Maui
Board Index divider Search Member List Help
Hello There, Guest! Login Register
Login
Username:
Password: Lost Password?
 
Maui Forums › Community › General Talk › CVE-2016-4484: Cryptsetup Initrd root Shell

CVE-2016-4484: Cryptsetup Initrd root Shell
leszek Offline
Moderator
Joined: Jul 2013
Posts: 3,633
#2
9th January 2017, 11:40
Quote:This vulnerability is specially serious in environments like libraries, ATMs, airport machines, labs, etc, where the whole boot process is protect (password in BIOS and GRUB) and we only have a keyboard or/and a mouse
It is exactly the opposite. Those who run a full disk encryption and need grub to decrypt the boot partition have nothing to worry as you then need to first crack the grub password/ decrypt stuff.

The issue in itself is not so major as some want to make it as even on systems with non encrypted /boot you have the option to access this non encrypted /boot (with physical access) and can modify the initrd to log keystrokes for example.
You are not able to access the / partition however as it is encrypted. As the busybox shell of initramfs is very basic you don't even get a text editor in it to modify the shell scripts.
Even simple network access is not something trivial to configure as at least in current iterations of debian and ubuntu a normal dhclient command will not make wget work with dns entries. So you still need an IP adress to download something malicious.
All in all this problem exists for several years already and I personally don't regard it as a bug but rather a debugging feature build into the initramfs scripts.
Btw. there is also the debug flag that allows you to go directly into initramfs if you want.
Find
Reply
« Next Oldest | Next Newest »


Messages In This Thread
CVE-2016-4484: Cryptsetup Initrd root Shell - by kdemeoz - 9th January 2017, 7:35
RE: CVE-2016-4484: Cryptsetup Initrd root Shell - by leszek - 9th January 2017, 11:40
RE: CVE-2016-4484: Cryptsetup Initrd root Shell - by kdemeoz - 9th January 2017, 12:38

  • View a Printable Version
  • Subscribe to this thread
Forum Jump:

  • Contact Us
  • Maui Forums
  • Return to Top
  • Lite (Archive) Mode
  • RSS Syndication
Current time: 6th June 2025, 19:05 Powered By MyBB, © 2002-2025 MyBB Group.
Linear Mode
Threaded Mode