ISOMAN

CVE

CVE-2018-16862

A security flaw was found in the Linux kernel in a way that the cleancache subsystem clears an inode after the final file truncation (removal). The new file created with the same inode may contain leftover pages from cleancache and the old file data instead of the new one.

Severity
MEDIUM
CVSS
5.3
Published
Modified

Linked Releases

References

  1. http://www.securityfocus.com/bid/106009
  2. https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-16862
  3. https://lists.debian.org/debian-lts-announce/2019/03/msg00017.html
  4. https://lists.debian.org/debian-lts-announce/2019/03/msg00034.html
  5. https://lists.debian.org/debian-lts-announce/2019/04/msg00004.html
  6. https://lore.kernel.org/patchwork/patch/1011367/
  7. https://seclists.org/oss-sec/2018/q4/169
  8. https://usn.ubuntu.com/3879-1/
  9. https://usn.ubuntu.com/3879-2/
  10. https://usn.ubuntu.com/4094-1/
  11. https://usn.ubuntu.com/4118-1/
  12. http://www.securityfocus.com/bid/106009
  13. https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-16862
  14. https://lists.debian.org/debian-lts-announce/2019/03/msg00017.html
  15. https://lists.debian.org/debian-lts-announce/2019/03/msg00034.html
  16. https://lists.debian.org/debian-lts-announce/2019/04/msg00004.html
  17. https://lore.kernel.org/patchwork/patch/1011367/
  18. https://seclists.org/oss-sec/2018/q4/169
  19. https://usn.ubuntu.com/3879-1/
  20. https://usn.ubuntu.com/3879-2/