CVE-2019-6617 PUBLISHED CVSS 7.800000190734863 HIGH

An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileged local user with access to SUID (or otherwise privileged) binary could use this flaw to escalate their privileges on the system. Kernel versions 2.6.x, 3.10.x and 4.14.x are believed to be vulnerable.

EPSS 0.79% · 73.7th percentile

Risk Scores

CVSS v3.0
7.800000190734863
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.79%
73.7th percentile

Affected Products

VendorProductVersions
The Linux Foundationkernel2.6.x, 3.10.x, 4.14.x

Timeline

References

…and 17 more

Open in Interactive Console →