Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
CLSA-2026-1777469554
See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2026-1777469554.json
JSON Data
https://api.test.osv.dev/v1/vulns/CLSA-2026-1777469554
Upstream
CVE-2024-12086
CVE-2025-10158
Published
2026-04-29T13:32:39Z
Modified
2026-05-27T11:18:35.100790154Z
Summary
rsync: Fix of 2 CVEs
Details
CVE-2024-12086: prevent server from reading arbitrary client files via path traversal
CVE-2025-10158: fix invalid access to files array in sender
Add upstream stability fix (RsyncProject/rsync PR #706): use-after-free in generator
Enable Amazon Linux 2 ELS
References
https://errata.tuxcare.com/els_os/rhel7els/CLSA-2026-1777469554.html
Affected packages
TuxCare:RHEL:7
/
rsync
Package
Name
rsync
Purl
pkg:rpm/tuxcare/rsync?distro=rhel-7
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
3.1.2-12.0.1.el7_9.tuxcare.els3
Database specific
source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/rhel7els/CLSA-2026-1777469554.json"
CLSA-2026-1777469554 - OSV