Skip to main content

Vendor/product archive

samba / rsync CVEs

Beta · best-effort

24 CVEs tagged to samba / rsync4 Critical, 9 High, 8 Medium, 3 Low, 0 Unrated.

CVE-2026-29518

Published May 20, 2026

Rsync versions before 3.4.3 contain a time-of-check to time-of-use (TOCTOU) race condition in daemon file handling that allows attackers to redirect file writes outside intended d…

CVSS 7.3 · High
evidence mentions
12
Buzz score
45.6
Vendor/product tagsBeta · best-effort

CVE-2026-45232

Published May 20, 2026

Rsync versions before 3.4.3 contain an off-by-one out-of-bounds stack write vulnerability in the establish_proxy_connection() function in socket.c that allows network attackers to…

CVSS 2.1 · Low
evidence mentions
4
Buzz score
27.6
Vendor/product tagsBeta · best-effort

CVE-2026-43620

Published May 20, 2026

Rsync version 3.4.2 and prior contain a receiver-side out-of-bounds array read vulnerability in recv_files() in receiver.c that allows a malicious rsync server to crash the rsync…

CVSS 6.9 · Medium
evidence mentions
5
Buzz score
29.4
Vendor/product tagsBeta · best-effort

CVE-2026-43619

Published May 20, 2026

Rsync version 3.4.2 and prior contain symlink race condition vulnerabilities in path-based system calls including chmod, lchown, utimes, rename, unlink, mkdir, symlink, mknod, lin…

CVSS 7.2 · High
evidence mentions
5
Buzz score
29.4
Vendor/product tagsBeta · best-effort

CVE-2026-43618

Published May 20, 2026

Rsync version 3.4.2 and prior contain an integer overflow vulnerability in the compressed-token decoder where a 32-bit signed counter is not checked for overflow, allowing a malic…

CVSS 6.1 · Medium
evidence mentions
12
Buzz score
45.1
Vendor/product tagsBeta · best-effort

CVE-2026-43617

Published May 20, 2026

Rsync version 3.4.2 and prior contain an authorization bypass vulnerability in the rsync daemon's hostname-based access control list enforcement when configured with chroot. Attac…

CVSS 6.3 · Medium
evidence mentions
4
Buzz score
27.6
Vendor/product tagsBeta · best-effort

CVE-2026-41035

Published Apr 16, 2026

In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort call, leading to a receiver use-after-free. The victim must run rsync with -X (aka -…

CVSS 7.4 · High
evidence mentions
30
Buzz score
49.5
Vendor/product tagsBeta · best-effort

CVE-2024-12086

Published Jan 14, 2025

A flaw was found in rsync. It could allow a server to enumerate the contents of an arbitrary file from the client's machine. This issue occurs when files are being copied from a c…

CVSS 6.1 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2022-29154

Published Aug 2, 2022

An issue was discovered in rsync before 3.2.5 that allows malicious remote servers to write arbitrary files inside the directories of connecting peers. The server chooses which fi…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2020-14387

Published May 27, 2021

A flaw was found in rsync in versions since 3.2.0pre1. Rsync improperly validates certificate with host mismatch vulnerability. A remote, unauthenticated attacker could exploit th…

CVSS 7.4 · High
Vendor/product tagsBeta · best-effort

CVE-2017-17434

Published Dec 6, 2017

The daemon in rsync 3.1.2, and 3.1.3-development before 2017-12-03, does not check for fnamecmp filenames in the daemon_filter_list data structure (in the recv_files function in r…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-17433

Published Dec 6, 2017

The recv_files function in receiver.c in the daemon in rsync 3.1.2, and 3.1.3-development before 2017-12-03, proceeds with certain file metadata updates before checking for a file…

CVSS 3.7 · Low
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2017-15994

Published Oct 29, 2017

rsync 3.1.3-development before 2017-10-24 mishandles archaic checksums, which makes it easier for remote attackers to bypass intended access restrictions. NOTE: the rsync developm…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2014-2855

Published Apr 23, 2014

The check_secret function in authenticate.c in rsync 3.1.0 and earlier allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a user name whi…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2011-1097

Published Mar 30, 2011

rsync 3.x before 3.0.8, when certain recursion, deletion, and ownership options are used, allows remote rsync servers to cause a denial of service (heap memory corruption and appl…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-1720

Published Apr 10, 2008

Buffer overflow in rsync 2.6.9 to 3.0.1, with extended attribute (xattr) support enabled, might allow remote attackers to execute arbitrary code via unknown vectors.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2002-0080

Published Mar 15, 2002

rsync, when running in daemon mode, does not properly call setgroups before dropping privileges, which could provide supplemental group privileges to local users, who could then r…

CVSS 2.1 · Low
Buzz score
4.0
OTX pulse activity
Vendor/product tagsBeta · best-effort
Showing 1-24 of 24 CVEsPage 1 of 1