eCryptfs is a stackable Linux encryption filesystem that provides transparent directory-level encryption, with its disclosed vulnerabilities concentrating in the eCryptfs utilities component and centering on improper input validation and privilege-management issues inherent to filesystem-level access control. The vendor occupies a specialized but prominent role in the Linux encryption ecosystem, and defenders managing encrypted storage or home-directory implementations should monitor this component's updates closely. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ecryptfs over time
Signals from CVEs in this vendor scope (12 CVEs).
12 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2016-1572HIGH mount.ecryptfs_private.c in eCryptfs-utils does not validate mount destination filesystem types, which allows local users to gain privileges by mounting over a nonstandard filesyst | Jan 22, 2016 | 8.4 | 27 | NO | NO |
CVE-2012-3409HIGH ecryptfs-utils: suid helper does not restrict mounting filesystems with nosuid,nodev which creates a possible privilege escalation | Dec 20, 2019 | 7.8 | 25 | NO | NO |
CVE-2008-5188HIGH The (1) ecryptfs-setup-private, (2) ecryptfs-setup-confidential, and (3) ecryptfs-setup-pam-wrapped.sh scripts in ecryptfs-utils 45 through 61 in eCryptfs place cleartext passwords | Nov 21, 2008 | 7.2 | 18 | NO | NO |
CVE-2011-1836MEDIUM utils/ecryptfs-recover-private in ecryptfs-utils before 90 does not establish a subdirectory with safe permissions, which might allow local users to bypass intended access restrict | Feb 15, 2014 | 4.6 | 17 | NO | NO |
CVE-2011-1835MEDIUM The encrypted private-directory setup process in utils/ecryptfs-setup-private in ecryptfs-utils before 90 does not properly ensure that the passphrase file is created, which might | Feb 15, 2014 | 4.4 | 17 | NO | NO |
CVE-2011-1831MEDIUM utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 does not properly check mountpoint permissions, which allows local users to effectively replace any directory with a new | Feb 15, 2014 | 4.6 | 17 | NO | NO |
CVE-2014-9687MEDIUM eCryptfs 104 and earlier uses a default salt to encrypt the mount passphrase, which makes it easier for attackers to obtain user passwords via a brute force attack. | Mar 16, 2015 | 5.0 | 15 | NO | NO |
The lock-counter implementation in utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 allows local users to overwrite arbitrary files via unspecified vectors. | Feb 15, 2014 | 3.6 | 15 | NO | NO |
utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 does not properly maintain the mtab file during error conditions, which allows local users to cause a denial of service ( | Feb 15, 2014 | 2.1 | 13 | NO | NO |
utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 does not properly check mountpoint permissions, which allows local users to remove directories via a umount system call. | Feb 15, 2014 | 2.1 | 13 | NO | NO |
Signals from CVEs in this vendor scope (12 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ecryptfs.
Media articles that mention a CVE ID that affects a product developed by Ecryptfs — matched by CVE ID, not by vendor name.