CVE-2008-1720
rsync
EPSS 8.4%
Description
Buffer overflow in rsync 2.6.9 to 3.0.1, with extended attribute (xattr) support enabled, might allow remote attackers to execute arbitrary code via unknown vectors.
How to fix CVE-2008-1720
To remediate CVE-2008-1720, upgrade the affected package to a fixed version below.
- Debian/rsync—upgrade to 3.0.2-1 or later
- Debian/rsync—upgrade to 2.6.9-2etch2 or later
Is CVE-2008-1720 being exploited?
Moderate — EPSS is 8.4%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (2)
- from 0, < 3.0.2-1
- from 0, < 2.6.9-2etch2