Fixes for a critical rsync vulnerability (CVE-2024-12084) have been released.

The Debian Project News and Announcements curated from official Debian news and rss feeds.

All information here is for reading only, please do not reply to threads in this forum.
Post Reply
Message
Author
User avatar
donald
Debian Developer, Site Admin
Debian Developer, Site Admin
Posts: 1456
Joined: 2021-03-30 20:08
Has thanked: 251 times
Been thanked: 305 times

Fixes for a critical rsync vulnerability (CVE-2024-12084) have been released.

#1 Post by donald »

https://micronews.debian.org/2025/1736709733.html


Fixes for a critical rsync vulnerability (CVE-2024-12084) have been released for Stable/Bookworm, Testing and Unstable. Oldstable/Bullseye is not affected. Fixes for other lower severity CVEs have also been released in the same update and can all be tracked at https://security-tracker.debian.org/tra ... kage/rsync. The fixed Stable version is 3.2.7-1+deb12u1 and the fixed Testing/Unstable version is 3.3.0+ds1-3
Typo perfectionish.


"The advice given above is all good, and just because a new message has appeared it does not mean that a problem has arisen, just that a new gremlin hiding in the hardware has been exposed." - FreewheelinFrank

Post Reply