CVE-2002-0499
LOW 2.1EPSS 1.0%
The d_path function in Linux kernel 2.2.20 and earlier, and 2.4.18 and earlier, truncates long pathnames without generating an error, which could allow local users to force programs to perform inappropriate operations on the wrong directories.
- CVSS v2.0
- 2.1 LOW
AV:L/AC:L/Au:N/C:N/I:P/A:N - EPSS
- 0.97% chance of exploitation in the next 30 days, 60th percentile
- Published
- 2002-06-11
- Updated
- 2024-08-08