# CVE-2002-0851

## Summary

- **CVE ID:** CVE-2002-0851
- **Severity:** UNKNOWN
- **CVSS Score:** 0.03
- **CWE:** N/A
- **Published:** Apr 2, 2003
- **Last Modified:** Mar 16, 2026

## Description

Format string vulnerability in ISDN Point to Point Protocol (PPP) daemon (ipppd) in the ISDN4Linux (i4l) package allows local users to gain root privileges via format strings in the device name command line argument, which is not properly handled in a call to syslog.

## Affected Products

- n/a — n/a (n/a)

## References

- [CNA](http://www.iss.net/security_center/static/9811.php)
- [CNA](http://archives.neohapsis.com/archives/vulnwatch/2002-q3/0068.html)
- [CNA](http://www.securityfocus.com/bid/5437)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.64%
- **EPSS Percentile:** 70.1

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-18._