Samba Rsync vulnerabilities

32 known vulnerabilities affecting samba/rsync.

Total CVEs
32
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL8HIGH13MEDIUM9LOW2

Vulnerabilities

Page 2 of 2
CVE-2014-2855HIGHCVSS 7.8≤ 3.1.0v2.6.9+40 more2014-04-23
CVE-2014-2855 [HIGH] CWE-20 CVE-2014-2855: The check_secret function in authenticate.c in rsync 3.1.0 and earlier allows remote attackers to ca The check_secret function in authenticate.c in rsync 3.1.0 and earlier allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a user name which does not exist in the secrets file.
nvdosv
CVE-2011-1097MEDIUMCVSS 5.1v3.0.0v3.0.1+6 more2011-03-30
CVE-2011-1097 [MEDIUM] CWE-119 CVE-2011-1097: rsync 3.x before 3.0.8, when certain recursion, deletion, and ownership options are used, allows rem rsync 3.x before 3.0.8, when certain recursion, deletion, and ownership options are used, allows remote rsync servers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via malformed data.
nvdosv
CVE-2008-1720HIGHCVSS 7.5v2.6.9v2.7.0+31 more2008-04-10
CVE-2008-1720 [HIGH] CWE-119 CVE-2008-1720: Buffer overflow in rsync 2.6.9 to 3.0.1, with extended attribute (xattr) support enabled, might allo Buffer overflow in rsync 2.6.9 to 3.0.1, with extended attribute (xattr) support enabled, might allow remote attackers to execute arbitrary code via unknown vectors.
nvdosv
CVE-2007-6199CRITICALCVSS 9.3≥ 0, < 2.6.9-62007-12-01
CVE-2007-6199 [CRITICAL] CVE-2007-6199: rsync before 3 rsync before 3.0.0pre6, when running a writable rsync daemon that is not using chroot, allows remote attackers to access restricted files via unknown vectors that cause rsync to create a symlink that points outside of the module's hierarchy.
osv
CVE-2007-6200CRITICALCVSS 10.0≥ 0, < 2.6.9-62007-12-01
CVE-2007-6200 [CRITICAL] CVE-2007-6200: Unspecified vulnerability in rsync before 3 Unspecified vulnerability in rsync before 3.0.0pre6, when running a writable rsync daemon, allows remote attackers to bypass exclude, exclude_from, and filter and read or write hidden files via (1) symlink, (2) partial-dir, (3) backup-dir, and unspecified (4) dest options.
osv
CVE-2007-4091MEDIUMCVSS 6.8≥ 0, < 2.6.9-52007-08-16
CVE-2007-4091 [MEDIUM] CVE-2007-4091: Multiple off-by-one errors in the sender Multiple off-by-one errors in the sender.c in rsync 2.6.9 might allow remote attackers to execute arbitrary code via directory names that are not properly handled when calling the f_name function.
osv
CVE-2006-2083HIGHCVSS 7.5≥ 0, < 2.6.8-12006-04-28
CVE-2006-2083 [HIGH] CVE-2006-2083: Integer overflow in the receive_xattr function in the extended attributes patch (xattr Integer overflow in the receive_xattr function in the extended attributes patch (xattr.c) for rsync before 2.6.8 might allow attackers to execute arbitrary code via crafted extended attributes that trigger a buffer overflow.
osv
CVE-2004-0792MEDIUMCVSS 6.4≥ 0, < 2.6.2-32004-10-20
CVE-2004-0792 [MEDIUM] CVE-2004-0792: Directory traversal vulnerability in the sanitize_path function in util Directory traversal vulnerability in the sanitize_path function in util.c for rsync 2.6.2 and earlier, when chroot is disabled, allows attackers to read or write certain files.
osv
CVE-2004-0426MEDIUMCVSS 5.0≥ 0, < 2.6.1-12004-07-07
CVE-2004-0426 [MEDIUM] CVE-2004-0426: rsync before 2 rsync before 2.6.1 does not properly sanitize paths when running a read/write daemon without using chroot, which allows remote attackers to write files outside of the module's path.
osv
CVE-2004-2093MEDIUMCVSS 4.6PoC≥ 0, < 2.6.1-12004-02-09
CVE-2004-2093 [MEDIUM] CVE-2004-2093: Buffer overflow in the open_socket_out function in socket Buffer overflow in the open_socket_out function in socket.c for rsync 2.5.7 and earlier allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a long RSYNC_PROXY environment variable. NOTE: since rsync is not setuid, this issue does not provide any additional privileges beyond those that are already available to the user. Therefore this issue may be REJECTED in
osv
CVE-2003-0962HIGHCVSS 7.5≥ 0, < 2.5.6-1.12003-12-15
CVE-2003-0962 [HIGH] CVE-2003-0962: Heap-based buffer overflow in rsync before 2 Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote attackers to execute arbitrary code and possibly escape the chroot jail.
osv
CVE-2002-0080LOWCVSS 2.1fixed in 2.5.32002-03-15
CVE-2002-0080 [LOW] CWE-269 CVE-2002-0080: rsync, when running in daemon mode, does not properly call setgroups before dropping privileges, whi rsync, when running in daemon mode, does not properly call setgroups before dropping privileges, which could provide supplemental group privileges to local users, who could then read certain files that would otherwise be disallowed.
nvd