CVE-2003-0962
published 2003-12-15CVE-2003-0962: Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote attackers to execute arbitrary code and possibly escape the chroot…
PriorityP346high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
21.16%
97.3th percentile
Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote attackers to execute arbitrary code and possibly escape the chroot jail.
Affected
35 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| andrew_tridgell | rsync | — | — |
| andrew_tridgell | rsync | — | — |
| andrew_tridgell | rsync | — | — |
| andrew_tridgell | rsync | — | — |
| andrew_tridgell | rsync | — | — |
| andrew_tridgell | rsync | — | — |
| andrew_tridgell | rsync | — | — |
| andrew_tridgell | rsync | — | — |
| andrew_tridgell | rsync | — | — |
| andrew_tridgell | rsync | — | — |
| andrew_tridgell | rsync | — | — |
| andrew_tridgell | rsync | — | — |
| andrew_tridgell | rsync | — | — |
| andrew_tridgell | rsync | — | — |
| andrew_tridgell | rsync | — | — |
| andrew_tridgell | rsync | — | — |
| debian | rsync | < rsync 2.5.6-1.1 (bookworm) | rsync 2.5.6-1.1 (bookworm) |
| engardelinux | secure_community | — | — |
| engardelinux | secure_community | — | — |
| engardelinux | secure_linux | — | — |
| engardelinux | secure_linux | — | — |
| engardelinux | secure_linux | — | — |
| redhat | rsync | — | — |
| redhat | rsync | — | — |
| redhat | rsync | — | — |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
security flaw
vendor_redhat·2003-12-04·CVSS 7.5
CVE-2003-0962 [HIGH] security flaw
security flaw
Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote attackers to execute arbitrary code and possibly escape the chroot jail.
Debian
CVE-2003-0962: rsync - Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, a...
vendor_debian·2003·CVSS 7.5
CVE-2003-0962 [HIGH] CVE-2003-0962: rsync - Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, a...
Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote attackers to execute arbitrary code and possibly escape the chroot jail.
Scope: local
bookworm: resolved (fixed in 2.5.6-1.1)
bullseye: resolved (fixed in 2.5.6-1.1)
forky: resolved (fixed in 2.5.6-1.1)
sid: resolved (fixed in 2.5.6-1.1)
trixie: resolved (fixed in 2.5.6-1.1)
GHSA
GHSA-wp4j-j8m8-qj4m: Heap-based buffer overflow in rsync before 2
ghsa_unreviewed·2022-05-03
CVE-2003-0962 [HIGH] GHSA-wp4j-j8m8-qj4m: Heap-based buffer overflow in rsync before 2
Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote attackers to execute arbitrary code and possibly escape the chroot jail.
OSV
CVE-2003-0962: Heap-based buffer overflow in rsync before 2
osv·2003-12-15·CVSS 7.5
CVE-2003-0962 [HIGH] CVE-2003-0962: Heap-based buffer overflow in rsync before 2
Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote attackers to execute arbitrary code and possibly escape the chroot jail.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2003-0962 security flaw
bugzilla·2018-08-16·CVSS 7.5
CVE-2003-0962 [HIGH] CVE-2003-0962 security flaw
CVE-2003-0962 security flaw
Flaw bug created to hold information about an old flaw we knew something about. For more details see the MITRE CVE description.
Discussion:
MITRE description:
Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote attackers to execute arbitrary code and possibly escape the chroot jail.
Bugzilla
CAN-2003-0962 rsync remote exploit
bugzilla·2003-12-04
[MEDIUM] CAN-2003-0962 rsync remote exploit
CAN-2003-0962 rsync remote exploit
A heap overflow bug exists in Rsync versions prior to 2.5.7. On
machines where the Rsync server has been enabled, a remote attacker
could use this flaw to execute arbitrary code as an unprivileged user.
The Common Vulnerabilities and Exposures project (cve.mitre.org) has
assigned the name CAN-2003-0962 to this issue.
Our upgrade erratum packages will contain version 2.5.7 of Rsync which
is not vulnerable to this issue.
The Rsync server is disabled (off) by default in Red Hat Enterprise
Linux. To check if the Rsync server has been enabled (on), run:
/sbin/chkconfig --list rsync
If the Rsync server has been enabled but is not required it can be
disabled by running as root:
/sbin/chkconfig rsync off
RHSA-2003:399 in progress
Discussion:
An errata ha
ftp://patches.sgi.com/support/free/security/advisories/20031202-01-Uhttp://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000794http://marc.info/?l=bugtraq&m=107055681311602&w=2http://marc.info/?l=bugtraq&m=107055684711629&w=2http://marc.info/?l=bugtraq&m=107055702911867&w=2http://marc.info/?l=bugtraq&m=107056923528423&w=2http://secunia.com/advisories/10353http://secunia.com/advisories/10354http://secunia.com/advisories/10355http://secunia.com/advisories/10356http://secunia.com/advisories/10357http://secunia.com/advisories/10358http://secunia.com/advisories/10359http://secunia.com/advisories/10360http://secunia.com/advisories/10361http://secunia.com/advisories/10362http://secunia.com/advisories/10363http://secunia.com/advisories/10364http://secunia.com/advisories/10378http://secunia.com/advisories/10474http://www.kb.cert.org/vuls/id/325603http://www.mandriva.com/security/advisories?name=MDKSA-2003:111http://www.osvdb.org/2898http://www.redhat.com/support/errata/RHSA-2003-398.htmlhttp://www.securityfocus.com/bid/9153https://exchange.xforce.ibmcloud.com/vulnerabilities/13899https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9415ftp://patches.sgi.com/support/free/security/advisories/20031202-01-Uhttp://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000794http://marc.info/?l=bugtraq&m=107055681311602&w=2http://marc.info/?l=bugtraq&m=107055684711629&w=2http://marc.info/?l=bugtraq&m=107055702911867&w=2http://marc.info/?l=bugtraq&m=107056923528423&w=2http://secunia.com/advisories/10353http://secunia.com/advisories/10354http://secunia.com/advisories/10355http://secunia.com/advisories/10356http://secunia.com/advisories/10357http://secunia.com/advisories/10358http://secunia.com/advisories/10359http://secunia.com/advisories/10360http://secunia.com/advisories/10361http://secunia.com/advisories/10362http://secunia.com/advisories/10363http://secunia.com/advisories/10364http://secunia.com/advisories/10378http://secunia.com/advisories/10474http://www.kb.cert.org/vuls/id/325603http://www.mandriva.com/security/advisories?name=MDKSA-2003:111http://www.osvdb.org/2898http://www.redhat.com/support/errata/RHSA-2003-398.htmlhttp://www.securityfocus.com/bid/9153https://exchange.xforce.ibmcloud.com/vulnerabilities/13899https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9415
2003-12-15
Published