Количество 13
Количество 13
CVE-2026-53791
rsync daemon before 3.5.0 contains an IP address spoofing vulnerability that allows unauthenticated remote attackers to bypass IP-based access controls by sending a crafted PROXY protocol header with a forged source address. Attackers who can connect directly to the rsync daemon can inject a spoofed source IP in the PROXY protocol header to circumvent hosts allow/deny rules, gaining unauthorized access that would otherwise be blocked based on their real source address.
CVE-2026-53791
rsync daemon before 3.5.0 contains an IP address spoofing vulnerability that allows unauthenticated remote attackers to bypass IP-based access controls by sending a crafted PROXY protocol header with a forged source address. Attackers who can connect directly to the rsync daemon can inject a spoofed source IP in the PROXY protocol header to circumvent hosts allow/deny rules, gaining unauthorized access that would otherwise be blocked based on their real source address.
CVE-2026-53791
rsync daemon before 3.5.0 contains an IP address spoofing vulnerability that allows unauthenticated remote attackers to bypass IP-based access controls by sending a crafted PROXY protocol header with a forged source address. Attackers who can connect directly to the rsync daemon can inject a spoofed source IP in the PROXY protocol header to circumvent hosts allow/deny rules, gaining unauthorized access that would otherwise be blocked based on their real source address.
CVE-2026-53791
rsync < 3.5.0 Daemon IP Spoofing via PROXY Protocol Header
CVE-2026-53791
rsync daemon before 3.5.0contains an IP address spoofing vulnerability ...
BDU:2026-14821
Уязвимость утилиты для передачи и синхронизации файлов Rsync, связанная с обходом аутентификации посредством спуфинга, позволяющая нарушителю обойти существующие механизмы безопасности
RLSA-2026:67462
Important: rsync security, bug fix, and enhancement update
ELSA-2026-67462-0
ELSA-2026-67462-0: rsync security, bug fix, and enhancement update (IMPORTANT)
RLSA-2026:67463
Important: rsync security, bug fix, and enhancement update
ELSA-2026-67463-0
ELSA-2026-67463-0: rsync security, bug fix, and enhancement update (IMPORTANT)
SUSE-SU-2026:3657-1
Security update for rsync
SUSE-SU-2026:3634-1
Security update for rsync
openSUSE-SU-2026:21650-1
Security update for rsync
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-53791 rsync daemon before 3.5.0 contains an IP address spoofing vulnerability that allows unauthenticated remote attackers to bypass IP-based access controls by sending a crafted PROXY protocol header with a forged source address. Attackers who can connect directly to the rsync daemon can inject a spoofed source IP in the PROXY protocol header to circumvent hosts allow/deny rules, gaining unauthorized access that would otherwise be blocked based on their real source address. | CVSS3: 9.1 | 1% Низкий | около 1 месяца назад | |
CVE-2026-53791 rsync daemon before 3.5.0 contains an IP address spoofing vulnerability that allows unauthenticated remote attackers to bypass IP-based access controls by sending a crafted PROXY protocol header with a forged source address. Attackers who can connect directly to the rsync daemon can inject a spoofed source IP in the PROXY protocol header to circumvent hosts allow/deny rules, gaining unauthorized access that would otherwise be blocked based on their real source address. | CVSS3: 7.4 | 1% Низкий | около 1 месяца назад | |
CVE-2026-53791 rsync daemon before 3.5.0 contains an IP address spoofing vulnerability that allows unauthenticated remote attackers to bypass IP-based access controls by sending a crafted PROXY protocol header with a forged source address. Attackers who can connect directly to the rsync daemon can inject a spoofed source IP in the PROXY protocol header to circumvent hosts allow/deny rules, gaining unauthorized access that would otherwise be blocked based on their real source address. | CVSS3: 9.1 | 1% Низкий | около 1 месяца назад | |
CVE-2026-53791 rsync < 3.5.0 Daemon IP Spoofing via PROXY Protocol Header | 1% Низкий | 28 дней назад | ||
CVE-2026-53791 rsync daemon before 3.5.0contains an IP address spoofing vulnerability ... | CVSS3: 9.1 | 1% Низкий | около 1 месяца назад | |
BDU:2026-14821 Уязвимость утилиты для передачи и синхронизации файлов Rsync, связанная с обходом аутентификации посредством спуфинга, позволяющая нарушителю обойти существующие механизмы безопасности | CVSS3: 9.1 | 1% Низкий | около 1 месяца назад | |
RLSA-2026:67462 Important: rsync security, bug fix, and enhancement update | 5 дней назад | |||
ELSA-2026-67462-0 ELSA-2026-67462-0: rsync security, bug fix, and enhancement update (IMPORTANT) | 5 дней назад | |||
RLSA-2026:67463 Important: rsync security, bug fix, and enhancement update | 5 дней назад | |||
ELSA-2026-67463-0 ELSA-2026-67463-0: rsync security, bug fix, and enhancement update (IMPORTANT) | 5 дней назад | |||
SUSE-SU-2026:3657-1 Security update for rsync | около 1 месяца назад | |||
SUSE-SU-2026:3634-1 Security update for rsync | около 1 месяца назад | |||
openSUSE-SU-2026:21650-1 Security update for rsync | 25 дней назад |
Уязвимостей на страницу