PT-2002-1620 · Linux · Linux Kernel

Published

2002-06-11

·

Updated

2017-12-19

·

CVE-2002-0570

CVSS v2.0

2.1

Low

VectorAV:L/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.4.10
Description The issue concerns the encrypted loop device in the Linux kernel, which fails to authenticate the entity encrypting data. This allows local users to modify encrypted data without needing to know the encryption key.
Recommendations For Linux kernel versions prior to 2.4.10, update to a version that addresses this issue to ensure proper authentication of entities encrypting data.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2002-0570

Affected Products

Linux Kernel