Medium severity5.3OSV Advisory· Published Dec 15, 2025· Updated Apr 15, 2026
CVE-2025-67901
CVE-2025-67901
Description
openrsync through 0.5.0, as used in OpenBSD through 7.8 and on other platforms, allows a client to cause a server SIGSEGV by specifying a length of zero for block data, because the relationship between p->rem and p->len is not checked.
Affected products
1- Range: VERSION_0, VERSION_0_1_0, VERSION_0_2_0, …
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.