Keybase · Keybase · CVE-2018-18629
**Name of the Vulnerable Software and Affected Versions**
Keybase command-line client versions prior to 2.8.0-20181023124437
**Description**
An issue was discovered in the Keybase command-line client that allows a local, unprivileged user on Linux to gain root privileges via a Trojan horse binary due to an untrusted search path vulnerability in the keybase-redirector application.
**Recommendations**
For versions prior to 2.8.0-20181023124437, update to version 2.8.0-20181023124437 or later to resolve the issue.