VDB
CNVD-2018-19929
CNVD-2018-19929
PUBLISHED
CVSS 7.800000190734863 HIGH
Linux kernel是一种计算机操作系统内核,以C语言和汇编语言写成,符合POSIX标准,按GNU通用公共许可证发行。 Linux kernel中的create_elf_tables()函数存在整数溢出漏洞。可访问SUID二进制文件的非特权本地用户可利用该漏洞提升其在系统中的权限。
Risk Scores
CVSS v3.0
7.800000190734863
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| The Linux Foundation | kernel | 2.6.x, 3.10.x, 4.14.x |
Timeline
- Sep 6, 2011 CVE Published
- Sep 27, 2018 PoC Published
- Oct 1, 2018 PoC Published
- Jan 27, 2026 PoC Published
- Jan 27, 2026 PoC Published
- Jan 27, 2026 PoC Published
- Jan 27, 2026 PoC Published
- Feb 2, 2026 PoC Published
- Feb 2, 2026 PoC Published
- Feb 2, 2026 PoC Published
- Feb 2, 2026 PoC Published
- Feb 15, 2026 PoC Published
References
- RHSA-2018:3540 vendor-advisory
- https://security.netapp.com/advisory/ntap-20190204-0002/ url
- RHSA-2018:2925 vendor-advisory
- RHSA-2018:3591 vendor-advisory
- 45516 exploit
- USN-3775-1 vendor-advisory
- RHSA-2018:2933 vendor-advisory
- USN-3779-1 vendor-advisory
- RHSA-2018:2748 vendor-advisory
- RHSA-2018:3590 vendor-advisory
- USN-3775-2 vendor-advisory
- RHSA-2018:2763 vendor-advisory
- 105407 vdb
- RHSA-2018:2924 vendor-advisory
- RHSA-2018:3586 vendor-advisory
- RHSA-2018:3643 vendor-advisory
- RHSA-2018:2846 vendor-advisory
- [oss-security] 20180925 Integer overflow in Linux's create_elf_tables() (CVE-2018-14634) mailing-list
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-14634 url
- https://support.f5.com/csp/article/K20934447?utm_source=f5support&%3Butm_medium=RSS url
…and 3 more