First published: Wed Sep 03 2008(Updated: )
Grub Legacy 0.97 and earlier stores pre-boot authentication passwords in the BIOS Keyboard buffer and does not clear this buffer before and after use, which allows local users to obtain sensitive information by reading the physical memory locations associated with this buffer.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GNU GRUB | =0.96-i386-pc | |
GNU GRUB | =0.94-i386-pc | |
GNU GRUB | =0.96 | |
GNU GRUB | =0.92 | |
GNU GRUB | =0.95 | |
GNU GRUB | =0.93 | |
GNU GRUB | <=0.97 | |
GNU GRUB | =0.95-i386-pc | |
GNU GRUB | =0.97-i386-pc | |
GNU GRUB | =0.94 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2008-3896 is considered high due to the potential exposure of sensitive information from pre-boot authentication passwords.
To fix CVE-2008-3896, upgrade to a version of Grub Legacy later than 0.97 that does not store passwords in the BIOS Keyboard buffer.
CVE-2008-3896 affects all versions of Grub Legacy prior to 0.97, including 0.96, 0.95, 0.94, and earlier versions.
CVE-2008-3896 cannot be exploited remotely as it requires local access to the system.
CVE-2008-3896 can lead to the compromise of sensitive pre-boot authentication passwords stored in memory.