Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:26408

Опубликовано: 17 июн. 2026
Источник: rocky
Оценка: Important

Описание

Important: rsync security update

The rsync utility enables the users to copy and synchronize files locally or across a network. Synchronization with rsync is fast because rsync only sends the differences in files over the network instead of sending whole files. The rsync utility is also used as a mirroring tool.

Security Fix(es):

  • rsync: rsync: Remote memory disclosure via integer overflow in compressed-token decoding (CVE-2026-43618)

  • rsync: TOCTOU symlink race condition allowing local privilege escalation in daemon mode without chroot. (CVE-2026-29518)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
rsyncx86_6427.el8_10rsync-3.1.3-27.el8_10.x86_64.rpm
rsync-daemonnoarch27.el8_10rsync-daemon-3.1.3-27.el8_10.noarch.rpm

Показывать по

Связанные CVE

Связанные уязвимости

rocky
около 1 месяца назад

Important: rsync security update

rocky
около 1 месяца назад

Important: rsync security, bug fix, and enhancement update

oracle-oval
около 1 месяца назад

ELSA-2026-26410: rsync security update (IMPORTANT)

oracle-oval
около 2 месяцев назад

ELSA-2026-26408: rsync security update (IMPORTANT)

oracle-oval
16 дней назад

ELSA-2026-26332: rsync security, bug fix, and enhancement update (IMPORTANT)