Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 29

Количество 29

rocky логотип

RLSA-2026:19368

4 месяца назад

Important: rsync security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-19368

3 месяца назад

ELSA-2026-19368: rsync security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2083-1

4 месяца назад

Security update for rsync

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2048-1

4 месяца назад

Security update for rsync

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2038-1

4 месяца назад

Security update for rsync

EPSS: Низкий
ubuntu логотип

CVE-2026-41035

5 месяцев назад

In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort call, leading to a receiver use-after-free. The victim must run rsync with -X (aka --xattrs). On Linux, many (but not all) common configurations are vulnerable. Non-Linux platforms are more widely vulnerable.

CVSS3: 7.4
EPSS: Низкий
redhat логотип

CVE-2026-41035

5 месяцев назад

In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort call, leading to a receiver use-after-free. The victim must run rsync with -X (aka --xattrs). On Linux, many (but not all) common configurations are vulnerable. Non-Linux platforms are more widely vulnerable.

CVSS3: 7.4
EPSS: Низкий
nvd логотип

CVE-2026-41035

5 месяцев назад

In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort call, leading to a receiver use-after-free. The victim must run rsync with -X (aka --xattrs). On Linux, many (but not all) common configurations are vulnerable. Non-Linux platforms are more widely vulnerable.

CVSS3: 7.4
EPSS: Низкий
msrc логотип

CVE-2026-41035

5 месяцев назад

In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort call, leading to a receiver use-after-free. The victim must run rsync with -X (aka --xattrs). On Linux, many (but not all) common configurations are vulnerable. Non-Linux platforms are more widely vulnerable.

CVSS3: 7.4
EPSS: Низкий
debian логотип

CVE-2026-41035

5 месяцев назад

In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted len ...

CVSS3: 7.4
EPSS: Низкий
ubuntu логотип

CVE-2024-12086

больше 1 года назад

A flaw was found in rsync. It could allow a server to enumerate the contents of an arbitrary file from the client's machine. This issue occurs when files are being copied from a client to a server. During this process, the rsync server will send checksums of local data to the client to compare with in order to determine what data needs to be sent to the server. By sending specially constructed checksum values for arbitrary files, an attacker may be able to reconstruct the data of those files byte-by-byte based on the responses from the client.

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2024-12086

больше 1 года назад

A flaw was found in rsync. It could allow a server to enumerate the contents of an arbitrary file from the client's machine. This issue occurs when files are being copied from a client to a server. During this process, the rsync server will send checksums of local data to the client to compare with in order to determine what data needs to be sent to the server. By sending specially constructed checksum values for arbitrary files, an attacker may be able to reconstruct the data of those files byte-by-byte based on the responses from the client.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2024-12086

больше 1 года назад

A flaw was found in rsync. It could allow a server to enumerate the contents of an arbitrary file from the client's machine. This issue occurs when files are being copied from a client to a server. During this process, the rsync server will send checksums of local data to the client to compare with in order to determine what data needs to be sent to the server. By sending specially constructed checksum values for arbitrary files, an attacker may be able to reconstruct the data of those files byte-by-byte based on the responses from the client.

CVSS3: 6.1
EPSS: Низкий
msrc логотип

CVE-2024-12086

больше 1 года назад

Rsync: rsync server leaks arbitrary client files

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2024-12086

больше 1 года назад

A flaw was found in rsync. It could allow a server to enumerate the co ...

CVSS3: 6.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2002-1

4 месяца назад

Security update for rsync

EPSS: Низкий
rocky логотип

RLSA-2026:19152

4 месяца назад

Important: rsync security update

EPSS: Низкий
rocky логотип

RLSA-2026:17481

4 месяца назад

Important: rsync security update

EPSS: Низкий
github логотип

GHSA-m34r-4v3r-pp9v

5 месяцев назад

In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort call, leading to a receiver use-after-free. The victim must run rsync with -X (aka --xattrs). On Linux, many (but not all) common configurations are vulnerable. Non-Linux platforms are more widely vulnerable.

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-82c6-8mfc-c23h

больше 1 года назад

A flaw was found in rsync. It could allow a server to enumerate the contents of an arbitrary file from the client's machine. This issue occurs when files are being copied from a client to a server. During this process, the rsync server will send checksums of local data to the client to compare with in order to determine what data needs to be sent to the server. By sending specially constructed checksum values for arbitrary files, an attacker may be able to reconstruct the data of those files byte-by-byte based on the responses from the client.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2026:19368

Important: rsync security update

4 месяца назад
oracle-oval логотип
ELSA-2026-19368

ELSA-2026-19368: rsync security update (IMPORTANT)

3 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2083-1

Security update for rsync

4 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2048-1

Security update for rsync

4 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2038-1

Security update for rsync

4 месяца назад
ubuntu логотип
CVE-2026-41035

In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort call, leading to a receiver use-after-free. The victim must run rsync with -X (aka --xattrs). On Linux, many (but not all) common configurations are vulnerable. Non-Linux platforms are more widely vulnerable.

CVSS3: 7.4
0%
Низкий
5 месяцев назад
redhat логотип
CVE-2026-41035

In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort call, leading to a receiver use-after-free. The victim must run rsync with -X (aka --xattrs). On Linux, many (but not all) common configurations are vulnerable. Non-Linux platforms are more widely vulnerable.

CVSS3: 7.4
0%
Низкий
5 месяцев назад
nvd логотип
CVE-2026-41035

In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort call, leading to a receiver use-after-free. The victim must run rsync with -X (aka --xattrs). On Linux, many (but not all) common configurations are vulnerable. Non-Linux platforms are more widely vulnerable.

CVSS3: 7.4
0%
Низкий
5 месяцев назад
msrc логотип
CVE-2026-41035

In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort call, leading to a receiver use-after-free. The victim must run rsync with -X (aka --xattrs). On Linux, many (but not all) common configurations are vulnerable. Non-Linux platforms are more widely vulnerable.

CVSS3: 7.4
0%
Низкий
5 месяцев назад
debian логотип
CVE-2026-41035

In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted len ...

CVSS3: 7.4
0%
Низкий
5 месяцев назад
ubuntu логотип
CVE-2024-12086

A flaw was found in rsync. It could allow a server to enumerate the contents of an arbitrary file from the client's machine. This issue occurs when files are being copied from a client to a server. During this process, the rsync server will send checksums of local data to the client to compare with in order to determine what data needs to be sent to the server. By sending specially constructed checksum values for arbitrary files, an attacker may be able to reconstruct the data of those files byte-by-byte based on the responses from the client.

CVSS3: 6.1
2%
Низкий
больше 1 года назад
redhat логотип
CVE-2024-12086

A flaw was found in rsync. It could allow a server to enumerate the contents of an arbitrary file from the client's machine. This issue occurs when files are being copied from a client to a server. During this process, the rsync server will send checksums of local data to the client to compare with in order to determine what data needs to be sent to the server. By sending specially constructed checksum values for arbitrary files, an attacker may be able to reconstruct the data of those files byte-by-byte based on the responses from the client.

CVSS3: 6.1
2%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-12086

A flaw was found in rsync. It could allow a server to enumerate the contents of an arbitrary file from the client's machine. This issue occurs when files are being copied from a client to a server. During this process, the rsync server will send checksums of local data to the client to compare with in order to determine what data needs to be sent to the server. By sending specially constructed checksum values for arbitrary files, an attacker may be able to reconstruct the data of those files byte-by-byte based on the responses from the client.

CVSS3: 6.1
2%
Низкий
больше 1 года назад
msrc логотип
CVE-2024-12086

Rsync: rsync server leaks arbitrary client files

CVSS3: 6.1
2%
Низкий
больше 1 года назад
debian логотип
CVE-2024-12086

A flaw was found in rsync. It could allow a server to enumerate the co ...

CVSS3: 6.1
2%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2026:2002-1

Security update for rsync

0%
Низкий
4 месяца назад
rocky логотип
RLSA-2026:19152

Important: rsync security update

0%
Низкий
4 месяца назад
rocky логотип
RLSA-2026:17481

Important: rsync security update

0%
Низкий
4 месяца назад
github логотип
GHSA-m34r-4v3r-pp9v

In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort call, leading to a receiver use-after-free. The victim must run rsync with -X (aka --xattrs). On Linux, many (but not all) common configurations are vulnerable. Non-Linux platforms are more widely vulnerable.

CVSS3: 7.4
0%
Низкий
5 месяцев назад
github логотип
GHSA-82c6-8mfc-c23h

A flaw was found in rsync. It could allow a server to enumerate the contents of an arbitrary file from the client's machine. This issue occurs when files are being copied from a client to a server. During this process, the rsync server will send checksums of local data to the client to compare with in order to determine what data needs to be sent to the server. By sending specially constructed checksum values for arbitrary files, an attacker may be able to reconstruct the data of those files byte-by-byte based on the responses from the client.

CVSS3: 6.1
2%
Низкий
больше 1 года назад

Уязвимостей на страницу