Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 934792 - sys-fs/cryptsetup: Multiple vulnerabilities?
Summary: sys-fs/cryptsetup: Multiple vulnerabilities?
Status: RESOLVED INVALID
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: Normal normal
Assignee: Gentoo Security
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2024-06-24 02:22 UTC by Sam James
Modified: 2024-06-24 02:22 UTC (History)
1 user (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Sam James archtester Gentoo Infrastructure gentoo-dev Security 2024-06-24 02:22:22 UTC
https://gitlab.com/cryptsetup/cryptsetup/-/commit/7019f42ff18d783f03f2a2184f101c98e484251e

I think the relevant part is:
"""

* Do not allow formatting LUKS2 with Opal SED (hardware encryption)
  if the reported logical sector size for the block device and Opal
  encryption logical block differs.

  Such a configuration can lead to a partially encrypted Opal locking
  range or data destruction following the expected locking range.
"""

... and AFAIK we have no opal support wired up yet.