CVE-2007-4091

Published: 16 August 2007

Multiple off-by-one errors in the sender.c in rsync 2.6.9 might allow remote attackers to execute arbitrary code via directory names that are not properly handled when calling the f_name function.

Priority

Unknown

Status

Package Release Status
rsync
Launchpad, Ubuntu, Debian
Upstream Needs triage