Show filters
24 Total Results
Displaying 21-24 of 24
Sort by:
Attacker Value
Unknown

CVE-2003-0962

Disclosure Date: December 15, 2003 (last updated February 22, 2025)
Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote attackers to execute arbitrary code and possibly escape the chroot jail.
0
Attacker Value
Unknown

CVE-2002-0080

Disclosure Date: March 15, 2002 (last updated February 22, 2025)
rsync, when running in daemon mode, does not properly call setgroups before dropping privileges, which could provide supplemental group privileges to local users, who could then read certain files that would otherwise be disallowed.
0
Attacker Value
Unknown

CVE-2002-0048

Disclosure Date: February 27, 2002 (last updated February 22, 2025)
Multiple signedness errors (mixed signed and unsigned numbers) in the I/O functions of rsync 2.4.6, 2.3.2, and other versions allow remote attackers to cause a denial of service and execute arbitrary code in the rsync client or server.
0
Attacker Value
Unknown

CVE-1999-0473

Disclosure Date: April 07, 1999 (last updated February 22, 2025)
The rsync command before rsync 2.3.1 may inadvertently change the permissions of the client's working directory to the permissions of the directory being transferred.
0