Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
Detecting and mitigating CVE-2024-12084: rsync remote code execution (sysdig.com)
4 points by JoachimS 10 months ago | hide | past | favorite | 1 comment


It's unclear to me if I only ever rsync over SSH, whether I would be vulnerable: would rsyncd be started and exposed for the duration of the transfer (though on an unprivileged arbitrary port)?

(Obviously, going to upgrade asap, but simply curious)




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: