<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 16:29:28 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-00378</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-00378</link>
      <description>bdu:2025-00378</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-00378</guid>
    </item>
    <item>
      <title>BELL-CVE-2024-12084</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2024-12084</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: rsync, Alpaquita:stream: rsync&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: rsync, Alpaquita:stream: rsync&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2024-12084</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0067 — De multiples vulnérabilités ont été découvertes dans Qnap HBS 3 Hybrid Backup Sync. Elles permettent à un attaquant de…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0067</link>
      <description>certfr-2025-avi-0067</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0067</guid>
    </item>
    <item>
      <title>EUVD-2026-331180</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-331180</link>
      <description>EUVD-2026-331180</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-331180</guid>
    </item>
    <item>
      <title>fkie_cve-2024-12084</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-12084</link>
      <description>&lt;p&gt;A heap-based buffer overflow flaw was found in the rsync daemon. This issue is due to improper handling of attacker-controlled checksum lengths (s2length) in the code. When MAX_DIGEST_LEN exceeds the fixed SUM_LENGTH (16 bytes), an attacker can write out of bounds in the sum2 buffer.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A heap-based buffer overflow flaw was found in the rsync daemon. This issue is due to improper handling of attacker-controlled checksum lengths (s2length) in the code. When MAX_DIGEST_LEN exceeds the fixed SUM_LENGTH (16 bytes), an attacker can write out of bounds in the sum2 buffer.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-12084</guid>
    </item>
    <item>
      <title>GHSA-85h7-m8c3-v9wc</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-85h7-m8c3-v9wc</link>
      <description>&lt;p&gt;A heap-based buffer overflow flaw was found in the rsync daemon. This issue is due to improper handling of attacker-controlled checksum lengths (s2length) in the code. When MAX_DIGEST_LEN exceeds the fixed SUM_LENGTH (16 bytes), an attacker can write out of bounds in the sum2 buffer.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A heap-based buffer overflow flaw was found in the rsync daemon. This issue is due to improper handling of attacker-controlled checksum lengths (s2length) in the code. When MAX_DIGEST_LEN exceeds the fixed SUM_LENGTH (16 bytes), an attacker can write out of bounds in the sum2 buffer.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-85h7-m8c3-v9wc</guid>
    </item>
    <item>
      <title>msrc_CVE-2024-12084 — Rsync: heap buffer overflow in rsync due to improper checksum length handling</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2024-12084</link>
      <description>msrc_CVE-2024-12084</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2024-12084</guid>
    </item>
    <item>
      <title>OESA-2025-1061 — rsync security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2025-1061</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP1: rsync&lt;/p&gt;
&lt;p&gt;Rsync is an open source utility that provides fast incremental file transfer. It uses the &amp;amp;quot;rsync algorithm&amp;amp;quot; which provides a very fast method for bringing remote files into sync. It does this by sending just the differences in the files across the link, without requiring that both sets of files are present at one of the ends of the link beforehand.&#13;
&#13;
Security Fix(es):&#13;
&#13;
(CVE-2024-12084)&#13;
&#13;
(CVE-2024-12085)&#13;
&#13;
(CVE-2024-12086)&#13;
&#13;
(CVE-2024-12087)&#13;
&#13;
(CVE-2024-12088)&#13;
&#13;
(CVE-2024-12747)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP1: rsync&lt;/p&gt;
&lt;p&gt;Rsync is an open source utility that provides fast incremental file transfer. It uses the &amp;amp;quot;rsync algorithm&amp;amp;quot; which provides a very fast method for bringing remote files into sync. It does this by sending just the differences in the files across the link, without requiring that both sets of files are present at one of the ends of the link beforehand.&#13;
&#13;
Security Fix(es):&#13;
&#13;
(CVE-2024-12084)&#13;
&#13;
(CVE-2024-12085)&#13;
&#13;
(CVE-2024-12086)&#13;
&#13;
(CVE-2024-12087)&#13;
&#13;
(CVE-2024-12088)&#13;
&#13;
(CVE-2024-12747)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2025-1061</guid>
    </item>
    <item>
      <title>openSUSE-SU-2025:14665-1 — rsync-3.4.1-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2025:14665-1</link>
      <description>&lt;p&gt;rsync-3.4.1-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;rsync-3.4.1-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2025:14665-1</guid>
    </item>
    <item>
      <title>SUSE-SU-2025:0156-1 — Security update for rsync</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2025:0156-1</link>
      <description>&lt;p&gt;Security update for rsync&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for rsync&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2025:0156-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2024-12084</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-12084</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:22.04:LTS: rsync, Ubuntu:24.04:LTS: rsync&lt;/p&gt;
&lt;p&gt;A heap-based buffer overflow flaw was found in the rsync daemon. This issue is due to improper handling of attacker-controlled checksum lengths (s2length) in the code. When MAX_DIGEST_LEN exceeds the fixed SUM_LENGTH (16 bytes), an attacker can write out of bounds in the sum2 buffer.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:22.04:LTS: rsync, Ubuntu:24.04:LTS: rsync&lt;/p&gt;
&lt;p&gt;A heap-based buffer overflow flaw was found in the rsync daemon. This issue is due to improper handling of attacker-controlled checksum lengths (s2length) in the code. When MAX_DIGEST_LEN exceeds the fixed SUM_LENGTH (16 bytes), an attacker can write out of bounds in the sum2 buffer.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-12084</guid>
    </item>
    <item>
      <title>VDE-2025-053 — Phoenix Contact: Multiple Vulnerabilities in PLCnext Firmware</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2025-053</link>
      <description>&lt;p&gt;Coreutils: heap overflow in split --line-bytes with very long lines Unprivileged overlay + shiftfs read access Nano: running `chmod` and `chown` on the filename allows malicious user to replace the emergency file with a malicious symlink to a root-owned file SSL_select_next_proto buffer overread Remote Code Execution in pypa/setuptools&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Coreutils: heap overflow in split --line-bytes with very long lines Unprivileged overlay + shiftfs read access Nano: running `chmod` and `chown` on the filename allows malicious user to replace the emergency file with a malicious symlink to a root-owned file SSL_select_next_proto buffer overread Remote Code Execution in pypa/setuptools&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2025-053</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-0084 — Rsync: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0084</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Rsync ausnutzen, um vertrauliche Informationen preiszugeben, sich erhöhte Rechte zu verschaffen und Daten zu manipulieren.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Rsync ausnutzen, um vertrauliche Informationen preiszugeben, sich erhöhte Rechte zu verschaffen und Daten zu manipulieren.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0084</guid>
    </item>
  </channel>
</rss>
