CVE-2018-14634: Linux Kernel Integer Overflow Vulnerability
High severity, CVSS 7.8. Actively exploited: in CISA KEV since 2026-01-26. EPSS: 14.7% chance of exploitation in the next 30 days.
An integer overflow flaw was found in the Linux kernel's create_elf_tables() function. An unprivileged local user with access to SUID (or otherwise privileged) binary could use this flaw to escalate their privileges on the system. Kernel versions 2.6.x, 3.10.x and 4.14.x are believed to be vulnerable.
Affected products
- Canonical Ubuntu Linux: version 12.04 only; version 14.04 only
- F5 BIG-IP Access Policy Manager: from 11.2.1, before 11.6.4 (fixed in 11.6.4); from 12.1.0, before 12.1.5 (fixed in 12.1.5); from 13.0.0, before 13.1.1.5 (fixed in 13.1.1.5); from 14.0.0, before 14.0.1.1 (fixed in 14.0.1.1); from 14.1.0, before 14.1.0.6 (fixed in 14.1.0.6)
- F5 BIG-IP Advanced Firewall Manager: from 11.2.1, before 11.6.4 (fixed in 11.6.4); from 12.1.0, before 12.1.5 (fixed in 12.1.5); from 13.0.0, before 13.1.1.5 (fixed in 13.1.1.5); from 14.0.0, before 14.0.1.1 (fixed in 14.0.1.1); from 14.1.0, before 14.1.0.6 (fixed in 14.1.0.6)
- F5 BIG-IP Analytics: from 11.2.1, before 11.6.4 (fixed in 11.6.4); from 12.1.0, before 12.1.5 (fixed in 12.1.5); from 13.0.0, before 13.1.1.5 (fixed in 13.1.1.5); from 14.0.0, before 14.0.1.1 (fixed in 14.0.1.1); from 14.1.0, before 14.1.0.6 (fixed in 14.1.0.6)
- F5 BIG-IP Application Acceleration Manager: from 11.2.1, before 11.6.4 (fixed in 11.6.4); from 12.1.0, before 12.1.5 (fixed in 12.1.5); from 13.0.0, before 13.1.1.5 (fixed in 13.1.1.5); from 14.0.0, before 14.0.1.1 (fixed in 14.0.1.1); from 14.1.0, before 14.1.0.6 (fixed in 14.1.0.6)
- F5 BIG-IP Application Security Manager: from 11.2.1, before 11.6.4 (fixed in 11.6.4); from 12.1.0, before 12.1.5 (fixed in 12.1.5); from 13.0.0, before 13.1.1.5 (fixed in 13.1.1.5); from 14.0.0, before 14.0.1.1 (fixed in 14.0.1.1); from 14.1.0, before 14.1.0.6 (fixed in 14.1.0.6)
- F5 BIG-IP Domain Name System: from 11.2.1, before 11.6.4 (fixed in 11.6.4); from 12.1.0, before 12.1.5 (fixed in 12.1.5); from 13.0.0, before 13.1.1.5 (fixed in 13.1.1.5); from 14.0.0, before 14.0.1.1 (fixed in 14.0.1.1); from 14.1.0, before 14.1.0.6 (fixed in 14.1.0.6)
- F5 BIG-IP Edge Gateway: from 11.2.1, before 11.6.4 (fixed in 11.6.4); from 12.1.0, before 12.1.5 (fixed in 12.1.5); from 13.0.0, before 13.1.1.5 (fixed in 13.1.1.5); from 14.0.0, before 14.0.1.1 (fixed in 14.0.1.1); from 14.1.0, before 14.1.0.6 (fixed in 14.1.0.6)
- F5 BIG-IP Fraud Protection Service: from 11.2.1, before 11.6.4 (fixed in 11.6.4); from 12.1.0, before 12.1.5 (fixed in 12.1.5); from 13.0.0, before 13.1.1.5 (fixed in 13.1.1.5); from 14.0.0, before 14.0.1.1 (fixed in 14.0.1.1); from 14.1.0, before 14.1.0.6 (fixed in 14.1.0.6)
- F5 BIG-IP Global Traffic Manager: from 11.2.1, before 11.6.4 (fixed in 11.6.4); from 12.1.0, before 12.1.5 (fixed in 12.1.5); from 13.0.0, before 13.1.1.5 (fixed in 13.1.1.5); from 14.0.0, before 14.0.1.1 (fixed in 14.0.1.1); from 14.1.0, before 14.1.0.6 (fixed in 14.1.0.6)
- F5 BIG-IP Link Controller: from 11.2.1, before 11.6.4 (fixed in 11.6.4); from 12.1.0, before 12.1.5 (fixed in 12.1.5); from 13.0.0, before 13.1.1.5 (fixed in 13.1.1.5); from 14.0.0, before 14.0.1.1 (fixed in 14.0.1.1); from 14.1.0, before 14.1.0.6 (fixed in 14.1.0.6)
- F5 BIG-IP Local Traffic Manager: from 11.2.1, before 11.6.4 (fixed in 11.6.4); from 12.1.0, before 12.1.5 (fixed in 12.1.5); from 13.0.0, before 13.1.1.5 (fixed in 13.1.1.5); from 14.0.0, before 14.0.1.1 (fixed in 14.0.1.1); from 14.1.0, before 14.1.0.6 (fixed in 14.1.0.6)
- F5 BIG-IP Policy Enforcement Manager: from 11.2.1, before 11.6.4 (fixed in 11.6.4); from 12.1.0, before 12.1.5 (fixed in 12.1.5); from 13.0.0, before 13.1.1.5 (fixed in 13.1.1.5); from 14.0.0, before 14.0.1.1 (fixed in 14.0.1.1); from 14.1.0, before 14.1.0.6 (fixed in 14.1.0.6)
- F5 BIG-IP Webaccelerator: from 11.2.1, before 11.6.4 (fixed in 11.6.4); from 12.1.0, before 12.1.5 (fixed in 12.1.5); from 13.0.0, before 13.1.1.5 (fixed in 13.1.1.5); from 14.0.0, before 14.0.1.1 (fixed in 14.0.1.1); from 14.1.0, before 14.1.0.6 (fixed in 14.1.0.6)
- F5 BIG-IQ Centralized Management: from 5.0.0, up to and including 5.4.0; from 6.0.0, up to and including 6.0.1; from 7.0.0, up to and including 7.1.0; version 4.6.0 only
- F5 BIG-IQ Cloud And Orchestration: version 1.0.0 only
- F5 Enterprise Manager: version 3.1.1 only
- F5 Iworkflow: from 2.2.0, up to and including 2.3.0
- F5 Traffix Signaling Delivery Controller: from 5.0.0, up to and including 5.1.0; version 4.4.0 only
- Linux Linux Kernel: from 2.6.0, up to and including 2.6.39.4; from 3.10, up to and including 3.10.102; from 4.14, up to and including 4.14.54
- Netapp Snapprotect: affected versions not specified
- Palo Alto Networks PAN-OS: from 7.1.0, before 7.1.23 (fixed in 7.1.23); from 8.0.0, before 8.0.16 (fixed in 8.0.16); from 8.1.0, before 8.1.7 (fixed in 8.1.7)
- Red Hat Enterprise Linux Desktop: version 6.0 only; version 7.0 only
- Red Hat Enterprise Linux Server: version 6.0 only; version 7.0 only
- Red Hat Enterprise Linux Server Aus: version 6.5 only; version 6.6 only; version 7.6 only
- and 3 more
Published 2018-09-25. Last modified 2026-06-17.