rsync 3.1.0-2ubuntu0.2 source package in Ubuntu


rsync (3.1.0-2ubuntu0.2) trusty-security; urgency=medium

  * SECURITY UPDATE: rsync path spoofing attack
    - debian/patches/CVE-2014-9512-0.patch: reject invalid filenames in
      filelist in flist.c, rsync.h, util.c.
    - debian/patches/CVE-2014-9512-1.patch: complain if an inc-recursive
      path is not right for its dir in flist.c, io.c, main.c, rsync.c.
    - debian/patches/CVE-2014-9512-2.patch: add parent-dir validation for
      --no-inc-recurse too in flist.c, generator.c.
    - CVE-2014-9512

 -- Marc Deslauriers <email address hidden>  Tue, 19 Jan 2016 15:27:53 -0500

Upload details

Uploaded by:
Marc Deslauriers on 2016-01-20
Uploaded to:
Original maintainer:
Ubuntu Developers
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section


File Size SHA-256 Checksum
rsync_3.1.0.orig.tar.gz 863.2 KiB 81ca23f77fc9b957eb9845a6024f41af0ff0c619b7f38576887c63fa38e2394e
rsync_3.1.0-2ubuntu0.2.diff.gz 22.6 KiB 57b85f93803243c42d3a71865e29847bd1033a1c30f945de07a19a3bcd5c1ed5
rsync_3.1.0-2ubuntu0.2.dsc 1.7 KiB fdd4cdb297cc5751937e419a5c5af8f6ed3b4d1dd53a59bbafbc46bb19f32538

View changes file

Binary packages built by this source

rsync: fast, versatile, remote (and local) file-copying tool

 rsync is a fast and versatile file-copying tool which can copy locally
 and to/from a remote host. It offers many options to control its behavior,
 and its remote-update protocol can minimize network traffic to make
 transferring updates between machines fast and efficient.
 It is widely used for backups and mirroring and as an improved copy
 command for everyday use.
 This package provides both the rsync command line tool and optional
 daemon functionality.