[Bug 1171584] Re: encrypted lvm security bug - Install (entire disk) Kubuntu Raring Daily

Seth Arnold 1171584 at bugs.launchpad.net
Wed Apr 24 06:17:14 UTC 2013


*** This bug is a duplicate of bug 1172059 ***
    https://bugs.launchpad.net/bugs/1172059

** Information type changed from Private Security to Public Security

** This bug has been marked a duplicate of bug 1172059
   kubuntu ubiquity encryption doesn't check password

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to ubiquity in Ubuntu.
https://bugs.launchpad.net/bugs/1171584

Title:
  encrypted lvm security bug - Install (entire disk) Kubuntu Raring
  Daily

Status in “ubiquity” package in Ubuntu:
  New

Bug description:
  Install (entire disk with lvm and encryption) in Kubuntu Desktop powerpc for Raring Daily testcase.
  http://iso.qa.ubuntu.com/qatracker/testcases/1451/info
  Step 8 failed: Enter a security key and type a different key into the 'confirm a security key' input box. I did this: 2 very obviously, ridiculously, different passkeys.
  The installer did not display 'Passwords do not match' and allowed me to continue with the installation. I had no warning and did not correct the mistake but continued to see what would happen. I've been running these testcases with the iso one after the other and later ran into Bug #1171566 Installer crashes after username, password & continue - so don't know how insecure or inaccessible the 'encrypted' system would have been.  This seems like a serious problem to me and wonder if its unique to the ppc iso or whether other Kubuntu raring isos exhibit this?

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/ubiquity/+bug/1171584/+subscriptions




More information about the foundations-bugs mailing list