Vulnerabilities (CVE)

Filtered by vendor Canonical Subscribe
Filtered by product Subiquity
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-5182 1 Canonical 1 Subiquity 2024-11-21 N/A 5.5 MEDIUM
Sensitive data could be exposed in logs of subiquity version 23.09.1 and earlier. An attacker in the adm group could use this information to find hashed passwords and possibly escalate their privilege.
CVE-2020-11932 1 Canonical 1 Subiquity 2024-11-21 2.1 LOW 2.3 LOW
It was discovered that the Subiquity installer for Ubuntu Server logged the LUKS full disk encryption password if one was entered.