10

CVE-2002-0048

Multiple signedness errors (mixed signed and unsigned numbers) in the I/O functions of rsync 2.4.6, 2.3.2, and other versions allow remote attackers to cause a denial of service and execute arbitrary code in the rsync client or server.

Data is provided by the National Vulnerability Database (NVD)
Andrew TridgellRsync Version2.3.1
Andrew TridgellRsync Version2.3.2
Andrew TridgellRsync Version2.3.2_1.2 Editionalpha
Andrew TridgellRsync Version2.3.2_1.2 Editionarm
Andrew TridgellRsync Version2.3.2_1.2 Editionintel
Andrew TridgellRsync Version2.3.2_1.2 Editionm68k
Andrew TridgellRsync Version2.3.2_1.2 Editionppc
Andrew TridgellRsync Version2.3.2_1.2 Editionsparc
Andrew TridgellRsync Version2.4.1
Andrew TridgellRsync Version2.4.3
Andrew TridgellRsync Version2.4.4
Andrew TridgellRsync Version2.4.6
Andrew TridgellRsync Version2.5.0_1
Andrew TridgellRsync Version2.5.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 69.46% 0.985
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C