CVE-2024-12088 - log back

CVE-2024-12088 edited at 14 Jan 2025 21:33:39
Severity
- Unknown
+ High
Remote
- Unknown
+ Remote
Type
- Unknown
+ Arbitrary file upload
Description
+ A flaw was found in rsync. When using the --safe-links option, rsync fails to properly verify if a symbolic link destination contains another symbolic link within it. This results in a path traversal vulnerability, which may lead to arbitrary file write outside the desired directory.
References
Notes
CVE-2024-12088 created at 14 Jan 2025 21:17:14