Oval Definition:oval:com.ubuntu.artful:def:201717433000
Revision Date:2017-12-05Version:1
Title:CVE-2017-17433 on Ubuntu 17.10 (artful) - medium.
Description:The recv_files function in receiver.c in the daemon in rsync 3.1.2, and 3.1.3-development before 2017-12-03, proceeds with certain file metadata updates before checking for a filename in the daemon_filter_list data structure, which allows remote attackers to bypass intended access restrictions.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-17433
Platform(s):Ubuntu 17.10
Product(s):
Definition Synopsis
  • Ubuntu 17.10 (artful) is installed.
  • AND The 'rsync' package in artful was vulnerable but has been fixed (note: '3.1.2-2ubuntu0.1').
  • BACK