Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-29154

Опубликовано: 02 авг. 2022
Источник: redhat
CVSS3: 7.4
EPSS Низкий

Описание

An issue was discovered in rsync before 3.2.5 that allows malicious remote servers to write arbitrary files inside the directories of connecting peers. The server chooses which files/directories are sent to the client. However, the rsync client performs insufficient validation of file names. A malicious rsync server (or Man-in-The-Middle attacker) can overwrite arbitrary files in the rsync client target directory and subdirectories (for example, overwrite the .ssh/authorized_keys file).

A flaw was found in rsync that is triggered by a victim rsync user/client connecting to a malicious rsync server. The server can copy and overwrite arbitrary files in the client's rsync target directory and subdirectories. This flaw allows a malicious server, or in some cases, another attacker who performs a man-in-the-middle attack, to potentially overwrite sensitive files on the client machine, resulting in further exploitation.

Меры по смягчению последствий

Only connecting to trusted Rsync servers over trusted channels would help to mitigate this flaw.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6rsyncOut of support scope
Red Hat Enterprise Linux 7rsyncFixedRHSA-2022:617024.08.2022
Red Hat Enterprise Linux 8rsyncFixedRHSA-2022:618024.08.2022
Red Hat Enterprise Linux 8.1 Update Services for SAP SolutionsrsyncFixedRHSA-2022:617324.08.2022
Red Hat Enterprise Linux 8.2 Extended Update SupportrsyncFixedRHSA-2022:617224.08.2022
Red Hat Enterprise Linux 8.4 Extended Update SupportrsyncFixedRHSA-2022:617124.08.2022
Red Hat Enterprise Linux 9rsyncFixedRHSA-2022:618124.08.2022
Red Hat Enterprise Linux 9rsyncFixedRHSA-2022:618124.08.2022
Red Hat Virtualization 4 for Red Hat Enterprise Linux 8redhat-virtualization-hostFixedRHSA-2022:655119.09.2022

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-22
https://bugzilla.redhat.com/show_bug.cgi?id=2110928rsync: remote arbitrary files write inside the directories of connecting peers

EPSS

Процентиль: 57%
0.00349
Низкий

7.4 High

CVSS3

Связанные уязвимости

CVSS3: 7.4
ubuntu
около 3 лет назад

An issue was discovered in rsync before 3.2.5 that allows malicious remote servers to write arbitrary files inside the directories of connecting peers. The server chooses which files/directories are sent to the client. However, the rsync client performs insufficient validation of file names. A malicious rsync server (or Man-in-The-Middle attacker) can overwrite arbitrary files in the rsync client target directory and subdirectories (for example, overwrite the .ssh/authorized_keys file).

CVSS3: 7.4
nvd
около 3 лет назад

An issue was discovered in rsync before 3.2.5 that allows malicious remote servers to write arbitrary files inside the directories of connecting peers. The server chooses which files/directories are sent to the client. However, the rsync client performs insufficient validation of file names. A malicious rsync server (or Man-in-The-Middle attacker) can overwrite arbitrary files in the rsync client target directory and subdirectories (for example, overwrite the .ssh/authorized_keys file).

CVSS3: 7.4
msrc
около 3 лет назад

Описание отсутствует

CVSS3: 7.4
debian
около 3 лет назад

An issue was discovered in rsync before 3.2.5 that allows malicious re ...

suse-cvrf
около 3 лет назад

Security update for rsync

EPSS

Процентиль: 57%
0.00349
Низкий

7.4 High

CVSS3