Количество 8
Количество 8
CVE-2026-53794
rsync before 3.5.0 contains a logic error in --max-alloc handling that allows a sender or configuration setting --max-alloc=0 to disable allocation sanity checks entirely rather than enforcing a zero-byte cap. Attackers can exploit this flaw to cause the receiver to attempt unbounded memory allocations for file list and data structures, potentially exhausting available memory and causing a denial of service.
CVE-2026-53794
rsync before 3.5.0 contains a logic error in --max-alloc handling that allows a sender or configuration setting --max-alloc=0 to disable allocation sanity checks entirely rather than enforcing a zero-byte cap. Attackers can exploit this flaw to cause the receiver to attempt unbounded memory allocations for file list and data structures, potentially exhausting available memory and causing a denial of service.
CVE-2026-53794
rsync before 3.5.0 contains a logic error in --max-alloc handling that allows a sender or configuration setting --max-alloc=0 to disable allocation sanity checks entirely rather than enforcing a zero-byte cap. Attackers can exploit this flaw to cause the receiver to attempt unbounded memory allocations for file list and data structures, potentially exhausting available memory and causing a denial of service.
CVE-2026-53794
rsync < 3.5.0 Denial of Service via --max-alloc=0 Logic Error
CVE-2026-53794
rsync before 3.5.0contains a logic error in --max-alloc handling that ...
SUSE-SU-2026:3657-1
Security update for rsync
SUSE-SU-2026:3634-1
Security update for rsync
openSUSE-SU-2026:21650-1
Security update for rsync
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-53794 rsync before 3.5.0 contains a logic error in --max-alloc handling that allows a sender or configuration setting --max-alloc=0 to disable allocation sanity checks entirely rather than enforcing a zero-byte cap. Attackers can exploit this flaw to cause the receiver to attempt unbounded memory allocations for file list and data structures, potentially exhausting available memory and causing a denial of service. | CVSS3: 5.3 | 0% Низкий | 24 дня назад | |
CVE-2026-53794 rsync before 3.5.0 contains a logic error in --max-alloc handling that allows a sender or configuration setting --max-alloc=0 to disable allocation sanity checks entirely rather than enforcing a zero-byte cap. Attackers can exploit this flaw to cause the receiver to attempt unbounded memory allocations for file list and data structures, potentially exhausting available memory and causing a denial of service. | CVSS3: 5.3 | 0% Низкий | 24 дня назад | |
CVE-2026-53794 rsync before 3.5.0 contains a logic error in --max-alloc handling that allows a sender or configuration setting --max-alloc=0 to disable allocation sanity checks entirely rather than enforcing a zero-byte cap. Attackers can exploit this flaw to cause the receiver to attempt unbounded memory allocations for file list and data structures, potentially exhausting available memory and causing a denial of service. | CVSS3: 5.3 | 0% Низкий | 24 дня назад | |
CVE-2026-53794 rsync < 3.5.0 Denial of Service via --max-alloc=0 Logic Error | 0% Низкий | 14 дней назад | ||
CVE-2026-53794 rsync before 3.5.0contains a logic error in --max-alloc handling that ... | CVSS3: 5.3 | 0% Низкий | 24 дня назад | |
SUSE-SU-2026:3657-1 Security update for rsync | 17 дней назад | |||
SUSE-SU-2026:3634-1 Security update for rsync | 20 дней назад | |||
openSUSE-SU-2026:21650-1 Security update for rsync | 11 дней назад |
Уязвимостей на страницу