In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort call, leading to a receiver use-after-free. The victim must run rsync with -X (aka --xattrs). On Linux, …
高危 CVSS 7.4
摘要
In rsync 3.0.1 through 3.4.1, receive_xattr relies on an untrusted length value during a qsort call, leading to a receiver use-after-free. The victim must run rsync with -X (aka --xattrs). On Linux, many (but not all) common configurations are vulnerable. Non-Linux platforms are more widely vulnerable.
中文摘要建设中,暂以英文摘要呈现(DR-003 v2)。
深度研判
该漏洞尚未生成深度研判报告(DR-003 v2 AI pipeline 建设中)。
受影响产品
- :
数据来源
- NVD DATABASE
原始链接
- https://github.com/RsyncProject/rsync/issues/871 Issue Tracking
- https://github.com/RsyncProject/rsync/releases Release Notes
- https://www.openwall.com/lists/oss-security/2026/04/16/2 Exploit
- http://www.openwall.com/lists/oss-security/2026/04/16/9 Mailing List
- http://www.openwall.com/lists/oss-security/2026/04/22/3 Mailing List
- https://access.redhat.com/errata/RHSA-2026:17481
- https://access.redhat.com/errata/RHSA-2026:19152
- https://access.redhat.com/errata/RHSA-2026:19368
- https://access.redhat.com/errata/RHSA-2026:20601
- https://access.redhat.com/errata/RHSA-2026:20602
- https://access.redhat.com/errata/RHSA-2026:20603
- https://access.redhat.com/errata/RHSA-2026:20604
- https://access.redhat.com/errata/RHSA-2026:20696
- https://access.redhat.com/errata/RHSA-2026:23233
- https://access.redhat.com/errata/RHSA-2026:23245
- https://access.redhat.com/errata/RHSA-2026:25044
- https://access.redhat.com/errata/RHSA-2026:25149
- https://access.redhat.com/errata/RHSA-2026:25170
- https://access.redhat.com/errata/RHSA-2026:25172
- https://access.redhat.com/errata/RHSA-2026:25173
- https://access.redhat.com/errata/RHSA-2026:25181
- https://access.redhat.com/errata/RHSA-2026:25190
- https://access.redhat.com/errata/RHSA-2026:26542
- https://access.redhat.com/errata/RHSA-2026:28887
- https://access.redhat.com/errata/RHSA-2026:29197
- https://access.redhat.com/errata/RHSA-2026:34098
- https://access.redhat.com/security/cve/CVE-2026-41035
- https://bugzilla.redhat.com/show_bug.cgi?id=2458898
- https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-41035.json
时间线
- nvd_ingest NVD