CVE-2011-1097
Published Mar 30, 2011
Last updated 2 years ago
Overview
- Description
- rsync 3.x before 3.0.8, when certain recursion, deletion, and ownership options are used, allows remote rsync servers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via malformed data.
- Source
- secalert@redhat.com
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5.1
- Impact score
- 6.4
- Exploitability score
- 4.9
- Vector string
- AV:N/AC:H/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-119
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:samba:rsync:3.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7313AE31-C2AA-4A06-98BB-0AD3FAB7AAAF" }, { "criteria": "cpe:2.3:a:samba:rsync:3.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C44A273A-4613-44DC-905B-8EEDC035799C" }, { "criteria": "cpe:2.3:a:samba:rsync:3.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CDA1C380-B119-4FA8-B75B-272DF7791D8B" }, { "criteria": "cpe:2.3:a:samba:rsync:3.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "58D8B6CB-9968-4697-B87D-03DB7D150BEC" }, { "criteria": "cpe:2.3:a:samba:rsync:3.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B6659AB2-3361-4E91-A55D-BE09DE94B579" }, { "criteria": "cpe:2.3:a:samba:rsync:3.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6B4B557A-9F40-415C-9919-955B3E0D5253" }, { "criteria": "cpe:2.3:a:samba:rsync:3.0.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1E48129D-B453-4048-BB18-AF52C97373F7" }, { "criteria": "cpe:2.3:a:samba:rsync:3.0.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "10DA1C5D-EF59-4633-B279-5B317306DA52" } ], "operator": "OR" } ] } ]