Описание
rsync before 3.0.0pre6, when running a writable rsync daemon that is not using chroot, allows remote attackers to access restricted files via unknown vectors that cause rsync to create a symlink that points outside of the module's hierarchy.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | ignored | end of life |
| devel | not-affected | 2.6.9-6ubuntu1 |
| edgy | ignored | end of life, was needed |
| feisty | ignored | end of life, was needed |
| gutsy | ignored | end of life, was needed |
| hardy | not-affected | 2.6.9-6ubuntu1 |
| intrepid | not-affected | 2.6.9-6ubuntu1 |
| jaunty | not-affected | 2.6.9-6ubuntu1 |
| karmic | not-affected | 2.6.9-6ubuntu1 |
| lucid | not-affected | 2.6.9-6ubuntu1 |
Показывать по
EPSS
9.3 Critical
CVSS2
Связанные уязвимости
rsync before 3.0.0pre6, when running a writable rsync daemon that is not using chroot, allows remote attackers to access restricted files via unknown vectors that cause rsync to create a symlink that points outside of the module's hierarchy.
rsync before 3.0.0pre6, when running a writable rsync daemon that is not using chroot, allows remote attackers to access restricted files via unknown vectors that cause rsync to create a symlink that points outside of the module's hierarchy.
rsync before 3.0.0pre6, when running a writable rsync daemon that is n ...
rsync before 3.0.0pre6, when running a writable rsync daemon that is not using chroot, allows remote attackers to access restricted files via unknown vectors that cause rsync to create a symlink that points outside of the module's hierarchy.
EPSS
9.3 Critical
CVSS2