When the syncing of symbolic links is enabled, either through the -l or -a (--archive) flags, a malicious server can make the client write arbitrary files outside of the destination directory.
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2025:2600 https://access.redhat.com/errata/RHSA-2025:2600
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:7050 https://access.redhat.com/errata/RHSA-2025:7050
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2025:23154 https://access.redhat.com/errata/RHSA-2025:23154
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2025:23235 https://access.redhat.com/errata/RHSA-2025:23235
This issue has been addressed in the following products: Red Hat Enterprise Linux 6 Extended Lifecycle Support - EXTENSION Via RHSA-2025:23416 https://access.redhat.com/errata/RHSA-2025:23416
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions Via RHSA-2025:23407 https://access.redhat.com/errata/RHSA-2025:23407
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Extended Lifecycle Support Via RHSA-2025:23415 https://access.redhat.com/errata/RHSA-2025:23415
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.2 Advanced Update Support Via RHSA-2025:23842 https://access.redhat.com/errata/RHSA-2025:23842
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On Via RHSA-2025:23853 https://access.redhat.com/errata/RHSA-2025:23853
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions Red Hat Enterprise Linux 8.6 Telecommunications Update Service Via RHSA-2025:23854 https://access.redhat.com/errata/RHSA-2025:23854
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions Red Hat Enterprise Linux 8.8 Telecommunications Update Service Via RHSA-2025:23858 https://access.redhat.com/errata/RHSA-2025:23858