CVE-2002-0755

Kerberos 5 su - Privilege Escalation

Title source: llm
STIX 2.1

Description

Kerberos 5 su (k5su) in FreeBSD 4.5 and earlier does not verify that a user is a member of the wheel group before granting superuser privileges, which could allow unauthorized users to execute commands as root.

References (4)

Core 4
Core References
Patch, Vendor Advisory vendor-advisory x_refsource_freebsd
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:24.k5su.asc
Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/4777
Patch, Vendor Advisory vdb-entry x_refsource_xf
http://www.iss.net/security_center/static/9125.php
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/4893

Scores

EPSS 0.0007
EPSS Percentile 20.7%

Details

Status published
Products (2)
freebsd/freebsd 4.4 release
freebsd/freebsd 4.5 release
Published Aug 12, 2002
Tracked Since Feb 18, 2026