Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-45232

Опубликовано: 20 мая 2026
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 3.1

Описание

Rsync versions before 3.4.3 contain an off-by-one out-of-bounds stack write vulnerability in the establish_proxy_connection() function in socket.c that allows network attackers to corrupt stack memory by sending a malformed HTTP proxy response. Attackers can exploit this by positioning themselves between the client and proxy or controlling the proxy server to send a response line of 1023 or more bytes without a newline terminator, causing a null byte to be written to an out-of-bounds stack address when the RSYNC_PROXY environment variable is set.

РелизСтатусПримечание
devel

not-affected

3.4.4+ds1-1
esm-infra-legacy/trusty

released

3.1.0-2ubuntu0.4+esm3
esm-infra-legacy/xenial

released

3.1.1-3ubuntu1.3+esm5
esm-infra/bionic

released

3.1.2-2.1ubuntu1.6+esm3
esm-infra/focal

released

3.1.3-8ubuntu0.9+esm1
esm-infra/xenial

ignored

end of ESM support, was needs-triage
jammy

released

3.2.7-0ubuntu0.22.04.6
noble

released

3.2.7-1ubuntu1.4
questing

released

3.4.1+ds1-5ubuntu1.2
resolute

released

3.4.1+ds1-7ubuntu0.2

Показывать по

EPSS

Процентиль: 26%
0.00337
Низкий

3.1 Low

CVSS3

Связанные уязвимости

CVSS3: 5.9
redhat
3 месяца назад

Rsync versions before 3.4.3 contain an off-by-one out-of-bounds stack write vulnerability in the establish_proxy_connection() function in socket.c that allows network attackers to corrupt stack memory by sending a malformed HTTP proxy response. Attackers can exploit this by positioning themselves between the client and proxy or controlling the proxy server to send a response line of 1023 or more bytes without a newline terminator, causing a null byte to be written to an out-of-bounds stack address when the RSYNC_PROXY environment variable is set.

CVSS3: 3.1
nvd
3 месяца назад

Rsync versions before 3.4.3 contain an off-by-one out-of-bounds stack write vulnerability in the establish_proxy_connection() function in socket.c that allows network attackers to corrupt stack memory by sending a malformed HTTP proxy response. Attackers can exploit this by positioning themselves between the client and proxy or controlling the proxy server to send a response line of 1023 or more bytes without a newline terminator, causing a null byte to be written to an out-of-bounds stack address when the RSYNC_PROXY environment variable is set.

CVSS3: 3.1
msrc
3 месяца назад

Rsync < 3.4.3 Off-by-One Stack Write via HTTP Proxy

CVSS3: 3.1
debian
3 месяца назад

Rsync versions before 3.4.3 contain an off-by-one out-of-bounds stack ...

suse-cvrf
2 месяца назад

Security update for rsync

EPSS

Процентиль: 26%
0.00337
Низкий

3.1 Low

CVSS3