Rsync 2.5.7 local buffer overflow

Wayne Davison wayned at samba.org
Fri Feb 6 15:59:43 GMT 2004


On Fri, Feb 06, 2004 at 03:24:24PM +0100, DownBload / Illegal Instruction Labs wrote:
>                strcpy(portbuf, cp);              // <- BUFFER OVERFLOW

Correct.  I fixed this in the CVS version earlier this year.  Since the
proxy data is coming from the local environment, I don't see a need to
roll out an update to 2.6.0 (which is the latest released version, BTW).
The fix will be in 2.6.1, which should be released in the next month or
two.

Thanks for the report,

..wayne..


More information about the rsync mailing list