Publishing details

Changelog

rsync (3.2.5-1) unstable; urgency=medium

  * New upstream version 3.2.5
    - Added some file-list safety checking that helps to ensure that a rogue
      sending rsync can't add unrequested top-level names and/or include
      recursive names that should have been excluded by the sender. These
      extra safety checks only require the receiver rsync to be updated. When
      dealing with an untrusted sending host, it is safest to copy into a
      dedicated destination directory for the remote content (i.e. don't copy
      into a destination directory that contains files that aren't from the
      remote host unless you trust the remote host)
      (closes: #1016543, CVE-2022-29154).
    - The build date that goes into the manpages is now based on the
      developer's release date, not on the build's local-timezone
      interpretation of the date (closes: #1009981)

 -- Samuel Henrique <email address hidden>  Tue, 16 Aug 2022 11:03:48 +0100

Available diffs

Builds

Package files