[Bug 10936] Rsync path hijacking attack vulnerability

samba-bugs at samba.org samba-bugs at samba.org
Thu Nov 27 12:29:54 MST 2014


https://bugzilla.samba.org/show_bug.cgi?id=10936

Wayne Davison <wayned at samba.org> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
         Resolution|---                         |FIXED
             Status|NEW                         |RESOLVED

--- Comment #3 from Wayne Davison <wayned at samba.org> ---
In your test, you didn't use 3.1.1 on the client side.  This was fixed in that
release:

ABORTING due to unsafe pathname from sender: /root/pwned.test

-- 
You are receiving this mail because:
You are the QA Contact for the bug.


More information about the rsync mailing list