Логотип exploitDog
bind:"BDU:2025-00372" OR bind:"CVE-2024-12747"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2025-00372" OR bind:"CVE-2024-12747"

Количество 16

Количество 16

fstec логотип

BDU:2025-00372

6 месяцев назад

Уязвимость утилиты для передачи и синхронизации файлов Rsync, связанная с ошибками синхронизации при использовании общего ресурса, позволяющая нарушителю повысить свои привилегии

CVSS3: 5.6
EPSS: Низкий
redos логотип

ROS-20250203-04

5 месяцев назад

Множественные уязвимости rsync

CVSS3: 9.8
EPSS: Низкий
ubuntu логотип

CVE-2024-12747

5 месяцев назад

A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rsync's default behavior when encountering symbolic links is to skip them. If an attacker replaced a regular file with a symbolic link at the right time, it was possible to bypass the default behavior and traverse symbolic links. Depending on the privileges of the rsync process, an attacker could leak sensitive information, potentially leading to privilege escalation.

CVSS3: 5.6
EPSS: Низкий
redhat логотип

CVE-2024-12747

5 месяцев назад

A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rsync's default behavior when encountering symbolic links is to skip them. If an attacker replaced a regular file with a symbolic link at the right time, it was possible to bypass the default behavior and traverse symbolic links. Depending on the privileges of the rsync process, an attacker could leak sensitive information, potentially leading to privilege escalation.

CVSS3: 5.6
EPSS: Низкий
nvd логотип

CVE-2024-12747

5 месяцев назад

A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rsync's default behavior when encountering symbolic links is to skip them. If an attacker replaced a regular file with a symbolic link at the right time, it was possible to bypass the default behavior and traverse symbolic links. Depending on the privileges of the rsync process, an attacker could leak sensitive information, potentially leading to privilege escalation.

CVSS3: 5.6
EPSS: Низкий
msrc логотип

CVE-2024-12747

5 месяцев назад

CVSS3: 5.6
EPSS: Низкий
debian логотип

CVE-2024-12747

5 месяцев назад

A flaw was found in rsync. This vulnerability arises from a race condi ...

CVSS3: 5.6
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0991-1

3 месяца назад

Security update for rsync

EPSS: Низкий
github логотип

GHSA-gp7r-m4cc-qhwq

5 месяцев назад

A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rsync's default behavior when encountering symbolic links is to skip them. If an attacker replaced a regular file with a symbolic link at the right time, it was possible to bypass the default behavior and traverse symbolic links. Depending on the privileges of the rsync process, an attacker could leak sensitive information, potentially leading to privilege escalation.

CVSS3: 5.6
EPSS: Низкий
rocky логотип

RLSA-2025:2600

около 1 месяца назад

Moderate: rsync security update

EPSS: Низкий
oracle-oval логотип

ELSA-2025-7050

около 1 месяца назад

ELSA-2025-7050: rsync security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-2600

3 месяца назад

ELSA-2025-2600: rsync security update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0166-1

5 месяцев назад

Security update for rsync

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0165-1

5 месяцев назад

Security update for rsync

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0157-1

5 месяцев назад

Security update for rsync

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0156-1

5 месяцев назад

Security update for rsync

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2025-00372

Уязвимость утилиты для передачи и синхронизации файлов Rsync, связанная с ошибками синхронизации при использовании общего ресурса, позволяющая нарушителю повысить свои привилегии

CVSS3: 5.6
0%
Низкий
6 месяцев назад
redos логотип
ROS-20250203-04

Множественные уязвимости rsync

CVSS3: 9.8
5 месяцев назад
ubuntu логотип
CVE-2024-12747

A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rsync's default behavior when encountering symbolic links is to skip them. If an attacker replaced a regular file with a symbolic link at the right time, it was possible to bypass the default behavior and traverse symbolic links. Depending on the privileges of the rsync process, an attacker could leak sensitive information, potentially leading to privilege escalation.

CVSS3: 5.6
0%
Низкий
5 месяцев назад
redhat логотип
CVE-2024-12747

A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rsync's default behavior when encountering symbolic links is to skip them. If an attacker replaced a regular file with a symbolic link at the right time, it was possible to bypass the default behavior and traverse symbolic links. Depending on the privileges of the rsync process, an attacker could leak sensitive information, potentially leading to privilege escalation.

CVSS3: 5.6
0%
Низкий
5 месяцев назад
nvd логотип
CVE-2024-12747

A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rsync's default behavior when encountering symbolic links is to skip them. If an attacker replaced a regular file with a symbolic link at the right time, it was possible to bypass the default behavior and traverse symbolic links. Depending on the privileges of the rsync process, an attacker could leak sensitive information, potentially leading to privilege escalation.

CVSS3: 5.6
0%
Низкий
5 месяцев назад
msrc логотип
CVSS3: 5.6
0%
Низкий
5 месяцев назад
debian логотип
CVE-2024-12747

A flaw was found in rsync. This vulnerability arises from a race condi ...

CVSS3: 5.6
0%
Низкий
5 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:0991-1

Security update for rsync

0%
Низкий
3 месяца назад
github логотип
GHSA-gp7r-m4cc-qhwq

A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rsync's default behavior when encountering symbolic links is to skip them. If an attacker replaced a regular file with a symbolic link at the right time, it was possible to bypass the default behavior and traverse symbolic links. Depending on the privileges of the rsync process, an attacker could leak sensitive information, potentially leading to privilege escalation.

CVSS3: 5.6
0%
Низкий
5 месяцев назад
rocky логотип
RLSA-2025:2600

Moderate: rsync security update

около 1 месяца назад
oracle-oval логотип
ELSA-2025-7050

ELSA-2025-7050: rsync security update (MODERATE)

около 1 месяца назад
oracle-oval логотип
ELSA-2025-2600

ELSA-2025-2600: rsync security update (MODERATE)

3 месяца назад
suse-cvrf логотип
SUSE-SU-2025:0166-1

Security update for rsync

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:0165-1

Security update for rsync

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:0157-1

Security update for rsync

5 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:0156-1

Security update for rsync

5 месяцев назад

Уязвимостей на страницу