Vulnerabilities in LUKS2 disk encryption for confidential VMs
blog.trailofbits.com | blog | #confidential-computing | #disk-encryption | #cryptsetup | #vulnerability-disclosure | #tee | #luks2
Summary
New LUKS2 flaws (CVE-2025-59054, CVE-2025-58356) affect eight confidential VM systems: malleable headers let disk-level attackers trick TEE guests into encrypting secrets with a null cipher.
- Published
- Collected
Skip to content