LWN.net Logo

rsync: integer overflow

Package(s):rsync CVE #(s):CVE-2008-1720
Created:April 11, 2008 Updated:May 9, 2008
Description: From the Debian advisory: Sebastian Krahmer discovered that an integer overflow in rsync's code for handling extended attributes may lead to arbitrary code execution.
Alerts:
SuSE SUSE-SR:2008:011 2008-05-09
Gentoo 200804-16 2008-04-17
Fedora FEDORA-2008-3047 2008-04-17
Fedora FEDORA-2008-3060 2008-04-17
Mandriva MDVSA-2008:084 2007-04-11
Ubuntu USN-600-1 2008-04-11
Debian DSA-1545-1 2008-04-10

(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds