Search
Search is not available in local development.
Run npx pagefind --site __site after building to enable it.
JLSEC-2025-324

A flaw was found in rsync which could be triggered when rsync compares file checksums

JLSEC Published
Modified
Affected Packages
rsync_jll < 3.3.0+0
Aliases / Upstream
CVE-2024-12085

A flaw was found in rsync which could be triggered when rsync compares file checksums. This flaw allows an attacker to manipulate the checksum length (s2length) to cause a comparison between a checksum and uninitialized memory and leak one byte of uninitialized stack data at a time.

References