An issue was discovered in the Linux kernel before 4.8. Incorrect access checking in overlayfs mounts could be used by local attackers to modify or truncate files in the underlying filesystem.
References
Link | Resource |
---|---|
http://lists.opensuse.org/opensuse-security-announce/2018-10/msg00033.html | Mailing List Third Party Advisory |
http://packetstormsecurity.com/files/153702/Slackware-Security-Advisory-Slackware-14.2-kernel-Updates.html | |
http://www.securityfocus.com/bid/105394 | Third Party Advisory VDB Entry |
https://bugzilla.suse.com/show_bug.cgi?id=1106512 | Issue Tracking Patch Third Party Advisory |
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=c0ca3d70e8d3cf81e2255a217f7ca402f5ed0862 | Patch Third Party Advisory |
https://seclists.org/bugtraq/2019/Jul/33 | |
https://security.netapp.com/advisory/ntap-20190204-0001/ | Patch Third Party Advisory |
https://support.f5.com/csp/article/K22691834 | Third Party Advisory |
Configurations
History
No history.
Information
Published : 2018-09-21 16:29
Updated : 2019-10-03 00:03
NVD link : CVE-2018-16597
Mitre link : CVE-2018-16597
CVE.ORG link : CVE-2018-16597
JSON object : View
Products Affected
opensuse
- leap
netapp
- element_software
- active_iq_performance_analytics_services
linux
- linux_kernel
CWE
CWE-863
Incorrect Authorization