Nessus Plugin #15336

Plugin Index

Note: This file has been created from a downloaded version of the Nessus Plugins from http://www.nessus.org/. Therefore, the information here can be outdated.

[DSA499] DSA-499-2 rsync

Family:
Debian Local Security Checks
Category:
infos
Copyright:
This script is (C) 2004 Michel Arboi
Summary:
DSA-499-2 rsync
Version:
$Revision: 1.4 $
Cve_id:
CAN-2004-0426
Bugtraq_id:
10247
Xrefs:
DSA:499
Description:

A vulnerability was discovered in rsync, a file transfer program,
whereby a remote user could cause an rsync daemon to write files
outside of the intended directory tree. This vulnerability is not
exploitable when the daemon is configured with the 'chroot' option.
For the current stable distribution (woody) this problem has been
fixed in version 2.5.5-0.5.
For the unstable distribution (sid), this problem has been fixed in
version 2.6.1-1.
We recommend that you update your rsync package.


Solution : http://www.debian.org/security/2004/dsa-499
Risk factor : High
Generiert am 27.04.2005 um 18:49:54 Uhr.