cryptsetup writes visibly to stdout when using bootsplash input

Bug #289829 reported by David Rekowski
254
Affects Status Importance Assigned to Milestone
cryptsetup (Ubuntu)
New
Undecided
Unassigned

Bug Description

Binary package hint: cryptsetup

I enter the password for an encrypted device at boottime after being prompted to. Afterwards I see the boot output because a module compile failed. Then I notice that the password I entered is still visible on the screen.

I expect the password to be hidden!

Ubuntu 8.10

crypttab:
home /dev/sda5 none luks,retry=1,cipher=aes-lrw-benbi:sha256

Revision history for this message
Reinhard Tartler (siretart) wrote :

This is a duplicate of bug #55159.

still, I haven't found out how to reproduce it. It doesn't echo the passphrase for me. :/

Revision history for this message
David Rekowski (david-rekowski) wrote :

It is indeed a duplicate of bug #55159, which I didn't find before I filed this bug.

Steps to reproduce:

1) Start computer with encrypted partition
2) On bootsplash promt, enter the password
3) Switch to console (Ctrl + Alt + F1), it's either there or on tty7 (Ctrl + Alt + F7) or tty8 (Ctrl + Alt + F8)

Result: you see the entered password

To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.