CVE-2008-1720
rsync
EPSS 5.0%
Description
Buffer overflow in rsync 2.6.9 to 3.0.1, with extended attribute (xattr) support enabled, might allow remote attackers to execute arbitrary code via unknown vectors.
How to fix CVE-2008-1720
To remediate CVE-2008-1720, upgrade the affected package to a fixed version below.
- Debian/rsync—upgrade to 3.0.2-1 or later
- Debian/rsync—upgrade to 2.6.9-2etch2 or later
Is CVE-2008-1720 being exploited?
Low — EPSS is 5.0%, meaning exploitation activity has not been observed at scale.
Affected packages (2)
- from 0, < 3.0.2-1
- from 0, < 2.6.9-2etch2