Количество 8
Количество 8
CVE-2026-53785
rsync before 3.5.0 contains a path traversal vulnerability that allows a malicious sender to write files outside the intended destination directory tree by crafting relative paths with symlink components in --relative mode. The make_path() function follows symlinks pointing outside the destination tree while creating intermediate directories without verifying that created paths remain within the destination boundary, enabling arbitrary file writes on the receiver's filesystem.
CVE-2026-53785
rsync before 3.5.0 contains a path traversal vulnerability that allows a malicious sender to write files outside the intended destination directory tree by crafting relative paths with symlink components in --relative mode. The make_path() function follows symlinks pointing outside the destination tree while creating intermediate directories without verifying that created paths remain within the destination boundary, enabling arbitrary file writes on the receiver's filesystem.
CVE-2026-53785
rsync before 3.5.0 contains a path traversal vulnerability that allows a malicious sender to write files outside the intended destination directory tree by crafting relative paths with symlink components in --relative mode. The make_path() function follows symlinks pointing outside the destination tree while creating intermediate directories without verifying that created paths remain within the destination boundary, enabling arbitrary file writes on the receiver's filesystem.
CVE-2026-53785
rsync < 3.5.0 Path Traversal Write Escape via --relative Mode
CVE-2026-53785
rsyncbefore 3.5.0contains a path traversal vulnerability that allows a ...
SUSE-SU-2026:3657-1
Security update for rsync
SUSE-SU-2026:3634-1
Security update for rsync
openSUSE-SU-2026:21650-1
Security update for rsync
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-53785 rsync before 3.5.0 contains a path traversal vulnerability that allows a malicious sender to write files outside the intended destination directory tree by crafting relative paths with symlink components in --relative mode. The make_path() function follows symlinks pointing outside the destination tree while creating intermediate directories without verifying that created paths remain within the destination boundary, enabling arbitrary file writes on the receiver's filesystem. | CVSS3: 7.1 | 0% Низкий | 24 дня назад | |
CVE-2026-53785 rsync before 3.5.0 contains a path traversal vulnerability that allows a malicious sender to write files outside the intended destination directory tree by crafting relative paths with symlink components in --relative mode. The make_path() function follows symlinks pointing outside the destination tree while creating intermediate directories without verifying that created paths remain within the destination boundary, enabling arbitrary file writes on the receiver's filesystem. | CVSS3: 7.1 | 0% Низкий | 24 дня назад | |
CVE-2026-53785 rsync before 3.5.0 contains a path traversal vulnerability that allows a malicious sender to write files outside the intended destination directory tree by crafting relative paths with symlink components in --relative mode. The make_path() function follows symlinks pointing outside the destination tree while creating intermediate directories without verifying that created paths remain within the destination boundary, enabling arbitrary file writes on the receiver's filesystem. | CVSS3: 7.1 | 0% Низкий | 24 дня назад | |
CVE-2026-53785 rsync < 3.5.0 Path Traversal Write Escape via --relative Mode | 0% Низкий | 14 дней назад | ||
CVE-2026-53785 rsyncbefore 3.5.0contains a path traversal vulnerability that allows a ... | CVSS3: 7.1 | 0% Низкий | 24 дня назад | |
SUSE-SU-2026:3657-1 Security update for rsync | 17 дней назад | |||
SUSE-SU-2026:3634-1 Security update for rsync | 20 дней назад | |||
openSUSE-SU-2026:21650-1 Security update for rsync | 11 дней назад |
Уязвимостей на страницу