gpp_maybe Security update for rsync
SUSE-SLE-Module-Basesystem-15-SP5-2025-122


This update for rsync fixes the following issues: NOTE: This update was retracted as one of the fixes was broken. A new update will be issued. - CVE-2024-12085: leak of uninitialized stack data on the server leading to possible ASLR bypass. (bsc#1234101) - CVE-2024-12086: leak of a client machine's file contents through the processing of checksum data. (bsc#1234102) - CVE-2024-12087: arbitrary file overwrite possible on clients when symlink syncing is enabled. (bsc#1234103) - CVE-2024-12088: bypass of the --safe-links flag may allow the placement of unsafe symlinks in a client. (bsc#1234104)


cloud_download Downloads

Basesystem Module 15.5 x86_64
  • Packages
    rsync
    Versatile tool for fast incremental file transfer
    3.2.3-150400.3.12.1 lock rpm lock src
Basesystem Module 15.5 s390x
  • Packages
    rsync
    Versatile tool for fast incremental file transfer
    3.2.3-150400.3.12.1 lock rpm lock src
Basesystem Module 15.5 ppc64le
  • Packages
    rsync
    Versatile tool for fast incremental file transfer
    3.2.3-150400.3.12.1 lock rpm lock src
Basesystem Module 15.5 aarch64
  • Packages
    rsync
    Versatile tool for fast incremental file transfer
    3.2.3-150400.3.12.1 lock rpm lock src