Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2024-12085

Опубликовано: 14 янв. 2025
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

A flaw was found in rsync which could be triggered when rsync compares file checksums. This flaw allows an attacker to manipulate the checksum length (s2length) to cause a comparison between a checksum and uninitialized memory and leak one byte of uninitialized stack data at a time.

Отчет

This vulnerability is rated as having Important impact as it helps bypass Address Space Layout Randomization (ASLR). ASLR is a memory protection system which makes the exploitation of memory corruption vulnerabilities more difficult.

Меры по смягчению последствий

Seeing as this vulnerability relies on information leakage coming from the presence of data in the uninitialized memory of the sum2 buffer, a potential mitigation involves compiling rsync with the -ftrivial-auto-var-init=zero option set. This mitigates the issue because it initializes the sum2 variable's memory with zeroes to prevent uninitialized memory disclosure.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10rsyncAffected
Red Hat Enterprise Linux 6 Extended Lifecycle Support - EXTENSIONrsyncFixedRHSA-2025:084930.01.2025
Red Hat Enterprise Linux 7 Extended Lifecycle SupportrsyncFixedRHSA-2025:071427.01.2025
Red Hat Enterprise Linux 8rsyncFixedRHSA-2025:032515.01.2025
Red Hat Enterprise Linux 8.2 Advanced Update SupportrsyncFixedRHSA-2025:088403.02.2025
Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update SupportrsyncFixedRHSA-2025:088503.02.2025
Red Hat Enterprise Linux 8.4 Telecommunications Update ServicersyncFixedRHSA-2025:088503.02.2025
Red Hat Enterprise Linux 8.4 Update Services for SAP SolutionsrsyncFixedRHSA-2025:088503.02.2025
Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update SupportrsyncFixedRHSA-2025:079029.01.2025
Red Hat Enterprise Linux 8.6 Telecommunications Update ServicersyncFixedRHSA-2025:079029.01.2025

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-119
https://bugzilla.redhat.com/show_bug.cgi?id=2330539rsync: Info Leak via Uninitialized Stack Contents

EPSS

Процентиль: 78%
0.01186
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
7 месяцев назад

A flaw was found in rsync which could be triggered when rsync compares file checksums. This flaw allows an attacker to manipulate the checksum length (s2length) to cause a comparison between a checksum and uninitialized memory and leak one byte of uninitialized stack data at a time.

CVSS3: 7.5
nvd
7 месяцев назад

A flaw was found in rsync which could be triggered when rsync compares file checksums. This flaw allows an attacker to manipulate the checksum length (s2length) to cause a comparison between a checksum and uninitialized memory and leak one byte of uninitialized stack data at a time.

CVSS3: 7.5
msrc
7 месяцев назад

Описание отсутствует

CVSS3: 7.5
debian
7 месяцев назад

A flaw was found in rsync which could be triggered when rsync compares ...

rocky
7 месяцев назад

Important: rsync security update

EPSS

Процентиль: 78%
0.01186
Низкий

7.5 High

CVSS3