First published: Wed Aug 18 2004(Updated: )
Directory traversal vulnerability in the sanitize_path function in util.c for rsync 2.6.2 and earlier, when chroot is disabled, allows attackers to read or write certain files.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Andrew Tridgell Rsync | =2.3.2_1.2 | |
Andrew Tridgell Rsync | =2.3.2_1.2 | |
Andrew Tridgell Rsync | =2.5.1 | |
Andrew Tridgell Rsync | =2.5.5 | |
Andrew Tridgell Rsync | =2.3.2_1.2 | |
Andrew Tridgell Rsync | =2.3.1 | |
Andrew Tridgell Rsync | =2.5.2 | |
Andrew Tridgell Rsync | =2.4.0 | |
Andrew Tridgell Rsync | =2.3.2_1.2 | |
Andrew Tridgell Rsync | =2.3.2_1.3 | |
Andrew Tridgell Rsync | =2.6.2 | |
Andrew Tridgell Rsync | =2.4.6 | |
Andrew Tridgell Rsync | =2.4.8 | |
Andrew Tridgell Rsync | =2.5.7 | |
Andrew Tridgell Rsync | =2.5.4 | |
Andrew Tridgell Rsync | =2.4.5 | |
Andrew Tridgell Rsync | =2.6.1 | |
Andrew Tridgell Rsync | =2.5.3 | |
Andrew Tridgell Rsync | =2.3.2 | |
Andrew Tridgell Rsync | =2.6 | |
Andrew Tridgell Rsync | =2.4.4 | |
Andrew Tridgell Rsync | =2.5.6 | |
Andrew Tridgell Rsync | =2.5.0 | |
Andrew Tridgell Rsync | =2.4.3 | |
Andrew Tridgell Rsync | =2.4.1 | |
Andrew Tridgell Rsync | =2.3.2_1.2 | |
Andrew Tridgell Rsync | =2.3.2_1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.