📦

subiquity

Vendor: canonical

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 0 Remote Access
Total CVEs 4 Total Indexed
Avg. EPSS 0.36% Exploit Prob.
Latest CVE CVE-2022-0555 Jun 03

Security Vulnerability Index

Page 1 / 1
8.4 CVSS

Subiquity Shows Guided Storage Passphrase in Plaintext with Read-all Permissions

EPSS: 0.28%
5.5 CVSS

Sensitive data could be exposed in logs of subiquity version 23.09.1 and earlier. An attacker in the adm group could use this information to find hashed passwords and possibly escalate their privilege.

EPSS: 0.21%
2.3 CVSS

It was discovered that the Subiquity installer for Ubuntu Server logged the LUKS full disk encryption password if one was entered.

EPSS: 0.59%