Unspecified vulnerability in rsync before 3.0.0pre6, when running a writable rsync daemon, allows remote attackers to bypass exclude, exclude_from, and filter and read or write hidden files via (1) symlink, (2) partial-dir, (3) backup-dir, and unspecified (4) dest options.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Slackware_linux | Slackware | 8.1 (including) | 8.1 (including) |
Slackware_linux | Slackware | 9.0 (including) | 9.0 (including) |
Slackware_linux | Slackware | 9.1 (including) | 9.1 (including) |
Slackware_linux | Slackware | 10.0 (including) | 10.0 (including) |
Slackware_linux | Slackware | 10.1 (including) | 10.1 (including) |
Slackware_linux | Slackware | 10.2 (including) | 10.2 (including) |
Slackware_linux | Slackware | 11.0 (including) | 11.0 (including) |
Slackware_linux | Slackware | 12.0 (including) | 12.0 (including) |
Red Hat Enterprise Linux 5 | RedHat | rsync-0:3.0.6-4.el5 | * |
Rsync | Ubuntu | dapper | * |
Rsync | Ubuntu | edgy | * |
Rsync | Ubuntu | feisty | * |
Rsync | Ubuntu | gutsy | * |
Rsync | Ubuntu | upstream | * |