ZeroHour

CVE-2024-12087

PoC
CVSS 3.1
7.5 high
EPSS
2%p82
Published
()
Modified
Description

A path traversal vulnerability exists in rsync. It stems from behavior enabled by the `--inc-recursive` option, a default-enabled option for many client options and can be enabled by the server even if not explicitly enabled by the client. When using the `--inc-recursive` option, a lack of proper symlink verification coupled with deduplication checks occurring on a per-file-list basis could allow a server to write files outside of the client's intended destination directory. A malicious server could write malicious files to arbitrary locations named after valid directories/paths on the client.

Vendors
sambaalmalinuxarchlinuxgentoonixossusetritondatacenterredhat
Products
rsync, almalinux, arch linux, linux, nixos, suse linux, smartos, enterprise linux, enterprise linux eus, enterprise linux for arm 64, enterprise linux for arm 64 eus, enterprise linux for ibm z systems
Weakness
CWE-22
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news