메뉴 건너뛰기

GREATUSER

cve

CVE-2017-16548

관리자 2017.11.09 04:00 조회 수 : 10

The receive_xattr function in xattrs.c in rsync 3.1.2 and 3.1.3-development does not check for a trailing '\0' character in an xattr name, which allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified other impact by sending crafted data to the daemon.


원문출처 : https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-16548
번호 제목 글쓴이 날짜 조회 수
212 CVE-2017-12694 관리자 2017.08.27 8
211 CVE-2014-7857 관리자 2017.08.27 8
210 CVE-2015-5700 관리자 2017.08.27 8
209 CVE-2015-4180 관리자 2017.08.27 8
208 CVE-2015-3206 관리자 2017.08.27 8
207 CVE-2017-12703 관리자 2017.08.27 8
206 CVE-2015-7259 관리자 2017.08.27 8
205 CVE-2017-12136 관리자 2017.08.27 8
204 CVE-2017-13658 (imagemagick) 관리자 2017.08.27 8
203 CVE-2017-0805 (android) 관리자 2017.08.27 8
202 CVE-2017-12970 (apache2triad) 관리자 2017.08.27 8
201 CVE-2017-12965 (apache2triad) 관리자 2017.08.27 8
200 CVE-2017-12858 (libzip) 관리자 2017.08.27 8
199 CVE-2017-13141 (imagemagick) 관리자 2017.08.27 8
198 CVE-2017-13130 관리자 2017.08.27 8
위로