CVE-2002-1976: Low severity Linux Linux kernel vulnerability

Published Dec 31, 2002
·
Updated

ifconfig, when used on the Linux kernel 2.2 and later, does not report when the network interface is in promiscuous mode if it was put in promiscuous mode using PACKETMRPROMISC, which could allow attackers to sniff the network without detection, as demonstrated using libpcap.

Affected Software

49 affected components
Linux Linux kernel=2.4.15
Linux Linux kernel=2.2.10
Linux Linux kernel=2.4.11
Linux Linux kernel=2.2.13
Linux Linux kernel=2.2.0
Linux Linux kernel=2.2.6
Linux Linux kernel=2.4.19-pre1
Linux Linux kernel=2.4.12
Linux Linux kernel=2.4.13
Linux Linux kernel=2.4.19-pre4
Linux Linux kernel=2.2.18
Linux Linux kernel=2.2.3
Linux Linux kernel=2.4.17
Linux Linux kernel=2.2.2
Linux Linux kernel=2.3.0
Linux Linux kernel=2.2.5
Linux Linux kernel=2.4.7
Linux Linux kernel=2.3.99
Linux Linux kernel=2.2.8
Linux Linux kernel=2.4.9
Linux Linux kernel=2.2.7
Linux Linux kernel=2.2.16
Linux Linux kernel=2.2.1
Linux Linux kernel=2.2.12
Linux Linux kernel=2.4.19-pre6
Linux Linux kernel=2.4.10
Linux Linux kernel=2.4.0
Linux Linux kernel=2.4.2
Linux Linux kernel=2.4.19-pre2
Linux Linux kernel=2.4.16
Linux Linux kernel=2.4.8
Linux Linux kernel=2.4.19-pre3
Linux Linux kernel=2.4.14
Linux Linux kernel=2.2.19
Linux Linux kernel=2.4.18
Linux Linux kernel=2.4.19-pre5
Linux Linux kernel=2.2.20
Linux Linux kernel=2.4.5
Linux Linux kernel=2.2.15
Linux Linux kernel=2.4.18
Linux Linux kernel=2.2.4
Linux Linux kernel=2.4.3
Linux Linux kernel=2.2.14
Linux Linux kernel=2.2.11
Linux Linux kernel=2.4.1
Linux Linux kernel=2.4.4
Linux Linux kernel=2.2.17
Linux Linux kernel=2.4.6
Linux Linux kernel=2.2.9

Remediation

Event History

Dec 31, 2002
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityAffected Software
Jun 28, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description

Frequently Asked Questions

1

What is the severity of CVE-2002-1976?

CVE-2002-1976 has a severity rating that varies depending on the affected system context but is generally considered a high risk due to the potential for undetected network snooping.

2

How do I fix CVE-2002-1976?

To fix CVE-2002-1976, update to a version of the Linux kernel that addresses this vulnerability and consider disabling promiscuous mode if not needed.

3

What systems are affected by CVE-2002-1976?

CVE-2002-1976 affects various versions of the Linux kernel, including 2.2.x and 2.4.x versions specified in its definitions.

4

What is the impact of CVE-2002-1976?

The impact of CVE-2002-1976 is the potential for unauthorized network traffic monitoring through undetected promiscuous mode operation.

5

Who can exploit CVE-2002-1976?

CVE-2002-1976 can be exploited by attackers with local access who can manipulate network settings to enable promiscuous mode without detection.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203