Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

Vulnerabilities in LUKS2 disk encryption for confidential VMs

Summary

New LUKS2 flaws (CVE-2025-59054, CVE-2025-58356) affect eight confidential VM systems: malleable headers let disk-level attackers trick TEE guests into encrypting secrets with a null cipher.
Published
Collected

original ↗

Related coverage

back