Improper Validation of Array Index in Rsync - CVE-2026-53792
Published: August 13, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to improper validation of array index in the sender matching logic when processing a receiver-supplied checksum header. A remote attacker can send a checksum header with a non-zero count and zero block length to cause a denial of service.
User interaction is required to initiate the transfer.