ExpertEraser Device Configuration Overlay Disk Wiping Security Issue

Monday, May 16 2005 @ 10:26 AM EDT

Arne Vidstr?m has reported a security issue in ExpertEraser, which may disclose sensitive information to malicious people.

The problem is that the product doesn't support Device Configuration Overlays (DCO) and therefore can't wipe parts of a disk using this feature. This may result in a disk not being wiped sufficiently.

The security issue has been reported in version 2.0.

SOFTWARE:
ExpertEraser 2.x

SOLUTION:
The vendor reports that all versions shipped after 2005-05-13 now
support DCO.

VERIFY ADVISORY:
http://secunia.com/advisories/15347/

Secunia Security Advisories

0 comments



http://community.securityteam.us/article.php/2005051610260099