CVE-2008-0600

The vmsplice_to_pipe function in Linux kernel 2.6.17 through 2.6.24.1 does not validate a certain userspace pointer before dereference, which allows local users to gain root privileges via crafted arguments in a vmsplice system call, a different vulnerability than CVE-2008-0009 and CVE-2008-0010.
Code Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.2 UNKNOWN
LOCAL
LOW
AV:L/AC:L/Au:N/C:C/I:C/A:C
redhatCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 63%
VendorProductVersion
linuxlinux_kernel
2.6.17
linuxlinux_kernel
2.6.17:rc1
linuxlinux_kernel
2.6.17:rc2
linuxlinux_kernel
2.6.17:rc3
linuxlinux_kernel
2.6.17:rc4
linuxlinux_kernel
2.6.17:rc5
linuxlinux_kernel
2.6.17:rc6
linuxlinux_kernel
2.6.17.1
linuxlinux_kernel
2.6.17.2
linuxlinux_kernel
2.6.17.3
linuxlinux_kernel
2.6.17.4
linuxlinux_kernel
2.6.17.5
linuxlinux_kernel
2.6.17.6
linuxlinux_kernel
2.6.17.7
linuxlinux_kernel
2.6.17.8
linuxlinux_kernel
2.6.17.9
linuxlinux_kernel
2.6.17.10
linuxlinux_kernel
2.6.17.11
linuxlinux_kernel
2.6.17.12
linuxlinux_kernel
2.6.17.13
linuxlinux_kernel
2.6.17.14
linuxlinux_kernel
2.6.18
linuxlinux_kernel
2.6.18:rc1
linuxlinux_kernel
2.6.18:rc2
linuxlinux_kernel
2.6.18:rc3
linuxlinux_kernel
2.6.18:rc4
linuxlinux_kernel
2.6.18:rc5
linuxlinux_kernel
2.6.18:rc6
linuxlinux_kernel
2.6.18:rc7
linuxlinux_kernel
2.6.18.1
linuxlinux_kernel
2.6.18.2
linuxlinux_kernel
2.6.18.3
linuxlinux_kernel
2.6.18.4
linuxlinux_kernel
2.6.18.5
linuxlinux_kernel
2.6.18.6
linuxlinux_kernel
2.6.18.7
linuxlinux_kernel
2.6.18.8
linuxlinux_kernel
2.6.19
linuxlinux_kernel
2.6.19:rc1
linuxlinux_kernel
2.6.19:rc2
linuxlinux_kernel
2.6.19:rc3
linuxlinux_kernel
2.6.19:rc4
linuxlinux_kernel
2.6.19.1
linuxlinux_kernel
2.6.19.2
linuxlinux_kernel
2.6.19.3
linuxlinux_kernel
2.6.20
linuxlinux_kernel
2.6.20:rc2
linuxlinux_kernel
2.6.20.1
linuxlinux_kernel
2.6.20.2
linuxlinux_kernel
2.6.20.3
linuxlinux_kernel
2.6.20.4
linuxlinux_kernel
2.6.20.5
linuxlinux_kernel
2.6.20.6
linuxlinux_kernel
2.6.20.7
linuxlinux_kernel
2.6.20.8
linuxlinux_kernel
2.6.20.9
linuxlinux_kernel
2.6.20.10
linuxlinux_kernel
2.6.20.11
linuxlinux_kernel
2.6.20.12
linuxlinux_kernel
2.6.20.13
linuxlinux_kernel
2.6.20.14
linuxlinux_kernel
2.6.20.15
linuxlinux_kernel
2.6.21
linuxlinux_kernel
2.6.21:git1
linuxlinux_kernel
2.6.21:git2
linuxlinux_kernel
2.6.21:git3
linuxlinux_kernel
2.6.21:git4
linuxlinux_kernel
2.6.21:git5
linuxlinux_kernel
2.6.21:git6
linuxlinux_kernel
2.6.21:git7
linuxlinux_kernel
2.6.21:rc3
linuxlinux_kernel
2.6.21:rc4
linuxlinux_kernel
2.6.21:rc5
linuxlinux_kernel
2.6.21:rc6
linuxlinux_kernel
2.6.21:rc7
linuxlinux_kernel
2.6.21.1
linuxlinux_kernel
2.6.21.2
linuxlinux_kernel
2.6.21.3
linuxlinux_kernel
2.6.21.4
linuxlinux_kernel
2.6.22
linuxlinux_kernel
2.6.22:rc6
linuxlinux_kernel
2.6.22.1
linuxlinux_kernel
2.6.22.3
linuxlinux_kernel
2.6.22.4
linuxlinux_kernel
2.6.22.5
linuxlinux_kernel
2.6.22.6
linuxlinux_kernel
2.6.22.7
linuxlinux_kernel
2.6.22.16
linuxlinux_kernel
2.6.23
linuxlinux_kernel
2.6.23:rc1
linuxlinux_kernel
2.6.23:rc2
linuxlinux_kernel
2.6.23.1
linuxlinux_kernel
2.6.23.2
linuxlinux_kernel
2.6.23.3
linuxlinux_kernel
2.6.23.4
linuxlinux_kernel
2.6.23.5
linuxlinux_kernel
2.6.23.6
linuxlinux_kernel
2.6.23.7
linuxlinux_kernel
2.6.23.9
linuxlinux_kernel
2.6.23.14
linuxlinux_kernel
2.6.24
linuxlinux_kernel
2.6.24:rc2
linuxlinux_kernel
2.6.24:rc3
linuxlinux_kernel
2.6.24.1
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
linux
gutsy
dne
feisty
dne
edgy
dne
dapper
dne
linux-source-2.6.15
gutsy
dne
feisty
dne
edgy
dne
dapper
not-affected
linux-source-2.6.17
gutsy
dne
feisty
dne
edgy
Fixed 2.6.17.1-12.44
released
dapper
dne
linux-source-2.6.20
gutsy
dne
feisty
Fixed 2.6.20-16.35
released
edgy
dne
dapper
dne
linux-source-2.6.22
gutsy
Fixed 2.6.22-14.52
released
feisty
dne
edgy
dne
dapper
dne
References