Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-29154

Опубликовано: 02 авг. 2022
Источник: redhat
CVSS3: 7.4

Описание

An issue was discovered in rsync before 3.2.5 that allows malicious remote servers to write arbitrary files inside the directories of connecting peers. The server chooses which files/directories are sent to the client. However, the rsync client performs insufficient validation of file names. A malicious rsync server (or Man-in-The-Middle attacker) can overwrite arbitrary files in the rsync client target directory and subdirectories (for example, overwrite the .ssh/authorized_keys file).

A flaw was found in rsync that is triggered by a victim rsync user/client connecting to a malicious rsync server. The server can copy and overwrite arbitrary files in the client's rsync target directory and subdirectories. This flaw allows a malicious server, or in some cases, another attacker who performs a man-in-the-middle attack, to potentially overwrite sensitive files on the client machine, resulting in further exploitation.

Меры по смягчению последствий

Only connecting to trusted Rsync servers over trusted channels would help to mitigate this flaw.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6rsyncOut of support scope
Red Hat Enterprise Linux 7rsyncFixedRHSA-2022:617024.08.2022
Red Hat Enterprise Linux 8rsyncFixedRHSA-2022:618024.08.2022
Red Hat Enterprise Linux 8.1 Update Services for SAP SolutionsrsyncFixedRHSA-2022:617324.08.2022
Red Hat Enterprise Linux 8.2 Extended Update SupportrsyncFixedRHSA-2022:617224.08.2022
Red Hat Enterprise Linux 8.4 Extended Update SupportrsyncFixedRHSA-2022:617124.08.2022
Red Hat Enterprise Linux 9rsyncFixedRHSA-2022:618124.08.2022
Red Hat Enterprise Linux 9rsyncFixedRHSA-2022:618124.08.2022
Red Hat Virtualization 4 for Red Hat Enterprise Linux 8redhat-virtualization-hostFixedRHSA-2022:655119.09.2022

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-22
https://bugzilla.redhat.com/show_bug.cgi?id=2110928rsync: remote arbitrary files write inside the directories of connecting peers

7.4 High

CVSS3

Связанные уязвимости

CVSS3: 7.4
ubuntu
почти 3 года назад

An issue was discovered in rsync before 3.2.5 that allows malicious remote servers to write arbitrary files inside the directories of connecting peers. The server chooses which files/directories are sent to the client. However, the rsync client performs insufficient validation of file names. A malicious rsync server (or Man-in-The-Middle attacker) can overwrite arbitrary files in the rsync client target directory and subdirectories (for example, overwrite the .ssh/authorized_keys file).

CVSS3: 7.4
nvd
почти 3 года назад

An issue was discovered in rsync before 3.2.5 that allows malicious remote servers to write arbitrary files inside the directories of connecting peers. The server chooses which files/directories are sent to the client. However, the rsync client performs insufficient validation of file names. A malicious rsync server (or Man-in-The-Middle attacker) can overwrite arbitrary files in the rsync client target directory and subdirectories (for example, overwrite the .ssh/authorized_keys file).

CVSS3: 7.4
msrc
почти 3 года назад

Описание отсутствует

CVSS3: 7.4
debian
почти 3 года назад

An issue was discovered in rsync before 3.2.5 that allows malicious re ...

suse-cvrf
почти 3 года назад

Security update for rsync

7.4 High

CVSS3