Back

CVE-2002-0851

Format string vulnerability in ISDN Point to Point Protocol (PPP) daemon (ipppd) in the ISDN4Linux (i4l) package allows local users to gain root privileges via format strings in the device name command line argument, which is not properly handled in a call to syslog.

Published: Sep 5, 2002 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
isdn4linux isdn4linux 3.1_pre1

GitHub Security Advisory GHSA-vx52-4cmh-xrv5

Format string vulnerability in ISDN Point to Point Protocol (PPP) daemon (ipppd) in the...

Risk Scores

CVSS Score 7.2 / 10
EPSS Score 1.05%

Top 39% most likely to be exploited

Threat Score 29.1 / 100

Data Sources

NVD EPSS GitHub