Re: Serious rsync security issues

From: Vincent Miller <vrwmiller_at_gmail.com>
Date: Fri, 17 Jan 2025 14:54:23 UTC
On Fri, Jan 17, 2025 at 6:49 AM Liam Proven <liam.proven@sitpub.com> wrote:

> On Thu, 16 Jan 2025 at 23:16, Vincent Miller <vrwmiller@gmail.com> wrote:
> >
> > The port is at 3.4.1. If I'm not mistaken the vulnerabilities are in
> 3.4.0.
>
> You _are_ mistaken. 3.4.0 was the version that fixed the issues.
>

I stand corrected. Appreciate the clarity.


The most serious issue, CVSS 9.8, affects all versions since 3.2.7.
> The other 5 affect all known versions.
>

Up to version 3.4.0?

-- 
Take care
Vincent Miller