate Topic An update for cryptsetup is now available for Red Hat Enterprise Linux 8Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability Scor ...
Synopsis Moderate: cryptsetup security update Type/Severity Security Advisory: Moderate Topic An update for cryptsetup is now available for Red Hat Enterprise Linux 81 Extended Update SupportRed Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability Scor ...
Synopsis Important: OpenShift Container Platform 4616 security and bug fix update Type/Severity Security Advisory: Important Topic Red Hat OpenShift Container Platform release 4616 is now available withupdates to packages and images that fix several bugsRed Hat Product Security has rated this update as ...
Synopsis Moderate: OpenShift Container Platform 46 compliance-operator security and bug fix update Type/Severity Security Advisory: Moderate Topic An update for compliance-content-container, ose-compliance-openscap-container, ose-compliance-operator-container, and ose-compliance-operator-metadata-container ...
Synopsis Important: OpenShift Container Platform 4433 bug fix and security update Type/Severity Security Advisory: Important Topic Red Hat OpenShift Container Platform release 4433 is now available withupdates to packages and images that fix several bugs and add enhancementsThis release also includes a ...
Synopsis Moderate: Red Hat Quay v333 bug fix and security update Type/Severity Security Advisory: Moderate Topic Red Hat Quay v333 is now available with bug fixes and security updatesRed Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability Scoring S ...
Synopsis Moderate: OpenShift Container Platform 46 compliance-operator security and bug fix update Type/Severity Security Advisory: Moderate Topic An update for compliance-content-container, ose-compliance-openscap-container, ose-compliance-operator-container, and ose-compliance-operator-metadata-container ...
Synopsis Moderate: Red Hat OpenShift Container Storage 460 security, bug fix, enhancement update Type/Severity Security Advisory: Moderate Topic Updated images are now available for Red Hat OpenShift Container Storage 460 on Red Hat Enterprise Linux 8Red Hat Product Security has rated this update as ha ...