CVE-2002-0570
Summary
| CVE | CVE-2002-0570 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2002-07-03 04:00:00 UTC |
| Updated | 2025-04-03 01:03:51 UTC |
| Description | The encrypted loop device in Linux kernel 2.4.10 and earlier does not authenticate the entity that is encrypting data, which allows local users to modify encrypted data without knowing the key. |
Risk And Classification
Primary CVSS: v2.0 2.1 from [email protected]
AV:L/AC:L/Au:N/C:N/I:P/A:N
Problem Types: NVD-CWE-Other | n/a
CVSS v2.0 Breakdown
Access Vector
LocalAccess Complexity
LowAuthentication
NoneConfidentiality
NoneIntegrity
PartialAvailability
NoneAV:L/AC:L/Au:N/C:N/I:P/A:N
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Linux | Linux Kernel | 2.2.0 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.2.1 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.2.10 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.2.11 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.2.12 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.2.13 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.2.14 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.2.15 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.2.16 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.2.17 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.2.18 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.2.19 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.2.2 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.2.20 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.2.3 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.2.4 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.2.5 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.2.6 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.2.7 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.2.8 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.2.9 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.4.0 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.4.1 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.4.10 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.4.11 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.4.12 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.4.13 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.4.14 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.4.15 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.4.16 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.4.17 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.4.2 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.4.3 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.4.4 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.4.5 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.4.6 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.4.7 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.4.8 | All | All | All |
| Operating System | Linux | Linux Kernel | 2.4.9 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Linux Encrypted Loop Filesystem Replay Attack Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | Vendor Advisory |
| IBM X-Force Exchange | af854a3a-2127-422b-91ae-364da2661108 | exchange.xforce.ibmcloud.com | |
| Neohapsis Archives - Bugtraq - Vulnerability in encrypted loop device for linux - From [email protected] | af854a3a-2127-422b-91ae-364da2661108 | archives.neohapsis.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.