PT-2026-71661 · Rsync · Rsync
CVSS v4.0
8.8
High
| Vector | AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
rsync versions 3.2.5 through 3.4.x
Description
A heap out-of-bounds write allows remote unauthenticated attackers to write one attacker-controlled byte past the end of a heap allocation. This occurs when a crafted files-from entry containing both an interior and trailing backslash is supplied to a read-only rsync daemon module, causing the
add implied include() function to under-count the trailing backslash during destination buffer sizing.Recommendations
Update to version 3.5.0.
Exploit
Fix
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Rsync