CVE-2001-0759

Jetico BestCrypt <= 0.8.1 - Local Buffer Overflow via Long Pathname

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2001-0759. PoCs published by Carl Livitt.

AI-analyzed exploit summary This exploit targets a buffer overflow in BestCrypt's bctool when unmounting an encrypted file system, allowing local privilege escalation to root. It constructs a malicious directory path with NOPs and shellcode, then manipulates the stack to execute arbitrary code.

Description

Buffer overflow in bctool in Jetico BestCrypt 0.8.1 and earlier allows local users to execute arbitrary code via a file or directory with a long pathname, which is processed during an unmount.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Carl Livitt · clocallinux
https://www.exploit-db.com/exploits/20927

This exploit targets a buffer overflow in BestCrypt's bctool when unmounting an encrypted file system, allowing local privilege escalation to root. It constructs a malicious directory path with NOPs and shellcode, then manipulates the stack to execute arbitrary code.

Classification
Working Poc 90%
Attack Type
Lpe
Complexity
Moderate
Reliability
Racy
Target: BestCrypt for Linux (version not specified)
No auth needed
Prerequisites: Local access to the system · BestCrypt installed · bctool executable available
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Exploit, Patch, Vendor Advisory mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/191111
Exploit, Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/2875

Scores

EPSS 0.0134
EPSS Percentile 67.6%

Details

Status published
Products (3)
jetico/bestcrypt 0.6
jetico/bestcrypt 0.7
jetico/bestcrypt 0.8.1
Published Oct 18, 2001
Tracked Since Feb 18, 2026