CVE-2002-0570: Linux Kernel
Low severity, CVSS 2.1. EPSS: 0.4% chance of exploitation in the next 30 days.
The encrypted loop device in Linux kernel 2.4.10 and earlier does not authenticate the entity that is encrypting data, which allows local users to modify encrypted data without knowing the key.
Affected products
- Linux Linux Kernel: version 2.2.0 only; version 2.2.1 only; version 2.2.2 only; version 2.2.3 only; version 2.2.4 only; version 2.2.5 only; …
Published 2002-07-03. Last modified 2026-06-16.