Bug 2515368 (CVE-2026-70460) - CVE-2026-70460 rsync: rsync 2.3.3 < 3.5.0 Path Traversal via --partial-dir/--backup-dir Symlink
Summary: CVE-2026-70460 rsync: rsync 2.3.3 < 3.5.0 Path Traversal via --partial-dir/--...
Keywords:
Status: NEW
Alias: CVE-2026-70460
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
high
high
Target Milestone: ---
Assignee: Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 2521724 2521725 2521726
Blocks:
TreeView+ depends on / blocked
 
Reported: 2026-08-13 15:49 UTC by OSIDB Bzimport
Modified: 2026-08-26 13:03 UTC (History)
17 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2026-08-13 15:49:28 UTC
rsync 2.3.3 before 3.5.0 contains a path traversal vulnerability that allows a malicious sender to escape the module root by exploiting symlinks within the module file tree when using --partial-dir or --backup-dir options. Attackers with write access to place a symlink under the module root, or who can exploit a pre-existing trusted symlink, can direct file writes to locations outside the intended module root, achieving arbitrary file write relative to the module root parent.


Note You need to log in before you can comment on or make changes to this bug.