Critical severity9.8NVD Advisory· Published Aug 15, 2019· Updated Jun 17, 2026
CVE-2018-14671
CVE-2018-14671
Description
In ClickHouse before 18.10.3, unixODBC allowed loading arbitrary shared objects from the file system which led to a Remote Code Execution vulnerability.
Affected products
3cpe:2.3:a:clickhouse:clickhouse:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:clickhouse:clickhouse:*:*:*:*:*:*:*:*range: <18.10.3
- (no CPE)range: <18.10.3
- (no CPE)range: All versions prior to version 18.10.3.
Patches
Vulnerability mechanics
References
1- clickhouse.yandex/docs/en/security_changelog/nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.