Логотип exploitDog
bind:CVE-2024-12747
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-12747

Количество 17

Количество 17

ubuntu логотип

CVE-2024-12747

около 1 года назад

A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rsync's default behavior when encountering symbolic links is to skip them. If an attacker replaced a regular file with a symbolic link at the right time, it was possible to bypass the default behavior and traverse symbolic links. Depending on the privileges of the rsync process, an attacker could leak sensitive information, potentially leading to privilege escalation.

CVSS3: 5.6
EPSS: Низкий
redhat логотип

CVE-2024-12747

около 1 года назад

A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rsync's default behavior when encountering symbolic links is to skip them. If an attacker replaced a regular file with a symbolic link at the right time, it was possible to bypass the default behavior and traverse symbolic links. Depending on the privileges of the rsync process, an attacker could leak sensitive information, potentially leading to privilege escalation.

CVSS3: 5.6
EPSS: Низкий
nvd логотип

CVE-2024-12747

около 1 года назад

A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rsync's default behavior when encountering symbolic links is to skip them. If an attacker replaced a regular file with a symbolic link at the right time, it was possible to bypass the default behavior and traverse symbolic links. Depending on the privileges of the rsync process, an attacker could leak sensitive information, potentially leading to privilege escalation.

CVSS3: 5.6
EPSS: Низкий
msrc логотип

CVE-2024-12747

около 1 года назад

Rsync: race condition in rsync handling symbolic links

CVSS3: 5.6
EPSS: Низкий
debian логотип

CVE-2024-12747

около 1 года назад

A flaw was found in rsync. This vulnerability arises from a race condi ...

CVSS3: 5.6
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0991-1

11 месяцев назад

Security update for rsync

EPSS: Низкий
github логотип

GHSA-gp7r-m4cc-qhwq

около 1 года назад

A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rsync's default behavior when encountering symbolic links is to skip them. If an attacker replaced a regular file with a symbolic link at the right time, it was possible to bypass the default behavior and traverse symbolic links. Depending on the privileges of the rsync process, an attacker could leak sensitive information, potentially leading to privilege escalation.

CVSS3: 5.6
EPSS: Низкий
fstec логотип

BDU:2025-00372

около 1 года назад

Уязвимость утилиты для передачи и синхронизации файлов Rsync, связанная с ошибками синхронизации при использовании общего ресурса, позволяющая нарушителю повысить свои привилегии

CVSS3: 5.6
EPSS: Низкий
rocky логотип

RLSA-2025:7050

4 месяца назад

Moderate: rsync security update

EPSS: Низкий
rocky логотип

RLSA-2025:2600

9 месяцев назад

Moderate: rsync security update

EPSS: Низкий
oracle-oval логотип

ELSA-2025-7050

9 месяцев назад

ELSA-2025-7050: rsync security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-2600

11 месяцев назад

ELSA-2025-2600: rsync security update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0166-1

около 1 года назад

Security update for rsync

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0165-1

около 1 года назад

Security update for rsync

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0157-1

около 1 года назад

Security update for rsync

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:0156-1

около 1 года назад

Security update for rsync

EPSS: Низкий
redos логотип

ROS-20250203-04

около 1 года назад

Множественные уязвимости rsync

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-12747

A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rsync's default behavior when encountering symbolic links is to skip them. If an attacker replaced a regular file with a symbolic link at the right time, it was possible to bypass the default behavior and traverse symbolic links. Depending on the privileges of the rsync process, an attacker could leak sensitive information, potentially leading to privilege escalation.

CVSS3: 5.6
0%
Низкий
около 1 года назад
redhat логотип
CVE-2024-12747

A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rsync's default behavior when encountering symbolic links is to skip them. If an attacker replaced a regular file with a symbolic link at the right time, it was possible to bypass the default behavior and traverse symbolic links. Depending on the privileges of the rsync process, an attacker could leak sensitive information, potentially leading to privilege escalation.

CVSS3: 5.6
0%
Низкий
около 1 года назад
nvd логотип
CVE-2024-12747

A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rsync's default behavior when encountering symbolic links is to skip them. If an attacker replaced a regular file with a symbolic link at the right time, it was possible to bypass the default behavior and traverse symbolic links. Depending on the privileges of the rsync process, an attacker could leak sensitive information, potentially leading to privilege escalation.

CVSS3: 5.6
0%
Низкий
около 1 года назад
msrc логотип
CVE-2024-12747

Rsync: race condition in rsync handling symbolic links

CVSS3: 5.6
0%
Низкий
около 1 года назад
debian логотип
CVE-2024-12747

A flaw was found in rsync. This vulnerability arises from a race condi ...

CVSS3: 5.6
0%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0991-1

Security update for rsync

0%
Низкий
11 месяцев назад
github логотип
GHSA-gp7r-m4cc-qhwq

A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rsync's default behavior when encountering symbolic links is to skip them. If an attacker replaced a regular file with a symbolic link at the right time, it was possible to bypass the default behavior and traverse symbolic links. Depending on the privileges of the rsync process, an attacker could leak sensitive information, potentially leading to privilege escalation.

CVSS3: 5.6
0%
Низкий
около 1 года назад
fstec логотип
BDU:2025-00372

Уязвимость утилиты для передачи и синхронизации файлов Rsync, связанная с ошибками синхронизации при использовании общего ресурса, позволяющая нарушителю повысить свои привилегии

CVSS3: 5.6
0%
Низкий
около 1 года назад
rocky логотип
RLSA-2025:7050

Moderate: rsync security update

4 месяца назад
rocky логотип
RLSA-2025:2600

Moderate: rsync security update

9 месяцев назад
oracle-oval логотип
ELSA-2025-7050

ELSA-2025-7050: rsync security update (MODERATE)

9 месяцев назад
oracle-oval логотип
ELSA-2025-2600

ELSA-2025-2600: rsync security update (MODERATE)

11 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:0166-1

Security update for rsync

около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0165-1

Security update for rsync

около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0157-1

Security update for rsync

около 1 года назад
suse-cvrf логотип
SUSE-SU-2025:0156-1

Security update for rsync

около 1 года назад
redos логотип
ROS-20250203-04

Множественные уязвимости rsync

CVSS3: 9.8
около 1 года назад

Уязвимостей на страницу