exploits , vulnerabilities , articles , Rsync Daemon Excludes Multiple File Access Vulnerabilities
| Title |
Rsync Daemon Excludes Multiple File Access Vulnerabilities |
| Published |
2007-11-29-12:00AM |
| Updated |
2008-02-12-05:36PM |
| Class |
Access Validation Error |
| CVE |
CVE-2007-6200 |
| Remote |
Yes |
| Local |
No |
| Credit |
These issues were disclosed by the vendor. |
| Vulnerable |
Slackware Linux 10.2 Slackware Linux 10.1 Slackware Linux 10.0 Slackware Linux 9.1 Slackware Linux 9.0 Slackware Linux 8.1 Slackware Linux 12.0 Slackware Linux 11.0 S.u.S.E. UnitedLinux 1.0 S.u.S.E. SuSE Linux Openexchange Server 4.0 S.u.S.E. SUSE Linux Enterprise Desktop 10 SP1 S.u.S.E. SUSE Linux Enterprise Desktop 10 S.u.S.E. openSUSE 10.3 S.u.S.E. openSUSE 10.2 S.u.S.E. OpenEnterpriseServer 0 S.u.S.E. Novell Linux POS 9 S.u.S.E. Novell Linux Desktop SDK 9.0 S.u.S.E. Novell Linux Desktop 9 S.u.S.E. Linux Enterprise Server 8 S.u.S.E. Linux Enterprise Server 10.SP1 S.u.S.E. Linux Desktop 10 S.u.S.E. Linux 10.1 x8664 S.u.S.E. Linux 10.1 x86 S.u.S.E. Linux 10.1 ppc S.u.S.E. Linux 10.0 x8664 S.u.S.E. Linux 10.0 x86 S.u.S.E. Linux 10.0 ppc rsync rsync 2.6.9 Ubuntu Ubuntu Linux 7.04 sparc Ubuntu Ubuntu Linux 7.04 powerpc Ubuntu Ubuntu Linux 7.04 i386 Ubuntu Ubuntu Linux 7.04 amd64 rsync rsync 2.6.8 Ubuntu Ubuntu Linux 6.10 sparc Ubuntu Ubuntu Linux 6.10 powerpc Ubuntu Ubuntu Linux 6.10 i386 Ubuntu Ubuntu Linux 6.10 amd64 rsync rsync 2.6.7 rsync rsync 2.6.6 Ubuntu Ubuntu Linux 6.06 LTS sparc Ubuntu Ubuntu Linux 6.06 LTS powerpc Ubuntu Ubuntu Linux 6.06 LTS i386 Ubuntu Ubuntu Linux 6.06 LTS amd64 rsync rsync 2.6.5 rsync rsync 2.6.5 rsync rsync 2.6.2 OpenPKG OpenPKG 2.1 rsync rsync 2.6.1 rsync rsync 2.6 OpenPKG OpenPKG 2.0 rsync rsync 2.5.7 rsync rsync 2.5.6 MandrakeSoft Linux Mandrake 9.2 MandrakeSoft Linux Mandrake 9.1 ppc MandrakeSoft Linux Mandrake 9.1 OpenBSD OpenBSD 3.4 OpenBSD OpenBSD 3.3 OpenBSD OpenBSD 3.2 OpenBSD OpenBSD 3.1 OpenBSD OpenBSD 3.0 OpenPKG OpenPKG 1.3 OpenPKG OpenPKG 1.2 OpenPKG OpenPKG Current RedHat Fedora Core1 S.u.S.E. Linux Personal 9.0 S.u.S.E. Linux Personal 8.2 Slackware Linux 9.1 Slackware Linux 9.0 rsync rsync 2.5.5 Conectiva Linux 9.0 Debian Linux 3.0 sparc Debian Linux 3.0 s/390 Debian Linux 3.0 ppc Debian Linux 3.0 mipsel Debian Linux 3.0 mips Debian Linux 3.0 m68k Debian Linux 3.0 ia64 Debian Linux 3.0 ia32 Debian Linux 3.0 hppa Debian Linux 3.0 arm Debian Linux 3.0 alpha MandrakeSoft Corporate Server 2.1 x86_64 MandrakeSoft Corporate Server 2.1 MandrakeSoft Linux Mandrake 9.0 S.u.S.E. Linux 8.1 Slackware Linux 8.1 rsync rsync 2.5.4 Immunix Immunix OS 7.3 MandrakeSoft Corporate Server 1.0.1 MandrakeSoft Linux Mandrake 8.1 ia64 MandrakeSoft Linux Mandrake 8.1 MandrakeSoft Linux Mandrake 8.0 ppc MandrakeSoft Linux Mandrake 8.0 MandrakeSoft Linux Mandrake 7.2 MandrakeSoft Linux Mandrake 7.1 MandrakeSoft Multi Network Firewall 2.0 MandrakeSoft Single Network Firewall 7.2 rsync rsync 2.5.3 rsync rsync 2.5.2 Immunix Immunix OS 7 rsync rsync 2.5.1 FreeBSD FreeBSD 4.5 FreeBSD FreeBSD 4.4 FreeBSD FreeBSD 4.3 FreeBSD FreeBSD 4.2 FreeBSD FreeBSD 4.1.1 FreeBSD FreeBSD 4.1 rsync rsync 2.5 .0 FreeBSD FreeBSD 4.5 FreeBSD FreeBSD 4.4 FreeBSD FreeBSD 4.3 FreeBSD FreeBSD 4.2 FreeBSD FreeBSD 4.1.1 FreeBSD FreeBSD 4.1 rsync rsync 2.4.8 rsync rsync 2.4.6 Conectiva Linux 8.0 Conectiva Linux 7.0 Conectiva Linux 6.0 EnGarde Secure Linux 1.0.1 HP Secure OS software for Linux 1.0 MandrakeSoft Corporate Server 1.0.1 MandrakeSoft Linux Mandrake 8.1 ia64 MandrakeSoft Linux Mandrake 8.1 MandrakeSoft Linux Mandrake 8.0 ppc MandrakeSoft Linux Mandrake 8.0 MandrakeSoft Linux Mandrake 7.2 MandrakeSoft Linux Mandrake 7.1 MandrakeSoft Single Network Firewall 7.2 RedHat Linux 7.2 ia64 RedHat Linux 7.2 i386 S.u.S.E. Linux 8.0 S.u.S.E. Linux 7.3 sparc S.u.S.E. Linux 7.3 ppc S.u.S.E. Linux 7.3 i386 S.u.S.E. Linux 7.2 i386 S.u.S.E. Linux 7.1 x86 S.u.S.E. Linux 7.1 sparc S.u.S.E. Linux 7.1 ppc S.u.S.E. Linux 7.1 alpha Trustix Secure Linux 1.5 Trustix Secure Linux 1.2 rsync rsync 2.4.5 rsync rsync 2.4.4 RedHat Linux 7.1 ia64 RedHat Linux 7.1 i386 RedHat Linux 7.1 alpha RedHat Linux 7.0 i386 RedHat Linux 7.0 alpha rsync rsync 2.4.3 Caldera OpenLinux 3.1 IA64 Caldera OpenLinux 2.3 Caldera OpenLinux Server 3.1 Caldera OpenLinux Workstation 3.1 Trustix Secure Linux 1.1 rsync rsync 2.4.1 RedHat Linux 6.2 sparc RedHat Linux 6.2 i386 RedHat Linux 6.2 alpha Trustix Secure Linux 1.0 1 rsync rsync 2.4 .0 rsync rsync 2.3.2 1.3 rsync rsync 2.3.2 1.2 sparc Debian Linux 2.2 sparc rsync rsync 2.3.2 1.2 PPC Debian Linux 2.2 powerpc rsync rsync 2.3.2 1.2 m68k Debian Linux 2.2 68k rsync rsync 2.3.2 1.2 intel Debian Linux 2.2 IA32 rsync rsync 2.3.2 1.2 ARM Debian Linux 2.2 arm rsync rsync 2.3.2 1.2 alpha Debian Linux 2.2 alpha rsync rsync 2.3.2 S.u.S.E. Linux 7.0 sparc S.u.S.E. Linux 7.0 ppc S.u.S.E. Linux 7.0 i386 S.u.S.E. Linux 7.0 alpha S.u.S.E. Linux 6.4 ppc S.u.S.E. Linux 6.4 i386 S.u.S.E. Linux 6.4 alpha rsync rsync 2.3.1 Caldera OpenLinux eBuilder 3.0 Conectiva Linux 5.1 Conectiva Linux 5.0 Conectiva Linux graficas Conectiva Linux ecommerce SCO eDesktop 2.4 SCO eServer 2.3.1 rsync rsync 3.0.0pre6 rPath rPath Linux 1 MandrakeSoft Linux Mandrake 2008.0 x86_64 MandrakeSoft Linux Mandrake 2008.0 MandrakeSoft Linux Mandrake 2007.1 x86_64 MandrakeSoft Linux Mandrake 2007.1 MandrakeSoft Linux Mandrake 2007.0 x86_64 MandrakeSoft Linux Mandrake 2007.0 MandrakeSoft Corporate Server 4.0 x86_64 MandrakeSoft Corporate Server 3.0 x86_64 MandrakeSoft Corporate Server 3.0 MandrakeSoft Corporate Server 4.0 Foresight Linux Foresight Linux 1.1
|
| Not Vulnerable |
|
| Code |
Attackers can use rsync as a client to access vulnerable rsync servers to exploit these issues. Attackers must be aware of the hidden files' names to access them. |
| TXT |
 |
|
Advertising
|
|
Copyright 2007,
SecurityDot
Fri, 18 Dec 2009 00:01:20 +0000
Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS
EXPLOITS
VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
wsdl google suc dazhouren. 333ii /search/ex news for c W.W.W real anju mambo Remo Www Indian www.sxmlgg %2Fcompone Fuckhard news for C google suc nacid.com www.fuck.m mambo Remo hasni FortressSS crack%20da POboard Sexgirlsph foro news for c exploit 15 textarea Www.Worid BIGTITES free movis news for c Www.icicid Wap.tegos. ins forms news for c shop592354 www.8lulu. vidioxexo www..sexgi www.ud8888 poonkuyil tiistsw.co n73softwer modifyform Wwwchakpak lanka nude trisha hot elephantli SEXCARTOON news for C
|