diff options
author | Patrick J Volkerding <volkerdi@slackware.com> | 2022-08-15 20:23:47 +0000 |
---|---|---|
committer | Eric Hameleers <alien@slackware.com> | 2022-08-16 13:30:28 +0200 |
commit | cffeb680aad4319c1d5fb44fc6b2c53a42d69617 (patch) | |
tree | e735fd17cd0ccbe4d5cfcf66db47f44a71fc02be /patches/source/rsync/slack-desc | |
parent | 24a490781722e3d85824de3a0fd52ebeb35cc14b (diff) | |
download | current-cffeb680aad4319c1d5fb44fc6b2c53a42d69617.tar.gz current-cffeb680aad4319c1d5fb44fc6b2c53a42d69617.tar.xz |
Mon Aug 15 20:23:47 UTC 202220220815202347_15.0
patches/packages/rsync-3.2.5-x86_64-1_slack15.0.txz: Upgraded.
Added some file-list safety checking that helps to ensure that a rogue
sending rsync can't add unrequested top-level names and/or include recursive
names that should have been excluded by the sender. These extra safety
checks only require the receiver rsync to be updated. When dealing with an
untrusted sending host, it is safest to copy into a dedicated destination
directory for the remote content (i.e. don't copy into a destination
directory that contains files that aren't from the remote host unless you
trust the remote host).
For more information, see:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-29154
(* Security fix *)
Diffstat (limited to '')
-rw-r--r-- | patches/source/rsync/slack-desc | 19 |
1 files changed, 19 insertions, 0 deletions
diff --git a/patches/source/rsync/slack-desc b/patches/source/rsync/slack-desc new file mode 100644 index 000000000..1b04b3b74 --- /dev/null +++ b/patches/source/rsync/slack-desc @@ -0,0 +1,19 @@ +# HOW TO EDIT THIS FILE: +# The "handy ruler" below makes it easier to edit a package description. Line +# up the first '|' above the ':' following the base package name, and the '|' +# on the right side marks the last column you can put a character in. You must +# make exactly 11 lines for the formatting to be correct. It's also +# customary to leave one space after the ':'. + + |-----handy-ruler------------------------------------------------------| +rsync: rsync (remote file sync) +rsync: +rsync: rsync is a replacement for rcp that has many more features. It +rsync: uses the "rsync algorithm" which provides a very fast method for +rsync: bringing remote files into sync. It does this by sending just the +rsync: differences in the files across the link, without requiring that both +rsync: sets of files are present at one of the ends of the link beforehand. +rsync: rsync was written by Andrew Tridgell and Paul Mackerras. +rsync: +rsync: Homepage: http://rsync.samba.org +rsync: |