imPC@ndo IT

Tracker / CVE-2018-16862

CVE-2018-16862

Medium 5.3

A security flaw was found in the Linux kernel in a way that the cleancache subsystem clears an inode after the final file truncation (removal). The new file created with the same inode may contain leftover pages from cleancache and the old file data instead of the new one.

Affected products and versions

canonical ubuntu_linux
debian debian_linux
linux linux_kernel · … → 4.14
redhat enterprise_linux

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References