Vulnerabilities > CVE-2002-0499 - Unspecified vulnerability in Linux Kernel

047910
CVSS 2.1 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
local
low complexity
linux
exploit available

Summary

The d_path function in Linux kernel 2.2.20 and earlier, and 2.4.18 and earlier, truncates long pathnames without generating an error, which could allow local users to force programs to perform inappropriate operations on the wrong directories.

Exploit-Db

descriptionLinux Kernel 2.2.x/2.3/2.4.x d_path() Path Truncation Vulnerability. CVE-2002-0499. Local exploit for linux platform
idEDB-ID:21353
last seen2016-02-02
modified2002-03-26
published2002-03-26
reportercliph
sourcehttps://www.exploit-db.com/download/21353/
titleLinux Kernel 2.2.x/2.3/2.4.x d_path Path Truncation Vulnerability