7.2
CVSSv2

CVE-2002-0851

Published: 05/09/2002 Updated: 05/09/2008
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 730
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Format string vulnerability in ISDN Point to Point Protocol (PPP) daemon (ipppd) in the ISDN4Linux (i4l) package allows local users to gain root privileges via format strings in the device name command line argument, which is not properly handled in a call to syslog.

Vulnerable Product Search on Vulmon Subscribe to Product

isdn4linux isdn4linux 3.1_pre1

Exploits

source: wwwsecurityfocuscom/bid/5437/info isdn4linux is a freely available, open source package of isdn compatibility tools It is available for Linux operating systems isdn4linux contains a format string vulnerability in the ipppd utility In some installations, this utility is installed with setuid root privileges Exploitation of t ...
source: wwwsecurityfocuscom/bid/5437/info isdn4linux is a freely available, open source package of isdn compatibility tools It is available for Linux operating systems isdn4linux contains a format string vulnerability in the ipppd utility In some installations, this utility is installed with setuid root privileges Exploitation of thi ...