Vulnerabilities > CVE-2004-2135 - Information Disclosure vulnerability in Linux Kernel Cryptoloop

047910
CVSS 2.1 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
local
low complexity
linux
exploit available

Summary

cryptoloop on Linux kernel 2.6.x, when used on certain file systems with a block size 1024 or greater, has certain "IV computation" weaknesses that allow watermarked files to be detected without decryption.

Vulnerable Configurations

Part Description Count
OS
Linux
184

Exploit-Db

descriptionLinux Kernel 2.6.x Cryptoloop Information Disclosure Vulnerability. CVE-2004-2135. Local exploit for linux platform
idEDB-ID:25707
last seen2016-02-03
modified2005-05-26
published2005-05-26
reporterMarkku-Juhani O. Saarinen
sourcehttps://www.exploit-db.com/download/25707/
titleLinux Kernel 2.6.x - Cryptoloop Information Disclosure Vulnerability