Unrated severityNVD Advisory· Published Aug 12, 2002· Updated Apr 16, 2026
CVE-2002-0761
CVE-2002-0761
Description
bzip2 before 1.0.2 in FreeBSD 4.5 and earlier, OpenLinux 3.1 and 3.1.1, and possibly systems, uses the permissions of symbolic links instead of the actual files when creating an archive, which could cause the files to be extracted with less restrictive permissions than intended.
Affected products
10cpe:2.3:a:bzip:bzip2:0.9.0:*:*:*:*:*:*:*+ 9 more
- cpe:2.3:a:bzip:bzip2:0.9.0:*:*:*:*:*:*:*
- cpe:2.3:a:bzip:bzip2:0.9.0a:*:*:*:*:*:*:*
- cpe:2.3:a:bzip:bzip2:0.9.0b:*:*:*:*:*:*:*
- cpe:2.3:a:bzip:bzip2:0.9.0c:*:*:*:*:*:*:*
- cpe:2.3:a:bzip:bzip2:0.9.5a:*:*:*:*:*:*:*
- cpe:2.3:a:bzip:bzip2:0.9.5b:*:*:*:*:*:*:*
- cpe:2.3:a:bzip:bzip2:0.9.5c:*:*:*:*:*:*:*
- cpe:2.3:a:bzip:bzip2:0.9.5d:*:*:*:*:*:*:*
- cpe:2.3:a:bzip:bzip2:1.0:*:*:*:*:*:*:*
- cpe:2.3:a:bzip:bzip2:1.0.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:25.bzip2.ascnvdPatchVendor Advisory
- www.iss.net/security_center/static/9128.phpnvdPatchVendor Advisory
- www.securityfocus.com/bid/4776nvdPatchVendor Advisory
- ftp.caldera.com/pub/security/OpenLinux/CSSA-2002-039.0.txtnvd
News mentions
0No linked articles in our index yet.