CVE-2004-2136: Low severity Linux Linux kernel vulnerability
dm-crypt on Linux kernel 2.6.x, when used on certain file systems with a block size 1024 or greater, has certain "IV computation" weaknesses that allow watermarked files to be detected without decryption.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2004-2136?
CVE-2004-2136 is considered a high-severity vulnerability due to its ability to expose watermarked files without the need for decryption.
How do I fix CVE-2004-2136?
To mitigate CVE-2004-2136, upgrade your Linux kernel to a version newer than 2.6.0.
Which systems are affected by CVE-2004-2136?
CVE-2004-2136 affects Linux kernel version 2.6.0 specifically when used with certain file systems that have a block size of 1024 or greater.
What is the impact of CVE-2004-2136 on data security?
The impact of CVE-2004-2136 includes potential unauthorized detection of watermarked files, compromising confidentiality.
Is CVE-2004-2136 still relevant today?
While CVE-2004-2136 is an older vulnerability, it remains relevant for legacy systems still running Linux kernel 2.6.0.