Vulnerability Details CVE-2002-0572
FreeBSD 4.5 and earlier, and possibly other BSD-based operating systems, allows local users to write to or read from restricted files by closing the file descriptors 0 (standard input), 1 (standard output), or 2 (standard error), which may then be reused by a called setuid process that intended to perform I/O on normal files.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 44.0%
CVSS Severity
CVSS v2 Score 7.2
Products affected by CVE-2002-0572
-
cpe:2.3:o:freebsd:freebsd:4.4
-
cpe:2.3:o:freebsd:freebsd:4.5
-
cpe:2.3:o:openbsd:openbsd:2.0
-
cpe:2.3:o:openbsd:openbsd:2.1
-
cpe:2.3:o:openbsd:openbsd:2.2
-
cpe:2.3:o:openbsd:openbsd:2.3
-
cpe:2.3:o:sun:solaris:2.5.1
-
cpe:2.3:o:sun:solaris:2.6
-
cpe:2.3:o:sun:solaris:7.0
-
cpe:2.3:o:sun:solaris:8.0
-
-
cpe:2.3:o:sun:sunos:5.5.1
-
-