gpp_maybe
Security update for rsync
SUSE-SLES-16.0-867
This update for rsync fixes the following issues - CVE-2025-10158: Out of bounds array access via negative index (bsc#1254441). - CVE-2026-29518: Symlink-Race TOCTOU in Daemon (use chroot = no) (bsc#1264511). - CVE-2026-41035: count of entries mismatch can lead to a use-after-free (bsc#1262223). - CVE-2026-43617: Authorization Bypass via Hostname Resolution (bsc#1264515). - CVE-2026-43618: Integer Overflow Information Disclosure (bsc#1264512). - CVE-2026-43619: Symlink Race Condition via Path-Based Syscalls (bsc#1264514). - CVE-2026-43620: Out-of-Bounds Array Read via recv_files() (bsc#1264513). - CVE-2026-45232: Off-by-one stack OOB write in HTTP CONNECT proxy response parsing (bsc#1265296).
-
Release DateJun 2 2026
-
ReferencesBugzilla: 1254441, 1262223, 1264511, 1264512, 1264513, 1264514, 1264515, 1265296
CVEs: CVE-2025-10158, CVE-2026-29518, CVE-2026-41035, CVE-2026-43617, CVE-2026-43618, CVE-2026-43619, CVE-2026-43620, CVE-2026-45232 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Server 16.0 aarch64
-
Packages
SUSE Linux Enterprise Server 16.0 ppc64le
-
Packages
SUSE Linux Enterprise Server for SAP applications 16.0 ppc64le
-
Packages
SUSE Linux Enterprise Server 16.0 x86_64
-
Packages
SUSE Linux Enterprise Server 16.0 s390x
-
Packages
SUSE Linux Enterprise Server for SAP applications 16.0 x86_64
-
Packages