CRITICAL
Debian ftpsync before 20171017 does not use the rsync --safe-links option, which allows remote attackers to conduct directory traversal attacks via a crafted upstream mirror
Published Oct 17, 2017
9.1
CRITICALCVSS 3.0
EPSS 3.02%
Description
Affected products
Remediation
References (3)
Change history (0)
No recorded changes yet.