Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-53789

Опубликовано: 13 авг. 2026
Источник: redhat
CVSS3: 6.5

Описание

rsync before 3.5.0 contains an improper path handling vulnerability that allows a malicious sender to expand the scope of --delete operations beyond the intended destination subtree by sending a crafted file list that causes rsync to reclassify implied parent directory entries or treat synthetic paths as the transfer root. Attackers can exploit multiple variants including implied parent reclassification, synthetic root path construction, legacy protocol behavior below version 30, and non-directory root handling to cause the receiver to delete files outside the authorized destination directory.

An improper path handling vulnerability in rsync allows a remote attacker to delete arbitrary files on the receiving system. By sending a specially crafted file list during synchronization, an attacker can expand the scope of --delete operations beyond the target directory, potentially causing a denial of service.

Отчет

Moderate: This flaw in rsync allows a malicious sender to delete arbitrary files on the receiving system when the --delete option is used. This impact is limited to scenarios where rsync is configured to synchronize data from an untrusted source with deletion enabled, potentially leading to data loss beyond the intended sync target.

Меры по смягчению последствий

To reduce the risk of arbitrary file deletion, ensure that rsync operations using the --delete option are only performed with trusted remote sources. If rsync is configured as a daemon (rsyncd), restrict network access to the rsync service (port 873/tcp) to only trusted clients using firewall rules. For example, using firewall-cmd on Red Hat Enterprise Linux: firewall-cmd --permanent --add-rich-rule='rule family="ipv4" source address="<TRUSTED_IP_ADDRESS>" port port="873" protocol="tcp" accept' firewall-cmd --reload This may impact legitimate rsync operations from untrusted networks. A service reload or restart may be required for changes to take effect.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6rsyncAffected
Red Hat Enterprise Linux 7rsyncAffected
Red Hat Enterprise Linux 8rsyncAffected
Red Hat OpenShift Container Platform 4openshift/ose-rhel-coreos-8Affected
Red Hat OpenShift Container Platform 4openshift/ose-rhel-coreos-9Affected
Red Hat Enterprise Linux 10rsyncFixedRHSA-2026:6746314.09.2026
Red Hat Enterprise Linux 9rsyncFixedRHSA-2026:6746214.09.2026
Red Hat Enterprise Linux 9rsyncFixedRHSA-2026:6746214.09.2026

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-22
https://bugzilla.redhat.com/show_bug.cgi?id=2515375rsync: rsync: Arbitrary file deletion via malicious file list

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 1 месяца назад

rsync before 3.5.0 contains an improper path handling vulnerability that allows a malicious sender to expand the scope of --delete operations beyond the intended destination subtree by sending a crafted file list that causes rsync to reclassify implied parent directory entries or treat synthetic paths as the transfer root. Attackers can exploit multiple variants including implied parent reclassification, synthetic root path construction, legacy protocol behavior below version 30, and non-directory root handling to cause the receiver to delete files outside the authorized destination directory.

CVSS3: 6.5
nvd
около 1 месяца назад

rsync before 3.5.0 contains an improper path handling vulnerability that allows a malicious sender to expand the scope of --delete operations beyond the intended destination subtree by sending a crafted file list that causes rsync to reclassify implied parent directory entries or treat synthetic paths as the transfer root. Attackers can exploit multiple variants including implied parent reclassification, synthetic root path construction, legacy protocol behavior below version 30, and non-directory root handling to cause the receiver to delete files outside the authorized destination directory.

msrc
28 дней назад

rsync < 3.5.0 Arbitrary File Deletion via Malicious File List

CVSS3: 6.5
debian
около 1 месяца назад

rsync before 3.5.0contains an improper path handling vulnerability tha ...

rocky
5 дней назад

Important: rsync security, bug fix, and enhancement update

6.5 Medium

CVSS3