CVE-2003-0962
Published · Updated
8Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 21%
exploitation probability
21%top 2% of all CVEs
observed exploitation
nono source reports it
Heap-based buffer overflow in rsync before 2.5.7, when running in server mode, allows remote attackers to execute arbitrary code and possibly escape the chroot jail.
Affected products
n/a · n/aReferences
ftp://patches.sgi.com/support/free/security/advisories/20031202-01-Uhttp://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000794http://marc.info/?l=bugtraq&m=107055681311602&w=2http://marc.info/?l=bugtraq&m=107055684711629&w=2http://marc.info/?l=bugtraq&m=107055702911867&w=2http://marc.info/?l=bugtraq&m=107056923528423&w=2http://secunia.com/advisories/10353http://secunia.com/advisories/10354http://secunia.com/advisories/10355http://secunia.com/advisories/10356http://secunia.com/advisories/10357http://secunia.com/advisories/10358