CVE Published: 17/10/2017 |
CVE Updated: 05/08/2024 |
CVE Year: 2017 Source: debian |
Vendor: n/a |
Product: Debian ftpsync before 20171017 Status : PUBLISHED
CVE-2017-8805 Description
Debian ftpsync before 20171017 does not use the rsync --safe-links option, which allows remote attackers to conduct directory traversal attacks via a crafted upstream mirror.