PoC Index

CVE-2002-0851

HIGH 7.2EPSS 1.1%

Format string vulnerability in ISDN Point to Point Protocol (PPP) daemon (ipppd) in the ISDN4Linux (i4l) package allows local users to gain root privileges via format strings in the device name command line argument, which is not properly handled in a call to syslog.

CVSS v2.0
7.2 HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
EPSS
1.05% chance of exploitation in the next 30 days, 62th percentile
Published
2003-04-02
Updated
2024-08-08

Proof-of-concept exploits (1)

ExploitDB entries (2)

References

Related