Lucene search

K
redhatcveRedhat.comRH:CVE-2017-7495
HistoryMay 17, 2017 - 3:10 p.m.

CVE-2017-7495

2017-05-1715:10:39
redhat.com
access.redhat.com
14

0.0004 Low

EPSS

Percentile

5.1%

A vulnerability was found in the Linux kernel where filesystems mounted with data=ordered mode may allow an attacker to read stale data from recently allocated blocks in new files after a system β€˜reset’ by abusing ext4 mechanics of delayed allocation.

Mitigation

Alternative filesystems may be used in place of ext4 in case of sensitive data leak. Alternatively, don't hard reset the system.