security bugs (?)

Sven.Hartrumpf at FernUni-Hagen.de Sven.Hartrumpf at FernUni-Hagen.de
Sat Sep 29 09:21:41 GMT 2007


Sat, 29 Sep 2007 10:55:32 +0200, lapo wrote:

> Lapo Luchini wrote:
> > As a Cygwin rsync package maintainer, the following security fixes have
> > been brought to my attention:
> >
> > http://sources.gentoo.org/viewcvs.py/gentoo-x86/net-misc/rsync/files/rsync-2.6.9-stats-fix.patch
> > http://sources.gentoo.org/viewcvs.py/gentoo-x86/net-misc/rsync/files/rsync-2.6.9-fname-obo.patch
>
> On a closer inspection, the first one doesn't really seem to regard
> security... what about the other, aka CVE-2007-4091[1] and SA26493[2]?

There is a thread under the subject "CVE-2007-4091" :-)
in the archives of this list:

http://lists.samba.org/archive/rsync/2007-August/thread.html

Sven
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : http://lists.samba.org/archive/rsync/attachments/20070929/f4c7e625/attachment.bin


More information about the rsync mailing list