LIVE NEWSROOM · --:-- · May 25, 2026
A LIBRARY FOR SECURITY RESEARCHERS

CVE DATABASE  /  CVE-2002-0080

CVE-2002-0080

CVSS 2.1 · LOW

Summary

rsync, when running in daemon mode, does not properly call setgroups before dropping privileges, which could provide supplemental group privileges to local users, who could then read certain files that would otherwise be disallowed.

CVSS 2.0 breakdown

Base score2.1 (LOW)
VectorAV:L/AC:L/Au:N/C:P/I:N/A:N
Attack vectorLOCAL
Attack complexityLOW
ConfidentialityPARTIAL
IntegrityNONE
AvailabilityNONE

Weakness type (CWE)

Affected products

Samba rsyncRedhat linux
Check this CVE live

Use our free CVE Lookup tool for the latest NVD record, or browse the full CISA KEV catalog.

References

Data: NIST NVD. NVD last modified 2026-04-16. Always verify against the vendor advisory before acting.

Scroll to Top