Security restrictions bypass in Rsync - CVE-2017-17433
Published: December 11, 2017
Vulnerability identifier: #VU9608
CSH Severity: Low
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-17433
CWE-ID: CWE-284
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to bypass security restrictions on the target system.
The weakness exists due to the recv_files function in receiver.c in the daemon proceeds with certain file metadata updates before checking for a filename in the daemon_filter_list data structure. A remote attacker can bypass intended access restrictions.
The weakness exists due to the recv_files function in receiver.c in the daemon proceeds with certain file metadata updates before checking for a filename in the daemon_filter_list data structure. A remote attacker can bypass intended access restrictions.
Affected software
Rsync
Debian Linux
Gentoo Linux
Arch Linux
Ubuntu
rsync (Alpine package)
Debian Linux
Gentoo Linux
Arch Linux
Ubuntu
rsync (Alpine package)
How to mitigate CVE-2017-17433
Install update from vendor's website.
rsync (Alpine package) - update to 3.1.2-r3