CVE-2002-0572

FreeBSD <4.5 - Local Privilege Escalation

Title source: llm
STIX 2.1

Description

FreeBSD 4.5 and earlier, and possibly other BSD-based operating systems, allows local users to write to or read from restricted files by closing the file descriptors 0 (standard input), 1 (standard output), or 2 (standard error), which may then be reused by a called setuid process that intended to perform I/O on normal files.

Exploits (1)

exploitdb WORKING POC VERIFIED
by phased · clocalbsd
https://www.exploit-db.com/exploits/21407

Scores

EPSS 0.0028
EPSS Percentile 51.0%

Details

Status published
Products (14)
freebsd/freebsd 4.4 releng
freebsd/freebsd 4.5 release (2 CPE variants)
openbsd/openbsd 2.0
openbsd/openbsd 2.1
openbsd/openbsd 2.2
openbsd/openbsd 2.3
sun/solaris 2.5.1
sun/solaris 2.6
sun/solaris 7.0
sun/solaris 8.0
... and 4 more
Published Jul 03, 2002
Tracked Since Feb 18, 2026