CVE-2014-9687
EPSS 0.52%
Description
eCryptfs 104 and earlier uses a default salt to encrypt the mount passphrase, which makes it easier for attackers to obtain user passwords via a brute force attack.
How to fix CVE-2014-9687
To remediate CVE-2014-9687, upgrade the affected package to a fixed version below.
- Debian/ecryptfs-utils—upgrade to 103-4 or later
Is CVE-2014-9687 being exploited?
Low — EPSS is 0.5%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 103-4