CVE-2016-4484: Cryptsetup Project Cryptsetup

Medium severity, CVSS 6.8. EPSS: 0.7% chance of exploitation in the next 30 days.

The Debian initrd script for the cryptsetup package 2:1.7.3-2 and earlier allows physically proximate attackers to gain shell access via many log in attempts with an invalid password.

Affected products

Published 2017-01-23. Last modified 2026-06-17.