First published: Mon Aug 12 2002(Updated: )
shadow package in SuSE 8.0 allows local users to destroy the /etc/passwd and /etc/shadow files or assign extra group privileges to some users by changing filesize limits before calling programs that modify the files.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SUSE Linux | =8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-0762 is considered a critical vulnerability as it allows local users to compromise essential system files.
To fix CVE-2002-0762, update the shadow package to the latest version provided by SuSE.
CVE-2002-0762 affects local users of the SuSE Linux 8.0 operating system.
Attackers can use CVE-2002-0762 to alter or destroy critical password and shadow files in the system.
Exploitation of CVE-2002-0762 can lead to unauthorized access, privilege escalation, and total loss of user credentials.