# CVE-2002-0499

## Summary

- **CVE ID:** CVE-2002-0499
- **Severity:** UNKNOWN
- **CVSS Score:** 0.02
- **CWE:** N/A
- **Published:** Jun 11, 2002
- **Last Modified:** Mar 16, 2026

## Description

The d_path function in Linux kernel 2.2.20 and earlier, and 2.4.18 and earlier, truncates long pathnames without generating an error, which could allow local users to force programs to perform inappropriate operations on the wrong directories.

## Affected Products

- n/a — n/a (n/a)

## References

- [CNA](http://archives.neohapsis.com/archives/vulnwatch/2002-q1/0074.html)
- [CNA](http://www.iss.net/security_center/static/8634.php)
- [CNA](http://www.securityfocus.com/bid/4367)
- [CNA](http://www.cs.helsinki.fi/linux/linux-kernel/2002-13/0054.html)
- [CNA](http://www.securityfocus.com/archive/1/264117)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.46%
- **EPSS Percentile:** 63.7

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-17._