CVE-2020-11932: Canonical Subiquity

Low severity, CVSS 2.3. EPSS: 0.6% chance of exploitation in the next 30 days.

It was discovered that the Subiquity installer for Ubuntu Server logged the LUKS full disk encryption password if one was entered.

Affected products

  • Canonical Subiquity: before 20.05.2 (fixed in 20.05.2)

Published 2020-05-13. Last modified 2026-06-17.