메뉴 건너뛰기

GREATUSER

cve

CVE-2017-16548

관리자 2017.11.09 04:00 조회 수 : 11

The receive_xattr function in xattrs.c in rsync 3.1.2 and 3.1.3-development does not check for a trailing '\0' character in an xattr name, which allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified other impact by sending crafted data to the daemon.


원문출처 : https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-16548
번호 제목 글쓴이 날짜 조회 수
347 CVE-2017-2921 관리자 2017.11.09 11
346 CVE-2017-2915 관리자 2017.11.09 11
345 CVE-2017-2912 관리자 2017.11.09 11
344 CVE-2017-2889 관리자 2017.11.09 11
343 CVE-2017-16636 관리자 2017.11.09 11
342 CVE-2017-14025 관리자 2017.11.09 11
341 CVE-2017-15039 관리자 2017.11.09 11
» CVE-2017-16548 관리자 2017.11.09 11
339 CVE-2017-16546 (imagemagick) 관리자 2017.11.09 11
338 CVE-2017-14122 관리자 2017.09.04 11
337 CVE-2017-7934 관리자 2017.08.27 11
336 CVE-2017-7930 관리자 2017.08.27 11
335 CVE-2014-9637 관리자 2017.08.27 11
334 CVE-2014-7860 관리자 2017.08.27 11
333 CVE-2015-8308 관리자 2017.08.27 11
위로