Password leak from encrypted partitions in the Ubuntu Server installer log
Canonical has released a corrective update to the Subiquity installer 20.05.2, which is used by default for installing Ubuntu Server since the 18.04 release in Live mode. The new release addresses a security issue (CVE-2020-11932) caused by logging the password set by the user for accessing the LUKS encrypted partition created during installation. ISO images with the vulnerability fixed are not yet available […]
