vulnerability
Ubuntu: (Multiple Advisories) (CVE-2018-14634): Linux kernel vulnerabilities
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 7 | (AV:L/AC:L/Au:N/C:C/I:C/A:C) | Sep 26, 2018 | Oct 4, 2018 | Mar 27, 2026 |
Severity
7
CVSS
(AV:L/AC:L/Au:N/C:C/I:C/A:C)
Published
Sep 26, 2018
Added
Oct 4, 2018
Modified
Mar 27, 2026
Description
An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileged local user with access to SUID (or otherwise privileged) binary could use this flaw to escalate their privileges on the system. Kernel versions 2.6.x, 3.10.x and 4.14.x are believed to be vulnerable.
Solutions
ubuntu-upgrade-linux-image-3-13-0-160-genericubuntu-upgrade-linux-image-3-13-0-160-generic-lpaeubuntu-upgrade-linux-image-3-13-0-160-lowlatencyubuntu-upgrade-linux-image-3-13-0-160-powerpc-e500ubuntu-upgrade-linux-image-3-13-0-160-powerpc-e500mcubuntu-upgrade-linux-image-3-13-0-160-powerpc-smpubuntu-upgrade-linux-image-3-13-0-160-powerpc64-embubuntu-upgrade-linux-image-3-13-0-160-powerpc64-smpubuntu-upgrade-linux-image-3-2-0-136-genericubuntu-upgrade-linux-image-3-2-0-136-generic-paeubuntu-upgrade-linux-image-3-2-0-136-highbankubuntu-upgrade-linux-image-3-2-0-136-omapubuntu-upgrade-linux-image-3-2-0-136-powerpc-smpubuntu-upgrade-linux-image-3-2-0-136-powerpc64-smpubuntu-upgrade-linux-image-3-2-0-136-virtualubuntu-upgrade-linux-image-genericubuntu-upgrade-linux-image-generic-lpaeubuntu-upgrade-linux-image-generic-lpae-lts-trustyubuntu-upgrade-linux-image-generic-lts-trustyubuntu-upgrade-linux-image-generic-paeubuntu-upgrade-linux-image-highbankubuntu-upgrade-linux-image-lowlatencyubuntu-upgrade-linux-image-omapubuntu-upgrade-linux-image-powerpcubuntu-upgrade-linux-image-powerpc-e500ubuntu-upgrade-linux-image-powerpc-e500mcubuntu-upgrade-linux-image-powerpc-smpubuntu-upgrade-linux-image-powerpc64-embubuntu-upgrade-linux-image-powerpc64-smp
References
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.