Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 7

Количество 7

ubuntu логотип

CVE-2026-70457

18 дней назад

rsync 3.2.3 before 3.5.0 contains an out-of-bounds write in parse_size_arg() where the return value of snprintf() is used directly as an index into a .bss-segment array without bounds checking. When snprintf truncates the formatted size string, the return value equals the number of characters that would have been written including the truncated portion, and this value may exceed the array length. The subsequent indexed write targets memory outside the intended array bounds, corrupting .bss memory.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2026-70457

18 дней назад

rsync 3.2.3 before 3.5.0 contains an out-of-bounds write in parse_size_arg() where the return value of snprintf() is used directly as an index into a .bss-segment array without bounds checking. When snprintf truncates the formatted size string, the return value equals the number of characters that would have been written including the truncated portion, and this value may exceed the array length. The subsequent indexed write targets memory outside the intended array bounds, corrupting .bss memory.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2026-70457

8 дней назад

rsync 3.2.3 < 3.5.0 Out-of-Bounds Write via parse_size_arg()

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2026-70457

18 дней назад

rsync 3.2.3before 3.5.0contains an out-of-bounds write in parse_size_a ...

CVSS3: 6.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3657-1

11 дней назад

Security update for rsync

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3634-1

14 дней назад

Security update for rsync

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21650-1

5 дней назад

Security update for rsync

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-70457

rsync 3.2.3 before 3.5.0 contains an out-of-bounds write in parse_size_arg() where the return value of snprintf() is used directly as an index into a .bss-segment array without bounds checking. When snprintf truncates the formatted size string, the return value equals the number of characters that would have been written including the truncated portion, and this value may exceed the array length. The subsequent indexed write targets memory outside the intended array bounds, corrupting .bss memory.

CVSS3: 6.5
0%
Низкий
18 дней назад
nvd логотип
CVE-2026-70457

rsync 3.2.3 before 3.5.0 contains an out-of-bounds write in parse_size_arg() where the return value of snprintf() is used directly as an index into a .bss-segment array without bounds checking. When snprintf truncates the formatted size string, the return value equals the number of characters that would have been written including the truncated portion, and this value may exceed the array length. The subsequent indexed write targets memory outside the intended array bounds, corrupting .bss memory.

CVSS3: 6.5
0%
Низкий
18 дней назад
msrc логотип
CVE-2026-70457

rsync 3.2.3 < 3.5.0 Out-of-Bounds Write via parse_size_arg()

CVSS3: 6.5
0%
Низкий
8 дней назад
debian логотип
CVE-2026-70457

rsync 3.2.3before 3.5.0contains an out-of-bounds write in parse_size_a ...

CVSS3: 6.5
0%
Низкий
18 дней назад
suse-cvrf логотип
SUSE-SU-2026:3657-1

Security update for rsync

11 дней назад
suse-cvrf логотип
SUSE-SU-2026:3634-1

Security update for rsync

14 дней назад
suse-cvrf логотип
openSUSE-SU-2026:21650-1

Security update for rsync

5 дней назад

Уязвимостей на страницу