[NEW] [high] Rsync: Multiple vulnerabilities
An attacker can exploit multiple vulnerabilities in Rsync to escalate privileges, execute arbitrary code, disclose or manipulate data, bypass security measures or trigger Denial-of-Service conditions.
CSIRTS triage
- What
- Multiple vulnerabilities in Rsync allow attackers to escalate privileges, execute arbitrary code, disclose or manipulate data, bypass security measures, or trigger denial-of-service conditions.
- Who is affected
- All Rsync deployments are affected.
- Urgency
- High urgency; unpatched Rsync instances are vulnerable to multiple attack vectors including privilege escalation and arbitrary code execution.
- Action
- Apply available patches for Rsync immediately.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch Rsync
Get an email when a new Rsync advisory drops — max one per day, one-click unsubscribe.
Details
Original advisory: https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-2817
Exploitation outlook
EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.
- Exploitation likely imminentCVE-2024-12084EPSS puts this in the most-targeted tier (72.1% 30-day exploitation probability). Prioritize alongside KEV items. Riskier than 99.4% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-436170.28% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 21% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-436190.14% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 3% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-436200.43% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 36% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-537830.37% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 31% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-537840.18% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 7% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-537850.14% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 4% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-537860.27% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 20% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-537880.25% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 17% of all EPSS-scored CVEs.
- Low exploitation riskCVE-2026-537890.31% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 24% of all EPSS-scored CVEs.
Referenced CVEs
Same CVEs, other sources
How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.
- high[UPDATE] [high] Rsync: Multiple vulnerabilitiescert-bund
- highCVE-2026-70464: rsync daemon 2.0.0 before 3.5.0 contains a denial of service vulnerability that allows unauthe…nvd
- highCVE-2026-70463: rsync 3.1.0 before 3.5.0 contains an authorization bypass in auth users directive parsing. The…nvd
- mediumCVE-2026-70462: rsync 3.1.0 before 3.5.0 contains a signed integer overflow vulnerability in the I/O timeout i…nvd
- highCVE-2026-70461: rsync 3.2.5 before 3.5.0 contains a heap out-of-bounds write vulnerability that allows remote …nvd
- highCVE-2026-70460: rsync 2.3.3 before 3.5.0 contains a path traversal vulnerability that allows a malicious sende…nvd
- mediumCVE-2026-70459: rsync 3.0.0 before 3.5.0 contains a null pointer dereference vulnerability in the daemon child…nvd
- highCVE-2026-70458: rsync 3.0.0 before 3.5.0 contains an out-of-bounds write vulnerability that allows attackers t…nvd
- mediumCVE-2026-70457: rsync 3.2.3 before 3.5.0 contains an out-of-bounds write in parse_size_arg() where the return …nvd
- highCVE-2026-70456: rsync 3.0.1 before 3.5.0 contains an out-of-bounds write vulnerability in the read_args() func…nvd
- highCVE-2026-70455: rsync 3.4.2 before 3.5.0 contains a denial of service vulnerability that allows a remote sende…nvd
- highCVE-2026-70454: rsync 3.2.0 through 3.2.3 (openssl mode) and rsync-ssl through 3.4.4 (stunnel mode) contain a …nvd
More from CERT-Bund (BSI) Security Advisories
- high[NEW] [high] Linux Kernel: Multiple vulnerabilities2026-08-25
- medium[NEW] [medium] libTIFF: Multiple Vulnerabilities2026-08-25
- high[NEW] [high] Contao: Multiple Vulnerabilities2026-08-25
- medium[NEW] [medium] Django: Multiple Vulnerabilities2026-08-25
- high[NEW] [high] Red Hat Enterprise Linux (Apicurio Registry): Multiple Vulnerabilities2026-08-25