2.1
CVSSv2

CVE-2002-0499

Published: 12/08/2002 Updated: 05/09/2008
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 215
Vector: AV:L/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

The d_path function in Linux kernel 2.2.20 and previous versions, and 2.4.18 and previous versions, truncates long pathnames without generating an error, which could allow local users to force programs to perform inappropriate operations on the wrong directories.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.2.2

linux linux kernel 2.2.20

linux linux kernel 2.2.3

linux linux kernel 2.2.4

linux linux kernel 2.4.14

linux linux kernel 2.4.15

linux linux kernel 2.4.16

linux linux kernel 2.4.17

linux linux kernel 2.2.0

linux linux kernel 2.2.10

linux linux kernel 2.2.17

linux linux kernel 2.2.19

linux linux kernel 2.2.5

linux linux kernel 2.2.7

linux linux kernel 2.4.10

linux linux kernel 2.4.12

linux linux kernel 2.4.2

linux linux kernel 2.4.4

linux linux kernel 2.4.9

linux linux kernel 2.2.12

linux linux kernel 2.2.13

linux linux kernel 2.2.14

linux linux kernel 2.2.15

linux linux kernel 2.2.9

linux linux kernel 2.3.0

linux linux kernel 2.3.99

linux linux kernel 2.4.0

linux linux kernel 2.4.5

linux linux kernel 2.4.6

linux linux kernel 2.4.7

linux linux kernel 2.4.8

linux linux kernel 2.2.1

linux linux kernel 2.2.11

linux linux kernel 2.2.16

linux linux kernel 2.2.18

linux linux kernel 2.2.6

linux linux kernel 2.2.8

linux linux kernel 2.4.1

linux linux kernel 2.4.11

linux linux kernel 2.4.13

linux linux kernel 2.4.18

linux linux kernel 2.4.3

Exploits

/* source: wwwsecurityfocuscom/bid/4367/info The Linux kernel d_path() function converts a dentry structure into an ASCII path name The full path to the specified dentry is returned in a fixed length buffer of size PAGE_SIZE bytes Reportedly, if a dentry structure is passed with a path which would exceed this length, an erroneous value ...