cbcvebase.
CVE-2018-14634
published 2018-09-25

CVE-2018-14634: An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileged local user with access to SUID (or otherwise privileged)…

high7.8CVSS 3.0
AVLACLPRLUINSUCHIHAH
KEVEXPLOIT
CISA Known Exploited Vulnerabilitydue 2026-02-16
An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileged local user with access to SUID (or otherwise privileged) binary could use this flaw to escalate their privileges on the system. Kernel versions 2.6.x, 3.10.x and 4.14.x are believed to be vulnerable.

Affected

104 ranges· showing 25
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
debianlinux< linux 4.12.6-1 (bookworm)linux 4.12.6-1 (bookworm)
f5big-ip_access_policy_manager>= 11.2.1 < 11.6.411.6.4
f5big-ip_access_policy_manager>= 12.1.0 < 12.1.512.1.5
f5big-ip_access_policy_manager>= 13.0.0 < 13.1.1.513.1.1.5
f5big-ip_access_policy_manager>= 14.0.0 < 14.0.1.114.0.1.1
f5big-ip_access_policy_manager>= 14.1.0 < 14.1.0.614.1.0.6
f5big-ip_advanced_firewall_manager>= 11.2.1 < 11.6.411.6.4
f5big-ip_advanced_firewall_manager>= 12.1.0 < 12.1.512.1.5
f5big-ip_advanced_firewall_manager>= 13.0.0 < 13.1.1.513.1.1.5
f5big-ip_advanced_firewall_manager>= 14.0.0 < 14.0.1.114.0.1.1
f5big-ip_advanced_firewall_manager>= 14.1.0 < 14.1.0.614.1.0.6
f5big-ip_analytics>= 11.2.1 < 11.6.411.6.4
f5big-ip_analytics>= 12.1.0 < 12.1.512.1.5
f5big-ip_analytics>= 13.0.0 < 13.1.1.513.1.1.5
f5big-ip_analytics>= 14.0.0 < 14.0.1.114.0.1.1
f5big-ip_analytics>= 14.1.0 < 14.1.0.614.1.0.6
f5big-ip_application_acceleration_manager>= 11.2.1 < 11.6.411.6.4
f5big-ip_application_acceleration_manager>= 12.1.0 < 12.1.512.1.5
f5big-ip_application_acceleration_manager>= 13.0.0 < 13.1.1.513.1.1.5
f5big-ip_application_acceleration_manager>= 14.0.0 < 14.0.1.114.0.1.1
f5big-ip_application_acceleration_manager>= 14.1.0 < 14.1.0.614.1.0.6
f5big-ip_application_security_manager>= 11.2.1 < 11.6.411.6.4
f5big-ip_application_security_manager>= 12.1.0 < 12.1.512.1.5

CVSS provenance

nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vulncheck7.8HIGH
cisa7.8HIGH