Vulnerability Description
LogWatch 2.5 allows local users to gain root privileges via a symlink attack, a different vulnerability than CVE-2002-0162.
CVSS Score
7.2
HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Logwatch | Logwatch | 2.5 |
References
- http://list.kaybee.org/archives/logwatch-announce/2002-March/000003.html
- http://marc.info/?l=bugtraq&m=101787227513000&w=2
- http://www.iss.net/security_center/static/8652.php
- http://list.kaybee.org/archives/logwatch-announce/2002-March/000003.html
- http://marc.info/?l=bugtraq&m=101787227513000&w=2
- http://www.iss.net/security_center/static/8652.php
FAQ
What is CVE-2002-0165?
CVE-2002-0165 is a vulnerability with a CVSS score of 7.2 (HIGH). LogWatch 2.5 allows local users to gain root privileges via a symlink attack, a different vulnerability than CVE-2002-0162.
How severe is CVE-2002-0165?
CVE-2002-0165 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2002-0165?
Check the references section above for vendor advisories and patch information. Affected products include: Logwatch Logwatch.