Vulnerabilities > Google > Fscrypt > Low

DATE CVE VULNERABILITY TITLE RISK
2022-02-25 CVE-2022-25327 Incorrect Default Permissions vulnerability in Google Fscrypt
The PAM module for fscrypt doesn't adequately validate fscrypt metadata files, allowing users to create malicious metadata files that prevent other users from logging in.
local
low complexity
google CWE-276
2.1
2022-02-25 CVE-2022-25326 Resource Exhaustion vulnerability in Google Fscrypt
fscrypt through v0.3.2 creates a world-writable directory by default when setting up a filesystem, allowing unprivileged users to exhaust filesystem space.
local
low complexity
google CWE-400
2.1