CVE-2002-0973
Last modified
CVE-2002-0973 is a vulnerability of currently unknown severity. Integer signedness error in several system calls for FreeBSD 4.6.1 RELEASE-p10 and earlier may allow attackers to access sensitive kernel memory via large negative values to the (1) accept, (2) getsockname, and (3) getpeername system calls, and the (4) vesa FBIO_GETPALETTE ioctl.. EPSS estimates a 0.35% chance of exploitation in the next 30 days.
Description
Integer signedness error in several system calls for FreeBSD 4.6.1 RELEASE-p10 and earlier may allow attackers to access sensitive kernel memory via large negative values to the (1) accept, (2) getsockname, and (3) getpeername system calls, and the (4) vesa FBIO_GETPALETTE ioctl.
Metrics
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Freebsd | Freebsd | 4.0 | — |
| Freebsd | Freebsd | 4.1 | — |
| Freebsd | Freebsd | 4.1.1 | — |
| Freebsd | Freebsd | 4.2 | — |
| Freebsd | Freebsd | 4.3 | — |
| Freebsd | Freebsd | 4.4 | — |
| Freebsd | Freebsd | 4.5 | — |
| Freebsd | Freebsd | 4.6 | — |
| Freebsd | Freebsd | 4.6.1 | Release P10 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2002-0973?
How severe is CVE-2002-0973?
How do I fix CVE-2002-0973?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2002
- CVE-2002-0967Buffer overflow in eDonkey 2000 35.16.60 and earlier allows …
- CVE-2002-0968Buffer overflow in AnalogX SimpleServer:WWW 1.16 and earlier…
- CVE-2002-0969Buffer overflow in MySQL daemon (mysqld) before 3.23.50, and…7.8
- CVE-2002-0970The SSL capability for Konqueror in KDE 3.0.2 and earlier do…
- CVE-2002-0971Vulnerability in VNC, TightVNC, and TridiaVNC allows local u…
- CVE-2002-0972Buffer overflows in PostgreSQL 7.2 allow attackers to cause …
- CVE-2002-0974Help and Support Center for Windows XP allows remote attacke…
- CVE-2002-0975Buffer overflow in Microsoft DirectX Files Viewer ActiveX co…
- CVE-2002-0976Internet Explorer 4.0 and later allows remote attackers to r…
- CVE-2002-0977Buffer overflow in Microsoft File Transfer Manager (FTM) Act…
- CVE-2002-0978Microsoft File Transfer Manager (FTM) ActiveX control before…
- CVE-2002-0979The Java logging feature for the Java Virtual Machine in Int…
Are you affected by CVE-2002-0973?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
