rsync

Licenses: GPL-2.0 | GPL-3.0

Direct Vulnerabilities

Known vulnerabilities in the https://download.samba.org|rsync package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • H
Symlink Attack

[,3.5.0)
  • H
Symlink Attack

[,3.5.0)
  • M
Symlink Attack

[,3.5.0)
  • M
Incorrect Authorization

[,3.5.0)
  • M
CRLF Injection

[,3.5.0)
  • H
Reliance on Untrusted Inputs in a Security Decision

[,3.5.0)
  • C
Command Injection

[,3.5.0)
  • C
User Impersonation

[,3.5.0)
  • H
Improper Validation of Array Index

[,3.5.0)
  • C
Symlink Attack

[,3.5.0)
  • M
Improper Validation of Specified Quantity in Input

[,3.5.0)
  • H
Symlink Attack

[,3.5.0)
  • M
Symlink Attack

[,3.5.0)
  • M
Symlink Attack

[,3.5.0)
  • M
Incorrect Type Conversion or Cast

[,3.5.0)
  • H
Symlink Attack

[,3.5.0)
  • M
Symlink Attack

[,3.5.0)
  • H
Symlink Attack

[,3.5.0)
  • H
UNIX Symbolic Link (Symlink) Following

[,3.5.0)
  • H
Symlink Attack

[,3.5.0)
  • C
Incorrect Authorization

[3.1.0,3.5.0)
  • H
Inefficient Algorithmic Complexity

[,3.5.0)
  • H
Improper Certificate Validation

[,3.5.0)
  • H
Allocation of Resources Without Limits or Throttling

[3.4.2,3.5.0)
  • H
Out-of-bounds Write

[3.0.1,3.5.0)
  • H
Incorrect Calculation of Buffer Size

[3.2.3,3.5.0)
  • H
Out-of-bounds Write

[3.0.0,3.5.0)
  • M
Use of Uninitialized Resource

[3.0.0,3.5.0)
  • C
Directory Traversal

[2.3.3,3.5.0)
  • H
Out-of-bounds Write

[3.2.5,3.5.0)
  • H
Integer Overflow or Wraparound

[3.1.0,3.5.0)
  • H
Incorrect Authorization

[3.1.0,3.5.0)
  • H
Allocation of Resources Without Limits or Throttling

[2.0.0,3.5.0)
  • H
Integer Overflow or Wraparound

[,3.4.3)
  • H
Symlink Attack

[,3.4.3)
  • M
Incorrect Authorization

[,3.4.3)
  • H
Out-of-bounds Read

[,3.4.3)
  • H
Time-of-check Time-of-use (TOCTOU) Race Condition

[,3.4.3)
  • H
Integer Overflow or Wraparound

[,3.4.3)
  • H
Time-of-check Time-of-use (TOCTOU) Race Condition

[,3.4.3)
  • M
Authentication Bypass by Alternate Name

[,3.4.3)
  • H
Out-of-bounds Read

[,3.4.3)
  • L
Off-by-one Error

[,3.4.3)
  • L
Improper Handling of Length Parameter Inconsistency

[0,3.4.2)
  • M
Directory Traversal

[0,3.4.0)
  • C
Heap-based Buffer Overflow

[3.2.7,3.4.0)
  • H
Out-of-Bounds Read

[0,3.4.0)
  • M
Race Condition

[0,3.4.0)
  • M
Detection of Error Condition Without Action

[0,3.4.0)
  • M
Directory Traversal

[0,3.4.0)
  • M
Unauthorized File Write

[,3.2.5)
  • H
Improper Input Validation

[,3.2.5)
  • H
Man-in-the-Middle (MitM)

[3.2.1,3.2.4)
  • C
Denial of Service (DoS)

[,2.5.3)
  • C
Improper Access Control

[,3.2.0)
  • H
Cross-site Scripting (XSS)

[,3.0.0)
  • M
Symlink Attack

[0,3.1.2)
  • M
Denial of Service (DoS)

[,2.6.0)
  • M
Arbitrary Code Execution

[,3.0.3)
  • C
Access Restriction Bypass

[,3.0.0)
  • L
Improper Access Control

[3.1.2,3.1.3-pre1)
  • H
Out-of-Bounds

[2.6.9,3.0.3)
  • H
Arbitrary Code Execution

[,2.6.8)
  • H
Improper Input Validation

[,3.1.1)
  • H
Arbitrary Code Execution

[,2.5.7)
  • M
Out-of-Bounds

[,3.0.8)
  • C
Improper Access Control

[,3.2.0)
  • M
Privilege Escalation

[,2.5.3)
  • M
Directory Traversal

[,2.6.3)
  • H
Improper Input Validation

[,3.1.3)
  • C
Out-of-Bounds

[3.1.2,3.1.3-pre1)