Arbitrary File Write Vulnerability in Rsync by Wayned
CVE-2022-29154
Key Information:
Badges
What is CVE-2022-29154?
A vulnerability in rsync versions prior to 3.2.5 allows malicious remote servers to overwrite arbitrary files on the rsync client’s target directory. The exploit occurs due to insufficient validation of file names by the rsync client, enabling a malicious rsync server or a Man-in-The-Middle attacker to control the files sent to the client. This can lead to serious security risks, such as unauthorized access to sensitive files, including the potential compromise of the .ssh/authorized_keys file, thereby affecting the overall integrity and confidentiality of the affected systems.
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.