It was discovered that rsync incorrectly handled invalid filenames. A malicious server could use this issue to write files outside of the intended destination directory.
{ "availability": "No subscription required", "binaries": [ { "binary_version": "3.1.0-2ubuntu0.2", "binary_name": "rsync" } ] }