Unrated severityNVD Advisory· Published Jul 7, 2004· Updated Jun 16, 2026
CVE-2004-0426
CVE-2004-0426
Description
rsync before 2.6.1 does not properly sanitize paths when running a read/write daemon without using chroot, which allows remote attackers to write files outside of the module's path.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
23- www.debian.org/security/2004/dsa-499nvdPatchVendor Advisory
- www.redhat.com/support/errata/RHSA-2004-192.htmlnvdPatchVendor Advisory
- rsync.samba.orgnvdVendor Advisory
- marc.infonvd
- secunia.com/advisories/11514nvd
- secunia.com/advisories/11515nvd
- secunia.com/advisories/11523nvd
- secunia.com/advisories/11537nvd
- secunia.com/advisories/11583nvd
- secunia.com/advisories/11669nvd
- secunia.com/advisories/11688nvd
- secunia.com/advisories/11993nvd
- secunia.com/advisories/12054nvd
- www.ciac.org/ciac/bulletins/o-134.shtmlnvd
- www.ciac.org/ciac/bulletins/o-212.shtmlnvd
- www.gentoo.org/security/en/glsa/glsa-200407-10.xmlnvd
- www.mandriva.com/security/advisoriesnvd
- www.securityfocus.com/bid/10247nvd
- www.slackware.org/security/viewer.phpnvd
- www.trustix.net/errata/misc/2004/TSL-2004-0024-rsync.asc.txtnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/16014nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9495nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A967nvd
News mentions
0No linked articles in our index yet.