[Forgot Password]
Login  Register Subscribe

30389

 
 

423868

 
 

244625

 
 

909

 
 

193379

 
 

277

Paid content will be excluded from the download.


Download | Alert*
OVAL

[3.7] rsync: Several vulnerabilities (CVE-2017-16548, CVE-2017-17433, CVE-2017-17434)

ID: oval:org.secpod.oval:def:1800776Date: (C)2018-03-29   (M)2023-11-10
Class: PATCHFamily: unix




CVE-2017-16548: The receive_xattr function in xattrs.c in rsync 3.1.2 and 3.1.3-development does not check for a trailing "\0" character in an xattr name, which allows remote attackers to cause a denial of service or possibly have unspecified other impact by sending crafted data to the daemon.

Platform:
Alpine Linux 3.7
Product:
rsync
Reference:
8318
CVE-2017-16548
CVE-2017-17433
CVE-2017-17434
CVE    3
CVE-2017-16548
CVE-2017-17433
CVE-2017-17434
CPE    2
cpe:/a:rsync:rsync
cpe:/o:alpinelinux:alpine_linux:3.7

© SecPod Technologies