7.5
CVSSv2

CVE-2002-0244

Published: 29/05/2002 Updated: 11/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Directory traversal vulnerability in chroot function in AtheOS 0.3.7 allows malicious users to escape the jail via a .. (dot dot) in the pathname argument to chdir.

Vulnerable Product Search on Vulmon Subscribe to Product

atheos atheos 0.3.7

Exploits

/* source: wwwsecurityfocuscom/bid/4051/info AtheOS is a freely available, open source operating system It is distributed under the GPL, and maintained by the AtheOS project It is possible to escape change rooted directories on AtheOS Due to insufficient handling of relative pathes, a process in the change rooted directory may change ...