Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 7

Количество 7

ubuntu логотип

CVE-2026-53796

24 дня назад

rsync before 3.5.0 contains a time-of-check to time-of-use (TOCTOU) race condition vulnerability in the non-daemon receiver's destination directory handling that allows an attacker who can manipulate destination path parent components to redirect file writes to unintended locations. Attackers can substitute a symlink for a component of the destination path between the path resolution and chdir() call, causing the receiver's working directory to be established outside the intended destination tree so that subsequent relative-path file writes land in unintended filesystem locations.

CVSS3: 6.3
EPSS: Низкий
nvd логотип

CVE-2026-53796

24 дня назад

rsync before 3.5.0 contains a time-of-check to time-of-use (TOCTOU) race condition vulnerability in the non-daemon receiver's destination directory handling that allows an attacker who can manipulate destination path parent components to redirect file writes to unintended locations. Attackers can substitute a symlink for a component of the destination path between the path resolution and chdir() call, causing the receiver's working directory to be established outside the intended destination tree so that subsequent relative-path file writes land in unintended filesystem locations.

CVSS3: 6.3
EPSS: Низкий
msrc логотип

CVE-2026-53796

14 дней назад

rsync < 3.5.0 TOCTOU Race Condition via Destination Directory Handling

EPSS: Низкий
debian логотип

CVE-2026-53796

24 дня назад

rsync before 3.5.0contains a time-of-check to time-of-use (TOCTOU) rac ...

CVSS3: 6.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3657-1

17 дней назад

Security update for rsync

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3634-1

20 дней назад

Security update for rsync

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21650-1

11 дней назад

Security update for rsync

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-53796

rsync before 3.5.0 contains a time-of-check to time-of-use (TOCTOU) race condition vulnerability in the non-daemon receiver's destination directory handling that allows an attacker who can manipulate destination path parent components to redirect file writes to unintended locations. Attackers can substitute a symlink for a component of the destination path between the path resolution and chdir() call, causing the receiver's working directory to be established outside the intended destination tree so that subsequent relative-path file writes land in unintended filesystem locations.

CVSS3: 6.3
0%
Низкий
24 дня назад
nvd логотип
CVE-2026-53796

rsync before 3.5.0 contains a time-of-check to time-of-use (TOCTOU) race condition vulnerability in the non-daemon receiver's destination directory handling that allows an attacker who can manipulate destination path parent components to redirect file writes to unintended locations. Attackers can substitute a symlink for a component of the destination path between the path resolution and chdir() call, causing the receiver's working directory to be established outside the intended destination tree so that subsequent relative-path file writes land in unintended filesystem locations.

CVSS3: 6.3
0%
Низкий
24 дня назад
msrc логотип
CVE-2026-53796

rsync < 3.5.0 TOCTOU Race Condition via Destination Directory Handling

0%
Низкий
14 дней назад
debian логотип
CVE-2026-53796

rsync before 3.5.0contains a time-of-check to time-of-use (TOCTOU) rac ...

CVSS3: 6.3
0%
Низкий
24 дня назад
suse-cvrf логотип
SUSE-SU-2026:3657-1

Security update for rsync

17 дней назад
suse-cvrf логотип
SUSE-SU-2026:3634-1

Security update for rsync

20 дней назад
suse-cvrf логотип
openSUSE-SU-2026:21650-1

Security update for rsync

11 дней назад

Уязвимостей на страницу