Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2018-14634

An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileged local user with access to SUID (or otherwise privileged) binary could use this flaw to escalate their privileges on the system. Kernel versions 2.6.x, 3.10.x and 4.14.x are believed to be vulnerable.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.195
EPSS Ranking 95.3%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 7.2
Proposed Action
Linux Kernel contains an integer overflow vulnerability in the create_elf_tables() function which could allow an unprivileged local user with access to SUID (or otherwise privileged) binary to escalate their privileges on the system.
Ransomware Campaign
Unknown
References
Products affected by CVE-2018-14634


Contact Us

Shodan ® - All rights reserved