Bug 1065646 - (CVE-2017-15994) VUL-0: CVE-2017-15994: rsync: rync mishandling archaic checksums could lead to access restrictions bypass
(CVE-2017-15994)
VUL-0: CVE-2017-15994: rsync: rync mishandling archaic checksums could lead ...
Status: RESOLVED INVALID
Classification: Novell Products
Product: SUSE Security Incidents
Classification: Novell Products
Component: Incidents
unspecified
Other Other
: P3 - Medium : Normal
: ---
Assigned To: Security Team bot
Security Team bot
https://smash.suse.de/issue/194264/
CVSSv2:NVD:CVE-2017-15994:7.5:(AV:N/A...
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2017-10-30 10:57 UTC by Victor Pereira
Modified: 2017-11-28 15:35 UTC (History)
1 user (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Comment 1 Pedro Monreal Gonzalez 2017-11-23 14:56:20 UTC
None of the codestreams are affected by this bug as it was introduced in [0] after version 3.1.2 was released. See also [1].

openSUSE:Factory        3.1.2
SUSE:SLE-12:Update      3.1.0
SUSE:SLE-11-SP3:Update  3.0.4
SUSE:SLE-11-SP1:Update  3.0.4
SUSE:SLE-10-SP3:Update  2.6.8

[0] https://git.samba.org/?p=rsync.git;a=commit;h=a5a7d3a297b836387b0ac677383bdddaf2ac3598
[1] https://security-tracker.debian.org/tracker/CVE-2017-15994
Comment 3 Victor Pereira 2017-11-28 08:11:52 UTC
Hi Thank you Pedro for your help and support!