Direct Vulnerabilities

Known vulnerabilities in the rsync package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • M
CRLF Injection

<3.5.0-r0
  • M
Link Following

<3.5.0-r0
  • M
Link Following

<3.5.0-r0
  • M
Link Following

<3.5.0-r0
  • M
Improper Validation of Specified Quantity in Input

<3.5.0-r0
  • M
Improper Validation of Array Index

<3.5.0-r0
  • M
Incorrect Authorization

<3.5.0-r0
  • H
Link Following

<3.5.0-r0
  • H
Reliance on Untrusted Inputs in a Security Decision

<3.5.0-r0
  • M
Integer Overflow or Wraparound

<3.5.0-r0
  • H
Link Following

<3.5.0-r0
  • H
Incorrect Calculation of Buffer Size

<3.5.0-r0
  • H
Symlink Following

<3.5.0-r0
  • H
Not Failing Securely ('Failing Open')

<3.5.0-r0
  • H
Algorithmic Complexity

<3.5.0-r0
  • H
Out-of-bounds Write

<3.5.0-r0
  • H
Improper Certificate Validation

<3.5.0-r0
  • H
Incorrect Authorization

<3.5.0-r0
  • H
Link Following

<3.5.0-r0
  • H
Allocation of Resources Without Limits or Throttling

<3.5.0-r0
  • H
Out-of-bounds Write

<3.5.0-r0
  • M
Use of Uninitialized Resource

<3.5.0-r0
  • C
Authentication Bypass

<3.5.0-r0
  • H
Link Following

<3.5.0-r0
  • H
OS Command Injection

<3.5.0-r0
  • H
Link Following

<3.5.0-r0
  • M
Link Following

<3.5.0-r0
  • M
Incorrect Type Conversion or Cast

<3.5.0-r0
  • M
Link Following

<3.5.0-r0
  • H
Allocation of Resources Without Limits or Throttling

<3.5.0-r0
  • H
Link Following

<3.5.0-r0
  • H
Out-of-bounds Write

<3.5.0-r0
  • H
Directory Traversal

<3.5.0-r0
  • M
Out-of-bounds Read

<3.4.3-r0
  • L
Missing Authorization

<3.1.2-r7
  • M
Authentication Bypass

<3.4.3-r0
  • H
Improper Input Validation

<3.2.4-r2
  • H
Out-of-bounds Read

<3.4.3-r0
  • C
CVE-2017-17434

<3.1.2-r7
  • H
Use of Uninitialized Resource

<3.4.0-r0
  • H
Time-of-check Time-of-use (TOCTOU)

<3.4.3-r0
  • M
Detection of Error Condition Without Action

<3.4.0-r0
  • C
Out-of-bounds Read

<3.1.2-r7
  • H
Directory Traversal

<3.4.0-r0
  • M
Race Condition

<3.4.0-r0
  • H
Directory Traversal

<3.4.0-r0
  • C
Out-of-bounds Write

<3.4.0-r0
  • M
Link Following

<3.4.3-r0
  • L
Off-by-one Error

<3.4.3-r0
  • H
Improper Handling of Length Parameter Inconsistency

<3.4.1-r2
  • L
CVE-2025-10158

<3.4.1-r1