← Back

CVE-2008-2517

nvd nist
Published: Jun 3, 2008Modified: Apr 23, 2026

JSON object

Loading...
2.1
Vector
AV:L/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 3.9 / Impact: 2.9
Source: NVD

Description

The sarab.sh script in SaraB before 0.2.4 places the dar program's encryption key on the command line, which allows local users to obtain sensitive information by listing the process.

Affected (2)

Products: Sarab: Sarab
1 product
Sarab
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Sarab
Up to 0.2.3
Version 0.2.2

Timeline

No history available yet.