A security flaw was found in the Linux kernel in a way that the cleancache subsystem clears an inode after the final file truncation (removal). The new file created with the same inode may contain leftover pages from cleancache and the old file data instead of the new one.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1715-1 | linux-4.9 security update |
Debian DLA |
DLA-1731-1 | linux security update |
Debian DLA |
DLA-1731-2 | linux regression update |
EUVD |
EUVD-2018-8653 | A security flaw was found in the Linux kernel in a way that the cleancache subsystem clears an inode after the final file truncation (removal). The new file created with the same inode may contain leftover pages from cleancache and the old file data instead of the new one. |
Ubuntu USN |
USN-3879-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-3879-2 | Linux kernel (Xenial HWE) vulnerabilities |
Ubuntu USN |
USN-4094-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-4118-1 | Linux kernel (AWS) vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-05T10:32:54.234Z
Reserved: 2018-09-11T00:00:00
Link: CVE-2018-16862
No data.
Status : Modified
Published: 2018-11-26T19:29:00.327
Modified: 2024-11-21T03:53:28.293
Link: CVE-2018-16862
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Ubuntu USN