Sophos SafeGuard Enterprise Device Encryption 5.x through 5.50.8.13, Sophos SafeGuard Easy Device Encryption Client 5.50.x, and Sophos Disk Encryption 5.50.x have a delay before removal of (1) out-of-date credentials and (2) invalid credentials, which allows physically proximate attackers to defeat the full-disk encryption feature by leveraging knowledge of these credentials.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2012-08-24T10:00:00Z
Updated: 2024-09-16T23:30:23.787Z
Reserved: 2012-08-24T00:00:00Z
Link: CVE-2011-5117
Vulnrichment
No data.
NVD
Status : Modified
Published: 2012-08-24T10:36:42.067
Modified: 2024-11-21T01:33:40.677
Link: CVE-2011-5117
Redhat
No data.