[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

[3.4] rsync: Several vulnerabilities (CVE-2017-16548, CVE-2017-17433, CVE-2017-17434)

ID: oval:org.secpod.oval:def:1800665Date: (C)2018-03-28   (M)2023-12-20
Class: PATCHFamily: unix




CVE-2017-16548: The receive_xattr function in xattrs.c in rsync 3.1.2 and 3.1.3-development does not check for a trailing "\0" character in an xattr name, which allows remote attackers to cause a denial of service or possibly have unspecified other impact by sending crafted data to the daemon.

Platform:
Alpine Linux 3.4
Product:
rsync
Reference:
8321
CVE-2017-16548
CVE-2017-17433
CVE-2017-17434
CVE    3
CVE-2017-16548
CVE-2017-17433
CVE-2017-17434
CPE    2
cpe:/a:rsync:rsync
cpe:/o:alpinelinux:alpine_linux:3.4

© SecPod Technologies