← Back

CVE-2002-2092

nvd nist
Published: Dec 31, 2002Modified: Apr 16, 2026

JSON object

Loading...
3.7
Vector
AV:L/AC:H/Au:N/C:P/I:P/A:P
Exploitability: 1.9 / Impact: 6.4
Source: NVD

Description

Race condition in exec in OpenBSD 4.0 and earlier, NetBSD 1.5.2 and earlier, and FreeBSD 4.4 and earlier allows local users to gain privileges by attaching a debugger to a process before the kernel has determined that the process is setuid or setgid.

Affected (52)

1 product
Freebsd
1 product
Netbsd
1 product
Openbsd
Configuration A
52 vulnerable
Vulnerable SoftwareAffected Versions
Freebsd
Version 2.0
Version 2.1.0
Version 2.2.2
Version 2.2.3
Version 2.2.4
Version 2.2.5
Version 2.2.6
Version 2.2.8
Version 2.2
Version 3.0
Version 3.1
Version 3.2
Version 3.3
Version 3.4
Version 3.5.1
Version 3.5
Version 4.0
Version 4.1.1
Version 4.1.1 release
Version 4.1.1 stable
Version 4.1
Version 4.2
Version 4.2 stable
Version 4.3
Version 4.3 release
Version 4.3 releng
Version 4.3 stable
Version 4.4
Version 4.4 releng
Version 4.4 stable
Netbsd
Version 1.3.1
Version 1.3.2
Version 1.3.3
Version 1.3
Version 1.4.1
Version 1.4.2
Version 1.4.3
Version 1.4
Version 1.5.1
Version 1.5.2
Version 1.5
Openbsd
Version 2.0
Version 2.1
Version 2.2
Version 2.3
Version 2.4
Version 2.5
Version 2.6
Version 2.7
Version 2.8
Version 2.9
Version 3.0

References (10)

ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:08.exec.asc (unsafe URL)
Source: cve@mitre.org
Vendor Advisory
ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2002-001.txt.asc (unsafe URL)
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Patch
ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:08.exec.asc (unsafe URL)
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2002-001.txt.asc (unsafe URL)
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.