SaraB DAR Encryption Ciphers Local Information Disclosure Vulnerability
BID:29364
Info
SaraB DAR Encryption Ciphers Local Information Disclosure Vulnerability
| Bugtraq ID: | 29364 |
| Class: | Design Error |
| CVE: |
CVE-2008-2517 |
| Remote: | No |
| Local: | Yes |
| Published: | May 24 2008 12:00AM |
| Updated: | May 07 2015 05:28PM |
| Credit: | The vendor disclosed the issue. |
| Vulnerable: |
SaraB SaraB 0.2.3 |
| Not Vulnerable: |
SaraB SaraB 0.2.4 |
Discussion
SaraB DAR Encryption Ciphers Local Information Disclosure Vulnerability
SaraB is prone to an information-disclosure vulnerability.
Successful exploits will allow attackers to obtain sensitive information that may aid in further attacks.
The issue affects versions prior to SaraB 0.2.4.
SaraB is prone to an information-disclosure vulnerability.
Successful exploits will allow attackers to obtain sensitive information that may aid in further attacks.
The issue affects versions prior to SaraB 0.2.4.
Exploit / POC
SaraB DAR Encryption Ciphers Local Information Disclosure Vulnerability
An attacker can use system utilities to carry out this attack.
An attacker can use system utilities to carry out this attack.
Solution / Fix
SaraB DAR Encryption Ciphers Local Information Disclosure Vulnerability
Solution:
The vendor has released an update. Please see the references for more information.
SaraB SaraB 0.2.3
Solution:
The vendor has released an update. Please see the references for more information.
SaraB SaraB 0.2.3
-
SaraB sarab-0.2.4.tar.gz
http://sourceforge.net/project/showfiles.php?group_id=91804
References
SaraB DAR Encryption Ciphers Local Information Disclosure Vulnerability
References:
References:
- SaraB Changelog sarab-0.2.4 (SaraB)
- SaraB Homepage (SaraB)