PT-2026-71659 · Rsync · Rsync
CVSS v4.0
6.9
Medium
| Vector | AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X |
Name of the Vulnerable Software and Affected Versions
rsync versions 3.0.0 through 3.4.x
Description
A null pointer dereference occurs in the daemon child process. A remote attacker can cause the daemon to crash by sending a file list where the first entry is a dot entry not typed as a directory. The daemon processes the first file list entry as a directory structure pointer without verifying the entry type, leading to an invalid or uninitialized pointer dereference that terminates the client connection.
Recommendations
Update rsync to version 3.5.0 or later.
Exploit
Fix
Use of Uninitialized Resource
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Rsync