Description
fscrypt through v0.3.2 creates a world-writable directory by default when setting up a filesystem, allowing unprivileged users to exhaust filesystem space. We recommend upgrading to fscrypt 0.3.3 or above and adjusting the permissions on existing fscrypt metadata directories where applicable.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-1106 | fscrypt through v0.3.2 creates a world-writable directory by default when setting up a filesystem, allowing unprivileged users to exhaust filesystem space. We recommend upgrading to fscrypt 0.3.3 or above and adjusting the permissions on existing fscrypt metadata directories where applicable. |
Github GHSA |
GHSA-mpq4-rjj8-fjph | Uncontrolled Resource Consumption in github.com/google/fscrypt |
References
| Link | Providers |
|---|---|
| https://github.com/google/fscrypt/pull/346 |
|
History
Mon, 21 Apr 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Google
Published:
Updated: 2025-04-21T13:56:31.289Z
Reserved: 2022-02-18T00:00:00.000Z
Link: CVE-2022-25326
Updated: 2024-08-03T04:36:06.924Z
Status : Modified
Published: 2022-02-25T11:15:08.003
Modified: 2024-11-21T06:52:00.430
Link: CVE-2022-25326
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA