# CVE-2002-0820

## Summary

- **CVE ID:** CVE-2002-0820
- **Severity:** UNKNOWN
- **CVSS Score:** 0
- **CWE:** N/A
- **Published:** Aug 2, 2002
- **Last Modified:** Mar 16, 2026

## Description

FreeBSD kernel 4.6 and earlier closes the file descriptors 0, 1, and 2 after they have already been assigned to /dev/null when the descriptors reference procfs or linprocfs, which could allow local users to reuse the file descriptors in a setuid or setgid program to modify critical data and gain privileges.

## Affected Products

- n/a — n/a (n/a)

## References

- [CNA](http://groups.google.com/groups?hl=en&lr=&ie=UTF-8&oe=UTF-8&frame=right&th=d429cd2ef1d3a2b7&seekm=ai6c0q%242289%241%40FreeBSD.csie.NCTU.edu.tw#link16)
- [CNA](ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:23.stdio.asc)
- [CNA](http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0047.html)
- [CNA](http://marc.info/?l=bugtraq&m=102979180524452&w=2)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.05%
- **EPSS Percentile:** 14.6

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-18._