CVE-2017-7495

Metadata

low
2.1
linux, linux-ti-omap4, linux-linaro-omap, linux-linaro-shared, linux-linaro-vexpress, linux-qcm-msm, linux-armadaxp, linux-lts-quantal, linux-lts-raring, linux-lts-saucy, linux-lts-trusty, linux-goldfish, linux-grouper, linux-maguro, linux-mako, linux-manta, linux-flo, linux-raspi2, linux-lts-utopic, linux-lts-vivid, linux-lts-wily, linux-lts-xenial, linux-snapdragon, linux-aws, linux-hwe, linux-hwe-edge, linux-gke, linux-azure, linux-gcp, linux-kvm, linux-euclid, linux-oem, linux-krillin, linux-vegetahd
CVE-2017-7495
cve.mitre.org, git.kernel.org, kernel.org, openwall.com, bugzilla.redhat.com, github.com, ubuntu.com, ubuntu.com, ubuntu.com, ubuntu.com
2017-05-15
2017-11-17 20:29
CVE-2017-7495 linux
2017-11-06 22:09
2017-10-30 19:33
2017-10-30 18:06
2017-10-23 14:30
2017-10-19 20:28
2017-10-13 21:16
2017-09-21 21:39
2017-09-19 19:06
2017-09-14 16:05
2017-09-14 00:49
2017-09-11 18:05
2017-09-08 18:00
2017-09-05 22:34
2017-09-01 18:28
2017-08-31 19:28
2017-08-30 10:06
2017-08-29 22:06
2017-08-29 19:51
2017-08-29 10:06
2017-08-29 01:05
2017-08-24 23:45
2017-08-22 20:43
2017-08-17 23:51
2017-08-16 17:16
2017-08-08 23:06
2017-08-03 17:33
2017-07-28 18:20
2017-07-20 21:34
2017-07-20 19:16
2017-07-19 19:35
2017-07-14 22:21
2017-07-10 16:26
2017-07-06 07:35
2017-06-30 21:37
2017-06-23 19:30
2017-06-16 18:42
2017-06-14 09:24
2017-06-12 21:30
2017-06-12 18:24
2017-06-09 21:23
2017-06-01 16:17
2017-05-18 21:19
2017-05-18 04:05

Description

fs/ext4/inode.c in the Linux kernel before 4.6.2, when ext4 data=ordered mode is used, mishandles a needs-flushing-before-commit list, which allows local users to obtain sensitive information from other users' files in opportunistic circumstances by waiting for a hardware reset, creating a new file, making write system calls, and reading this file.

Am I vulnerable?

The constraints below list the versions that this vulnerability is patched in, and versions that are unaffected. If a patch is ready but unrealeased, then it is pending.

Or, you can just let us figure it out for you! Appcanary continously monitor your installed packages, and tell you if any of them are vulnerable.

Sign up for monitoring

Affected package information

Release Package Patched in
precise/esm linux-lts-trusty 3.13.0-129.178~precise1
trusty linux 3.13.0-129.178
linux-lts-xenial 4.4.0-93.116~14.04.1
upstream linux 4.7~rc1
linux-armadaxp 4.7~rc1
linux-aws 4.7~rc1
linux-azure 4.7~rc1
linux-euclid 4.7~rc1
linux-flo 4.7~rc1
linux-gcp 4.7~rc1
linux-gke 4.7~rc1
linux-goldfish 4.7~rc1
linux-grouper 4.7~rc1
linux-hwe 4.7~rc1
linux-hwe-edge 4.7~rc1
linux-kvm 4.7~rc1
linux-linaro-omap 4.7~rc1
linux-linaro-shared 4.7~rc1
linux-linaro-vexpress 4.7~rc1
linux-lts-quantal 4.7~rc1
linux-lts-raring 4.7~rc1
linux-lts-saucy 4.7~rc1
linux-lts-trusty 4.7~rc1
linux-lts-utopic 4.7~rc1
linux-lts-vivid 4.7~rc1
linux-lts-wily 4.7~rc1
linux-lts-xenial 4.7~rc1
linux-maguro 4.7~rc1
linux-mako 4.7~rc1
linux-manta 4.7~rc1
linux-oem 4.7~rc1
linux-qcm-msm 4.7~rc1
linux-raspi2 4.7~rc1
linux-snapdragon 4.7~rc1
linux-ti-omap4 4.7~rc1
xenial linux 4.4.0-93.116
linux-aws 4.4.0-1032.41
linux-gke 4.4.0-1028.28
linux-kvm 4.4.0-1007.12
linux-oem 4.13.0-1008.9  pending
linux-raspi2 4.4.0-1071.79
linux-snapdragon 4.4.0-1073.78
zesty linux-snapdragon 4.4.0-1073.78

Unaffected

Release Package Reason
precise/esm linux not-affected
linux-ti-omap4 DNE
linux-linaro-omap DNE
linux-linaro-shared DNE
linux-linaro-vexpress DNE
linux-qcm-msm DNE
linux-armadaxp DNE
linux-lts-quantal ignored
linux-lts-raring ignored
linux-lts-saucy ignored
linux-goldfish DNE
linux-grouper DNE
linux-maguro DNE
linux-mako DNE
linux-manta DNE
linux-flo DNE
linux-raspi2 DNE
linux-lts-utopic DNE
linux-lts-vivid DNE
linux-lts-wily DNE
linux-lts-xenial DNE
linux-snapdragon DNE
linux-aws DNE
linux-hwe DNE
linux-hwe-edge DNE
linux-gke DNE
linux-azure DNE
linux-gcp DNE
linux-kvm DNE
linux-euclid DNE
linux-oem DNE
vivid/ubuntu-core linux ignored
linux-ti-omap4 DNE
linux-linaro-omap DNE
linux-linaro-shared DNE
linux-linaro-vexpress DNE
linux-qcm-msm DNE
linux-armadaxp DNE
linux-lts-quantal DNE
linux-lts-raring DNE
linux-lts-saucy DNE
linux-lts-trusty DNE
linux-goldfish DNE
linux-grouper DNE
linux-maguro DNE
linux-mako DNE
linux-manta DNE
linux-flo DNE
linux-raspi2 ignored
linux-lts-utopic DNE
linux-lts-vivid DNE
linux-lts-wily DNE
linux-lts-xenial DNE
linux-snapdragon DNE
linux-aws DNE
linux-hwe DNE
linux-hwe-edge DNE
linux-gke DNE
linux-azure DNE
linux-gcp DNE
linux-kvm DNE
linux-euclid DNE
vivid/stable-phone-overlay linux DNE
linux-ti-omap4 DNE
linux-linaro-omap DNE
linux-linaro-shared DNE
linux-linaro-vexpress DNE
linux-qcm-msm DNE
linux-armadaxp DNE
linux-lts-quantal DNE
linux-lts-raring DNE
linux-lts-saucy DNE
linux-lts-trusty DNE
linux-goldfish DNE
linux-grouper DNE
linux-maguro DNE
linux-mako ignored
linux-manta DNE
linux-flo ignored
linux-raspi2 DNE
linux-lts-utopic DNE
linux-lts-vivid DNE
linux-lts-wily DNE
linux-lts-xenial DNE
linux-snapdragon DNE
linux-aws DNE
linux-hwe DNE
linux-hwe-edge DNE
linux-gke DNE
linux-azure DNE
yakkety linux not-affected
linux-ti-omap4 DNE
linux-linaro-omap DNE
linux-linaro-shared DNE
linux-linaro-vexpress DNE
linux-qcm-msm DNE
linux-armadaxp DNE
linux-lts-quantal DNE
linux-lts-raring DNE
linux-lts-saucy DNE
linux-lts-trusty DNE
linux-goldfish not-affected
linux-grouper DNE
linux-maguro DNE
linux-mako ignored
linux-manta DNE
linux-flo ignored
linux-raspi2 not-affected
linux-lts-utopic DNE
linux-lts-vivid DNE
linux-lts-wily DNE
linux-lts-xenial DNE
linux-snapdragon ignored
linux-aws DNE
linux-hwe DNE
linux-hwe-edge DNE
linux-gke DNE
linux-azure DNE
linux-gcp DNE
zesty linux not-affected
linux-ti-omap4 DNE
linux-linaro-omap DNE
linux-linaro-shared DNE
linux-linaro-vexpress DNE
linux-qcm-msm DNE
linux-armadaxp DNE
linux-lts-quantal DNE
linux-lts-raring DNE
linux-lts-saucy DNE
linux-lts-trusty DNE
linux-goldfish not-affected
linux-grouper DNE
linux-maguro DNE
linux-mako DNE
linux-manta DNE
linux-flo DNE
linux-raspi2 not-affected
linux-lts-utopic DNE
linux-lts-vivid DNE
linux-lts-wily DNE
linux-lts-xenial DNE
linux-aws DNE
linux-hwe DNE
linux-hwe-edge DNE
linux-gke DNE
linux-azure DNE
linux-gcp DNE
linux-kvm DNE
linux-euclid DNE
linux-oem DNE
artful linux not-affected
linux-ti-omap4 DNE
linux-linaro-omap DNE
linux-linaro-shared DNE
linux-linaro-vexpress DNE
linux-qcm-msm DNE
linux-armadaxp DNE
linux-lts-quantal DNE
linux-lts-raring DNE
linux-lts-saucy DNE
linux-lts-trusty DNE
linux-goldfish DNE
linux-grouper DNE
linux-maguro DNE
linux-mako DNE
linux-manta DNE
linux-flo DNE
linux-raspi2 not-affected
linux-lts-utopic DNE
linux-lts-vivid DNE
linux-lts-wily DNE
linux-lts-xenial DNE
linux-snapdragon not-affected
linux-aws DNE
linux-hwe DNE
linux-hwe-edge DNE
linux-gke DNE
linux-azure DNE
linux-gcp DNE
linux-kvm DNE
linux-euclid DNE
linux-oem DNE
devel linux not-affected
linux-ti-omap4 DNE
linux-linaro-omap DNE
linux-linaro-shared DNE
linux-linaro-vexpress DNE
linux-qcm-msm DNE
linux-armadaxp DNE
linux-lts-quantal DNE
linux-lts-raring DNE
linux-lts-saucy DNE
linux-lts-trusty DNE
linux-goldfish DNE
linux-grouper DNE
linux-maguro DNE
linux-mako DNE
linux-manta DNE
linux-flo DNE
linux-raspi2 not-affected
linux-lts-utopic DNE
linux-lts-vivid DNE
linux-lts-wily DNE
linux-lts-xenial DNE
linux-snapdragon not-affected
linux-aws DNE
linux-hwe DNE
linux-hwe-edge DNE
linux-gke DNE
linux-azure DNE
linux-gcp DNE
linux-kvm DNE
linux-euclid DNE
linux-oem DNE
trusty linux-ti-omap4 DNE
linux-linaro-omap DNE
linux-linaro-shared DNE
linux-linaro-vexpress DNE
linux-qcm-msm DNE
linux-armadaxp DNE
linux-lts-quantal DNE
linux-lts-raring DNE
linux-lts-saucy DNE
linux-lts-trusty DNE
linux-goldfish ignored
linux-grouper ignored
linux-maguro ignored
linux-mako ignored
linux-manta ignored
linux-flo ignored
linux-raspi2 DNE
linux-lts-utopic ignored
linux-lts-vivid ignored
linux-lts-wily ignored
linux-snapdragon DNE
linux-aws not-affected
linux-hwe DNE
linux-hwe-edge DNE
linux-gke DNE
linux-azure DNE
linux-gcp DNE
linux-kvm DNE
linux-euclid DNE
linux-oem DNE
xenial linux-ti-omap4 DNE
linux-linaro-omap DNE
linux-linaro-shared DNE
linux-linaro-vexpress DNE
linux-qcm-msm DNE
linux-armadaxp DNE
linux-lts-quantal DNE
linux-lts-raring DNE
linux-lts-saucy DNE
linux-lts-trusty DNE
linux-goldfish not-affected
linux-grouper DNE
linux-maguro DNE
linux-mako ignored
linux-manta DNE
linux-flo ignored
linux-lts-utopic DNE
linux-lts-vivid DNE
linux-lts-wily DNE
linux-lts-xenial DNE
linux-hwe not-affected
linux-hwe-edge not-affected
linux-azure not-affected
linux-gcp not-affected
linux-euclid ignored
product linux-krillin not-affected
linux-vegetahd not-affected