Branches for Raring

Name Status Last Modified Last Commit
lp:ubuntu/raring-proposed/rssh 2 Mature 2012-11-28 05:33:29 UTC
17. * Fix several flaws in validation of ...

Author: Russ Allbery
Revision Date: 2012-11-22 12:01:41 UTC

* Fix several flaws in validation of rsync options. Ensure --server
  cannot be hidden from the server by putting it after -- or as the
  argument to another option. Verify that the -e option's value matches
  expectations rather than trying to look for invalid -e option values.
  (CVE-2012-2251)
* Reject the rsync --rsh option even if it does not contain a trailing
  equal sign. (CVE-2012-2252)

lp:ubuntu/raring/rssh 1 Development 2012-11-22 12:01:41 UTC
17. * Fix several flaws in validation of ...

Author: Russ Allbery
Revision Date: 2012-11-22 12:01:41 UTC

* Fix several flaws in validation of rsync options. Ensure --server
  cannot be hidden from the server by putting it after -- or as the
  argument to another option. Verify that the -e option's value matches
  expectations rather than trying to look for invalid -e option values.
  (CVE-2012-2251)
* Reject the rsync --rsh option even if it does not contain a trailing
  equal sign. (CVE-2012-2252)

12 of 2 results