CVE-2002-0824: Medium severity FreeBSD Point-to-point Protocol Daemon vulnerability
Published Aug 12, 2002
·Updated
BSD pppd allows local users to change the permissions of arbitrary files via a symlink attack on a file that is specified as a tty device.
Affected Software
1 affected component
FreeBSD Point-to-point Protocol Daemon
Event History
Aug 12, 2002
CVE Published
04:00 AM
Apr 2, 2003
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-0824?
CVE-2002-0824 is considered a moderate severity vulnerability due to its potential for local privilege escalation.
2
How do I fix CVE-2002-0824?
To fix CVE-2002-0824, users should update the Point-to-Point Protocol daemon to the latest version or apply the appropriate security patches.
3
What type of attack does CVE-2002-0824 involve?
CVE-2002-0824 involves a symlink attack that enables local users to change the permissions of arbitrary files.
4
Which software is affected by CVE-2002-0824?
CVE-2002-0824 affects the Point-to-Point Protocol daemon in FreeBSD.
5
Can remote users exploit CVE-2002-0824?
No, CVE-2002-0824 can only be exploited by local users with the ability to create symlinks.