Описание
Security update for rsync
This update for rsync fixes one issues.
This security issue was fixed:
- CVE-2018-5764: The parse_arguments function in options.c did not prevent multiple --protect-args uses, which allowed remote attackers to bypass an argument-sanitization protection mechanism (bsc#1076503).
This update was imported from the SUSE:SLE-12:Update update project.
Список пакетов
openSUSE Leap 42.3
rsync-3.1.0-13.1
Ссылки
- E-Mail link for openSUSE-SU-2018:0643-1
- SUSE Security Ratings
Описание
The parse_arguments function in options.c in rsyncd in rsync before 3.1.3 does not prevent multiple --protect-args uses, which allows remote attackers to bypass an argument-sanitization protection mechanism.
Затронутые продукты
openSUSE Leap 42.3:rsync-3.1.0-13.1
Ссылки
- CVE-2018-5764
- SUSE Bug 1076503