Oval Definition:
oval:org.opensuse.security:def:20143462
Revision Date
:
2018-05-02
Version
:
1
Title
:
CVE-2014-3462
Description
:
The ".encfs6.xml" configuration file in encfs before 1.7.5 allows remote attackers to access sensitive data by setting "blockMACBytes" to 0 and adding 8 to "blockMACRandBytes".
Family
:
unix
Class
:
vulnerability
Status
:
Reference(s)
:
CVE-2014-3462
Platform(s)
:
openSUSE 13.2
openSUSE Leap 42.1
openSUSE Leap 42.2
Product(s)
:
Definition Synopsis
openSUSE 13.2 is installed
AND
Package Information
encfs-1.8.1-25.3.1 is installed
OR
encfs-lang-1.8.1-25.3.1 is installed
Definition Synopsis
openSUSE Leap 42.1 is installed
AND
Package Information
encfs-1.8.1-4.1 is installed
AND
encfs is signed with openSUSE key
OR
encfs-lang-1.8.1-4.1 is installed
AND
encfs-lang is signed with openSUSE key
Definition Synopsis
openSUSE Leap 42.2 is installed
AND
Package Information
encfs-1.8.1-5.1 is installed
AND
encfs is signed with openSUSE key
OR
encfs-lang-1.8.1-5.1 is installed
AND
encfs-lang is signed with openSUSE key
BACK