V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
Filters

All vulnerabilities

38 / 38
Product: debian:rsync×Clear all
9.8
CVE-2024-12084AST
A heap-based buffer overflow flaw was found in the rsync daemon. This issue is due to improper …
2024-01-01Pre-auth
EPSS71.8%
pct 99
7.5
CVE-2003-0962DEB
Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote at…
2003-01-01
EPSS21.2%
pct 97
7.5
CVE-2024-12085AST
A flaw was found in rsync which could be triggered when rsync compares file checksums. This fla…
2024-01-01
EPSS9.4%
pct 94
9.8
CVE-2016-9841ANC
inffast.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by l…
2016-01-01Pre-auth
EPSS7.5%
pct 93
4.3
CVE-2014-9512DEB
rsync 3.1.1 allows remote attackers to write to arbitrary files via a symlink attack on a file …
2014-01-01
EPSS6.5%
pct 92
6.3
CVE-2018-5764AST
The parse_arguments function in options.c in rsyncd in rsync before 3.1.3 does not prevent mult…
2018-01-01
EPSS6.4%
pct 92
9.8
CVE-2016-9843ANC
The crc32_big function in crc32.c in zlib 1.2.8 might allow context-dependent attackers to have…
2016-01-01Pre-auth
EPSS6.0%
pct 92
7.5
CVE-2005-2096DEB
zlib 1.2 and later versions allows remote attackers to cause a denial of service (crash) via a …
2005-01-01
EPSS5.5%
pct 91
4.3
CVE-2007-6200DEB
Unspecified vulnerability in rsync before 3.0.0pre6, when running a writable rsync daemon, allo…
2007-01-01
EPSS5.4%
pct 91
6.5
CVE-2017-16548DEB
The receive_xattr function in xattrs.c in rsync 3.1.2 and 3.1.3-development does not check for …
2017-01-01
EPSS5.2%
pct 91
8.8
CVE-2016-9842ANC
The inflateMark function in inflate.c in zlib 1.2.8 might allow context-dependent attackers to …
2016-01-01Pre-auth
EPSS5.2%
pct 91
7.5
CVE-2008-1720DEB
Buffer overflow in rsync 2.6.9 to 3.0.1, with extended attribute (xattr) support enabled, might…
2008-01-01
EPSS5.0%
pct 91
8.8
CVE-2016-9840ANC
inftrees.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by …
2016-01-01Pre-auth
EPSS4.8%
pct 90
7.5
CVE-2024-12088AST
A flaw was found in rsync. When using the `--safe-links` option, the rsync client fails to prop…
2024-01-01Pre-auth
EPSS4.6%
pct 90
9.3
CVE-2007-6199DEB
rsync before 3.0.0pre6, when running a writable rsync daemon that is not using chroot, allows r…
2007-01-01
EPSS4.1%
pct 89
4.3
CVE-2014-2855DEB
The check_secret function in authenticate.c in rsync 3.1.0 and earlier allows remote attackers …
2014-01-01
EPSS4.1%
pct 89
7.5
CVE-2006-2083DEB
Integer overflow in the receive_xattr function in the extended attributes patch (xattr.c) for r…
2006-01-01
EPSS3.6%
pct 88
5.0
CVE-2004-0426DEB
rsync before 2.6.1 does not properly sanitize paths when running a read/write daemon without us…
2004-01-01
EPSS3.4%
pct 87
4.8
CVE-2017-17434DEB
The daemon in rsync 3.1.2, and 3.1.3-development before 2017-12-03, does not check for fnamecmp…
2017-01-01Pre-auth
EPSS3.4%
pct 87
6.8
CVE-2007-4091DEB
Multiple off-by-one errors in the sender.c in rsync 2.6.9 might allow remote attackers to execu…
2007-01-01
EPSS3.3%
pct 87
3.6
CVE-2011-1097DEB
rsync 3.x before 3.0.8, when certain recursion, deletion, and ownership options are used, allow…
2011-01-01
EPSS3.2%
pct 86
6.4
CVE-2004-0792DEB
Directory traversal vulnerability in the sanitize_path function in util.c for rsync 2.6.2 and e…
2004-01-01
EPSS2.3%
pct 81
7.5
CVE-2024-12087AST
A path traversal vulnerability exists in rsync. It stems from behavior enabled by the `--inc-re…
2024-01-01Pre-auth
EPSS2.2%
pct 80
4.8
CVE-2017-17433DEB
The recv_files function in receiver.c in the daemon in rsync 3.1.2, and 3.1.3-development befor…
2017-01-01Pre-auth
EPSS1.8%
pct 75
6.8
CVE-2024-12086AST
A flaw was found in rsync. It could allow a server to enumerate the contents of an arbitrary fi…
2024-01-01Pre-auth
EPSS1.8%
pct 75
7.4
CVE-2022-29154AST
An issue was discovered in rsync before 3.2.5 that allows malicious remote servers to write arb…
2022-01-01Pre-auth
EPSS1.7%
pct 73
9.1
CVE-2020-14387DEB
A flaw was found in rsync in versions since 3.2.0pre1. Rsync improperly validates certificate w…
2020-01-01Pre-auth
EPSS1.1%
pct 61
5.4
CVE-2017-15994DEB
rsync 3.1.3-development before 2017-10-24 mishandles archaic checksums, which makes it easier f…
2017-01-01Pre-auth
EPSS1.0%
pct 58
4.6
CVE-2004-2093DEB
Buffer overflow in the open_socket_out function in socket.c for rsync 2.5.7 and earlier allows …
2004-01-01
EPSS1.0%
pct 58
6.1
CVE-2026-43618DEB
Rsync version 3.4.2 and prior contain an integer overflow vulnerability in the compressed-token…
2026-01-01
EPSS0.6%
pct 45
6.9
CVE-2026-43620DEB
Rsync version 3.4.2 and prior contain a receiver-side out-of-bounds array read vulnerability in…
2026-01-01Pre-auth
EPSS0.5%
pct 38
5.6
CVE-2024-12747AST
A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handl…
2024-01-01
EPSS0.4%
pct 29
2.1
CVE-2026-45232DEB
Rsync versions before 3.4.3 contain an off-by-one out-of-bounds stack write vulnerability in th…
2026-01-01Pre-auth
EPSS0.4%
pct 26
7.8
CVE-2026-41035DEB
In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort …
2026-01-01
EPSS0.3%
pct 23
6.3
CVE-2026-43617DEB
Rsync version 3.4.2 and prior contain an authorization bypass vulnerability in the rsync daemon…
2026-01-01Pre-auth
EPSS0.3%
pct 20
4.3
CVE-2025-10158AST
A malicious client acting as the receiver of an rsync file transfer can trigger an out of bound…
2025-01-01
EPSS0.3%
pct 19
7.3
CVE-2026-29518DEB
Rsync versions before 3.4.3 contain a time-of-check to time-of-use (TOCTOU) race condition in d…
2026-01-01
EPSS0.1%
pct 4
7.2
CVE-2026-43619DEB
Rsync version 3.4.2 and prior contain symlink race condition vulnerabilities in path-based syst…
2026-01-01
EPSS0.1%
pct 3
Select a vulnerability on the left to open the preview.