๐Ÿ” CVE Alert

CVE-2026-44509

MEDIUM 6.3

Rsync: Symlink races on path-based syscalls

CVSS Score
6.3
EPSS Score
0.0%
EPSS Percentile
0th

Rsync is a file-copying tool that uses a delta-transfer algorithm to synchronize remote and local files. In versions prior to 3.4.3, previous bug fixes for symlink races in open() calls missed races in other path based system calls like chmod() and chown(). For rsync daemons with "use chroot = no" this allows an attacker with local filesystem access to change permissions, ownership or timestamp on a file outside the exported module. This issue is fixed in version 3.4.3.

CWE CWE-59 CWE-367 CWE-863
Vendor rsyncproject
Product rsync
Published Jul 20, 2026
Stay Ahead of the Next One

Get instant alerts for rsyncproject rsync

Be the first to know when new medium vulnerabilities affecting rsyncproject rsync are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N
Attack Vector
Local
Attack Complexity
High
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
None

Affected Versions

RsyncProject / rsync
< 3.4.3

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/RsyncProject/rsync/security/advisories/GHSA-4h9m-w5ff-j735