CVE-2017-1000405, dubbed "The Huge Dirty Cow," is a Linux Kernel vulnerability (versions 2.6.38-4.14) related to the problematic use of pmd_mkdirty() in the THP implementation, allowing read-only huge pages to be overwritten. With a CVSS score of 7.0 (HIGH), it has a local attack vector with high complexity, potentially leading to high impact on confidentiality, integrity, and availability. While not as severe as the original "Dirty Cow," it enables overwriting critical memory areas like the zero huge page and sealed shmem files. Although not listed in CISA's KEV catalog, exploit code is publicly available on ExploitDB, and it has garnered some community discussion, including on Reddit.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 3.2.87, < 3.3CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 3.10.106, < 3.11CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 3.12.73, < 3.13CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 3.16.42, < 3.16.52CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 3.18.55, < 3.18.86CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.4 InfoSec Media, 0.1 Vendor Blog, and 0.0 Security Researcher mentions.