CVE-2007-6199
Publication date 1 December 2007
Last updated 24 July 2024
Ubuntu priority
rsync before 3.0.0pre6, when running a writable rsync daemon that is not using chroot, allows remote attackers to access restricted files via unknown vectors that cause rsync to create a symlink that points outside of the module's hierarchy.
Status
Package | Ubuntu Release | Status |
---|---|---|
rsync | ||
Notes
jdstrand
lowering priority as it is only for rsyncd while not running in chroot. This is a not-recommended, non-standard configuration. Above patch adds a configuration option to make this configuration 'safer'.
Patch details
Package | Patch details |
---|---|
rsync |