← Back

CVE-2008-3899

nvd nist
Published: Sep 3, 2008Modified: Apr 23, 2026

JSON object

Loading...
2.1
Vector
AV:L/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 3.9 / Impact: 2.9
Source: NVD

Description

TrueCrypt 5.0 stores pre-boot authentication passwords in the BIOS Keyboard buffer and does not clear this buffer before and after use, which allows local users to obtain sensitive information by reading the physical memory locations associated with this buffer. NOTE: the researcher mentions a response from the vendor denying the vulnerability.

Affected (1)

Truecrypt
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 5.0

Timeline

No history available yet.