EncFS Project maintains a narrowly scoped encrypted filesystem utility designed to provide transparent encryption for directories, with its vulnerability exposure centered on the core EncFS product. The durable signal reflects information-disclosure weaknesses affecting the cryptographic implementation and encrypted-data handling, which are characteristic of encryption-layer components where the boundary between encrypted and plaintext access is security-critical. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Encfs Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2014-3462HIGH The ".encfs6.xml" configuration file in encfs before 1.7.5 allows remote attackers to access sensitive data by setting "blockMACBytes" to 0 and adding 8 to "blockMACRandBytes". | Aug 7, 2017 | 7.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Encfs Project.
Media articles that mention a CVE ID that affects a product developed by Encfs Project — matched by CVE ID, not by vendor name.