Ubuntu Security Flaw Bypasses Full Disk Encryption
Cybersecurity researchers say they’ve discovered a “critical” security vulnerability affecting Linux that can give attackers full system access, even if the device uses full disk encryption. The vector has been demonstrated against Ubuntu 25.04 and Fedora 42 as well as other Linux distributions, according to a report published by ERNW Research. It does not affect OpenSUSE Tumbleweed, however. Attackers with physical access to a device can access a low-level debug shell simply by entering the wrong password enough times. On Ubuntu, they can then hit esc at the password prompt, punch in a few key combos, and bam: debug shell. […]
You're reading Ubuntu Security Flaw Bypasses Full Disk Encryption, a blog post from OMG! Ubuntu. Do not reproduce elsewhere without permission.