CVE-2002-0165: High severity LogWatch LogWatch vulnerability
Published Apr 3, 2002
·Updated
LogWatch 2.5 allows local users to gain root privileges via a symlink attack, a different vulnerability than CVE-2002-0162.
Affected Software
1 affected component
LogWatch LogWatch=2.5
Event History
Apr 3, 2002
CVE Published
05:00 AM
Apr 5, 2002
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-0165?
CVE-2002-0165 has a high severity rating due to the potential for local users to gain root privileges.
2
How do I fix CVE-2002-0165?
To fix CVE-2002-0165, users should update LogWatch to a version later than 2.5 that addresses this vulnerability.
3
Who is affected by CVE-2002-0165?
Local users on systems running LogWatch version 2.5 are affected by CVE-2002-0165.
4
What type of attack is CVE-2002-0165?
CVE-2002-0165 involves a symlink attack that can escalate local user privileges to root.
5
Is CVE-2002-0165 related to any other vulnerabilities?
CVE-2002-0165 is a different vulnerability than CVE-2002-0162, though both affect LogWatch.