Affected by GO-2023-1583
and 3 other vulnerabilities
GO-2023-1583: User data in TPM attestation vulnerable to MITM in github.com/edgelesssys/constellation
GO-2023-1622: Constellation allows Emergency shell access during initramfs boot phase in github.com/edgelesssys/constellation
GO-2024-2727: Constellation has pods exposed to peers in VPC in github.com/edgelesssys/constellation
GO-2025-4076: Constellation has insecure LUKS2 persistent storage partitions which may be opened and used in github.com/edgelesssys/constellation
directory
Version:
v2.2.0
Opens a new window with list of versions in this module.
Published: Nov 8, 2022
License: AGPL-3.0
Opens a new window with license information.
README
¶
These packages are intended to be used by Kubernetes CSI drivers to enable transparent encryption of storage on the node.
Dependencies
This package uses the C library libcryptsetup for device mapping and crypto operations.
Testing
Running the integration test requires root privileges.
Build and run the test:
go test -c -tags=integration ./test/
sudo ./test.test
Directories
¶
Click to show internal directories.
Click to hide internal directories.