UBUNTU-CVE-2018-14634
Dashboard / Vulnerabilities / UBUNTU-CVE-2018-14634
UBUNTU-CVE-2018-14634
Summary:
Details: An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileged local user with access to SUID (or otherwise privileged) binary could use this flaw to escalate their privileges on the system. Kernel versions 2.6.x, 3.10.x and 4.14.x are believed to be vulnerable.
References: https://ubuntu.com/security/CVE-2018-14634, https://www.qualys.com/2018/09/25/cve-2018-14634/mutagen-astronomy-integer-overflow-linux-create_elf_tables-cve-2018-14634.txt, https://ubuntu.com/security/notices/USN-3775-1, https://ubuntu.com/security/notices/USN-3775-2, https://ubuntu.com/security/notices/USN-3779-1, https://www.cve.org/CVERecord?id=CVE-2018-14634, https://www.cisa.gov/known-exploited-vulnerabilities-catalog
Affected packages
Package
Name: linux
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
