CVE-2002-0762

SuSE Linux 8.0 - Unauthenticated File Corruption and Privilege Escalation via Filesize Limit Manipulation

Title source: llm
STIX 2.1

Description

shadow package in SuSE 8.0 allows local users to destroy the /etc/passwd and /etc/shadow files or assign extra group privileges to some users by changing filesize limits before calling programs that modify the files.

References (3)

Core 3
Core References
Patch, Vendor Advisory vdb-entry x_refsource_xf
http://www.iss.net/security_center/static/9102.php
Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/4757
Vendor Advisory vendor-advisory x_refsource_suse
http://www.novell.com/linux/security/advisories/2002_17_shadow.html

Scores

EPSS 0.0015
EPSS Percentile 35.3%

Details

Status published
Products (1)
suse/suse_linux 8.0
Published Aug 12, 2002
Tracked Since Feb 18, 2026