Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2008-1720
Buffer overflow in rsync 2.6.9 to 3.0.1, with extended attribute (xattr) support enabled, might allow remote attackers to execute arbitrary code via unknown vectors.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.108
EPSS Ranking
92.9%
CVSS Severity
CVSS v2 Score
7.5
References
http://lists.opensuse.org/opensuse-security-announce/2008-05/msg00000.html
http://marc.info/?l=bugtraq&m=125017764422557&w=2
http://marc.info/?l=bugtraq&m=125017764422557&w=2
http://rsync.samba.org/ftp/rsync/security/rsync-3.0.1-xattr-alloc.diff
http://samba.anu.edu.au/rsync/security.html#s3_0_2
http://secunia.com/advisories/29668
http://secunia.com/advisories/29770
http://secunia.com/advisories/29777
http://secunia.com/advisories/29781
http://secunia.com/advisories/29788
http://secunia.com/advisories/29856
http://secunia.com/advisories/29861
http://security.gentoo.org/glsa/glsa-200804-16.xml
http://sourceforge.net/project/shownotes.php?release_id=591462&group_id=69227
http://www.debian.org/security/2008/dsa-1545
http://www.mail-archive.com/rsync-announce%40lists.samba.org/msg00057.html
http://www.mandriva.com/security/advisories?name=MDVSA-2008:084
http://www.osvdb.org/44368
http://www.osvdb.org/44369
http://www.securityfocus.com/bid/28726
http://www.securitytracker.com/id?1019835
http://www.vupen.com/english/advisories/2008/1191/references
http://www.vupen.com/english/advisories/2008/1215/references
https://exchange.xforce.ibmcloud.com/vulnerabilities/41766
https://usn.ubuntu.com/600-1/
https://www.redhat.com/archives/fedora-package-announce/2008-April/msg00237.html
https://www.redhat.com/archives/fedora-package-announce/2008-April/msg00247.html
http://lists.opensuse.org/opensuse-security-announce/2008-05/msg00000.html
http://marc.info/?l=bugtraq&m=125017764422557&w=2
http://marc.info/?l=bugtraq&m=125017764422557&w=2
http://rsync.samba.org/ftp/rsync/security/rsync-3.0.1-xattr-alloc.diff
http://samba.anu.edu.au/rsync/security.html#s3_0_2
http://secunia.com/advisories/29668
http://secunia.com/advisories/29770
http://secunia.com/advisories/29777
http://secunia.com/advisories/29781
http://secunia.com/advisories/29788
http://secunia.com/advisories/29856
http://secunia.com/advisories/29861
http://security.gentoo.org/glsa/glsa-200804-16.xml
http://sourceforge.net/project/shownotes.php?release_id=591462&group_id=69227
http://www.debian.org/security/2008/dsa-1545
http://www.mail-archive.com/rsync-announce%40lists.samba.org/msg00057.html
http://www.mandriva.com/security/advisories?name=MDVSA-2008:084
http://www.osvdb.org/44368
http://www.osvdb.org/44369
http://www.securityfocus.com/bid/28726
http://www.securitytracker.com/id?1019835
http://www.vupen.com/english/advisories/2008/1191/references
http://www.vupen.com/english/advisories/2008/1215/references
https://exchange.xforce.ibmcloud.com/vulnerabilities/41766
https://usn.ubuntu.com/600-1/
https://www.redhat.com/archives/fedora-package-announce/2008-April/msg00237.html
https://www.redhat.com/archives/fedora-package-announce/2008-April/msg00247.html
Products affected by CVE-2008-1720
Samba
»
Rsync
»
Version:
2.6.9
cpe:2.3:a:samba:rsync:2.6.9
Samba
»
Rsync
»
Version:
2.7.0
cpe:2.3:a:samba:rsync:2.7.0
Samba
»
Rsync
»
Version:
2.7.1
cpe:2.3:a:samba:rsync:2.7.1
Samba
»
Rsync
»
Version:
2.7.2
cpe:2.3:a:samba:rsync:2.7.2
Samba
»
Rsync
»
Version:
2.7.3
cpe:2.3:a:samba:rsync:2.7.3
Samba
»
Rsync
»
Version:
2.7.4
cpe:2.3:a:samba:rsync:2.7.4
Samba
»
Rsync
»
Version:
2.7.5
cpe:2.3:a:samba:rsync:2.7.5
Samba
»
Rsync
»
Version:
2.7.6
cpe:2.3:a:samba:rsync:2.7.6
Samba
»
Rsync
»
Version:
2.7.7
cpe:2.3:a:samba:rsync:2.7.7
Samba
»
Rsync
»
Version:
2.7.8
cpe:2.3:a:samba:rsync:2.7.8
Samba
»
Rsync
»
Version:
2.7.9
cpe:2.3:a:samba:rsync:2.7.9
Samba
»
Rsync
»
Version:
2.8.0
cpe:2.3:a:samba:rsync:2.8.0
Samba
»
Rsync
»
Version:
2.8.1
cpe:2.3:a:samba:rsync:2.8.1
Samba
»
Rsync
»
Version:
2.8.2
cpe:2.3:a:samba:rsync:2.8.2
Samba
»
Rsync
»
Version:
2.8.3
cpe:2.3:a:samba:rsync:2.8.3
Samba
»
Rsync
»
Version:
2.8.4
cpe:2.3:a:samba:rsync:2.8.4
Samba
»
Rsync
»
Version:
2.8.5
cpe:2.3:a:samba:rsync:2.8.5
Samba
»
Rsync
»
Version:
2.8.6
cpe:2.3:a:samba:rsync:2.8.6
Samba
»
Rsync
»
Version:
2.8.7
cpe:2.3:a:samba:rsync:2.8.7
Samba
»
Rsync
»
Version:
2.8.8
cpe:2.3:a:samba:rsync:2.8.8
Samba
»
Rsync
»
Version:
2.8.9
cpe:2.3:a:samba:rsync:2.8.9
Samba
»
Rsync
»
Version:
2.9.0
cpe:2.3:a:samba:rsync:2.9.0
Samba
»
Rsync
»
Version:
2.9.1
cpe:2.3:a:samba:rsync:2.9.1
Samba
»
Rsync
»
Version:
2.9.2
cpe:2.3:a:samba:rsync:2.9.2
Samba
»
Rsync
»
Version:
2.9.3
cpe:2.3:a:samba:rsync:2.9.3
Samba
»
Rsync
»
Version:
2.9.4
cpe:2.3:a:samba:rsync:2.9.4
Samba
»
Rsync
»
Version:
2.9.5
cpe:2.3:a:samba:rsync:2.9.5
Samba
»
Rsync
»
Version:
2.9.6
cpe:2.3:a:samba:rsync:2.9.6
Samba
»
Rsync
»
Version:
2.9.7
cpe:2.3:a:samba:rsync:2.9.7
Samba
»
Rsync
»
Version:
2.9.8
cpe:2.3:a:samba:rsync:2.9.8
Samba
»
Rsync
»
Version:
2.9.9
cpe:2.3:a:samba:rsync:2.9.9
Samba
»
Rsync
»
Version:
3.0.0
cpe:2.3:a:samba:rsync:3.0.0
Samba
»
Rsync
»
Version:
3.0.1
cpe:2.3:a:samba:rsync:3.0.1
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved