First published: Wed Apr 03 2002(Updated: )
LogWatch 2.5 allows local users to gain root privileges via a symlink attack, a different vulnerability than CVE-2002-0162.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Logwatch | =2.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-0165 has a high severity rating due to the potential for local users to gain root privileges.
To fix CVE-2002-0165, users should update LogWatch to a version later than 2.5 that addresses this vulnerability.
Local users on systems running LogWatch version 2.5 are affected by CVE-2002-0165.
CVE-2002-0165 involves a symlink attack that can escalate local user privileges to root.
CVE-2002-0165 is a different vulnerability than CVE-2002-0162, though both affect LogWatch.