Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:26410

Опубликовано: 17 июн. 2026
Источник: rocky
Оценка: Important

Описание

Important: rsync security update

The rsync utility enables the users to copy and synchronize files locally or across a network. Synchronization with rsync is fast because rsync only sends the differences in files over the network instead of sending whole files. The rsync utility is also used as a mirroring tool.

Security Fix(es):

  • rsync: rsync: Remote memory disclosure via integer overflow in compressed-token decoding (CVE-2026-43618)

  • rsync: TOCTOU symlink race condition allowing local privilege escalation in daemon mode without chroot. (CVE-2026-29518)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 9

НаименованиеАрхитектураРелизRPM
rsyncaarch647.el9_8.2rsync-3.2.5-7.el9_8.2.aarch64.rpm
rsyncx86_647.el9_8.2rsync-3.2.5-7.el9_8.2.x86_64.rpm

Показывать по

Связанные CVE

Связанные уязвимости

rocky
около 2 месяцев назад

Important: rsync security update

rocky
около 1 месяца назад

Important: rsync security, bug fix, and enhancement update

oracle-oval
около 1 месяца назад

ELSA-2026-26410: rsync security update (IMPORTANT)

oracle-oval
около 2 месяцев назад

ELSA-2026-26408: rsync security update (IMPORTANT)

oracle-oval
16 дней назад

ELSA-2026-26332: rsync security, bug fix, and enhancement update (IMPORTANT)