Back

CVE-2000-0506

The "capabilities" feature in Linux before 2.2.16 allows local users to cause a denial of service or gain privileges by setting the capabilities to prevent a setuid program from dropping privileges, aka the "Linux kernel setuid/setcap vulnerability."

Published: Jun 9, 2000 Modified: Apr 16, 2026

CVSS Metrics

Affected Products (19)

Vendor Product Version
linux linux_kernel 2.0
linux linux_kernel 2.0.30
linux linux_kernel 2.0.33
linux linux_kernel 2.0.34
linux linux_kernel 2.0.35
linux linux_kernel 2.0.36
linux linux_kernel 2.0.37
linux linux_kernel 2.0.38
linux linux_kernel 2.1
linux linux_kernel 2.2.0
linux linux_kernel 2.2.10
linux linux_kernel 2.2.12
linux linux_kernel 2.2.13
linux linux_kernel 2.2.14
linux linux_kernel 2.2.15
linux linux_kernel 2.2.15
linux linux_kernel 2.2.15_pre20
linux linux_kernel 2.2.16
linux linux_kernel 2.2.16

GitHub Security Advisory GHSA-hp2c-p3rm-92wr

The "capabilities" feature in Linux before 2.2.16 allows local users to cause a denial of service...

Risk Scores

CVSS Score 10.0 / 10
EPSS Score 4.37%

Top 11% most likely to be exploited

Threat Score 41.3 / 100

Data Sources

NVD EPSS GitHub