HEX
Server: Apache/2.4.41 (Ubuntu)
System: Linux ip-172-31-42-149 5.15.0-1084-aws #91~20.04.1-Ubuntu SMP Fri May 2 07:00:04 UTC 2025 aarch64
User: ubuntu (1000)
PHP: 7.4.33
Disabled: pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals,pcntl_unshare,
Upload Files
File: //proc/self/root/usr/share/doc/cryptsetup/v1.7.5-ReleaseNotes
Cryptsetup 1.7.5 Release Notes
==============================

Changes since version 1.7.4

* Fixes to luksFormat to properly support recent kernel running in FIPS mode.

  Cryptsetup must never use a weak key even if it is just used for testing
  of algorithm availability. In FIPS mode, weak keys are always rejected.

  A weak key is for example detected if the XTS encryption mode use
  the same key for the tweak and the encryption part.

* Fixes accesses to unaligned hidden legacy TrueCrypt header.

  On a native 4k-sector device the old hidden TrueCrypt header is not
  aligned with the hw sector size (this problem was fixed in later TrueCrypt
  on-disk format versions).

  Cryptsetup now properly aligns the read so it does not fail.

* Fixes to optional dracut ramdisk scripts for offline re-encryption on initial boot.