CVE-2002-0132
Chinput 3.0 - Local Buffer Overflow via HOME Environment Variable
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2002-0132. PoCs published by xperc.
AI-analyzed exploit summary This exploit targets a buffer overflow in Chinput 3.0 via an overly long HOME environment variable. It overwrites the instruction pointer to execute arbitrary shellcode, granting root privileges.
Description
Buffer overflow in Chinput 3.0 allows local users to execute arbitrary code via a long HOME environment variable.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by xperc · clocallinux
https://www.exploit-db.com/exploits/21231
This exploit targets a buffer overflow in Chinput 3.0 via an overly long HOME environment variable. It overwrites the instruction pointer to execute arbitrary shellcode, granting root privileges.
Classification
Working Poc 95%
Attack Type
Lpe
Complexity
Moderate
Reliability
Reliable
Target:
Chinput 3.0
No auth needed
Prerequisites:
Local access to the system · Chinput 3.0 installed with suid root
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026
Full analysis →
References (3)
Core 3
Core References
Exploit, Vendor Advisory mailing-list
x_refsource_bugtraq
http://online.securityfocus.com/archive/1/250815
Vendor Advisory vdb-entry
x_refsource_xf
http://www.iss.net/security_center/static/7911.php
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/3896
Scores
EPSS
0.0117
EPSS Percentile
63.4%
Details
Status
published
Products (1)
chinput/chinput
3.0
Published
Mar 25, 2002
Tracked Since
Feb 18, 2026