Angel Yankov
04926b0b74
* Added rsync-CVE-2024-12747.patch - Security update, fix multiple vulnerabilities: * CVE-2024-12084, bsc#1234100 - Heap Buffer Overflow in Checksum Parsing * CVE-2024-12085, bsc#1234101 - Info Leak via uninitialized Stack contents defeats ASLR * CVE-2024-12086, bsc#1234102 - Server leaks arbitrary client files * CVE-2024-12087, bsc#1234103 - Server can make client write files outside of destination directory using symbolic links * CVE-2024-12088, bsc#1234104 - --safe-links Bypass * Added rsync-CVE-2024-12084-overflow-01.patch * Added rsync-CVE-2024-12084-overflow-02.patch * Added rsync-CVE-2024-12085.patch * Added rsync-CVE-2024-12086_01.patch * Added rsync-CVE-2024-12086_02.patch * Added rsync-CVE-2024-12086_03.patch * Added rsync-CVE-2024-12086_04.patch * Added rsync-CVE-2024-12087_01.patch * Added rsync-CVE-2024-12087_02.patch * Added rsync-CVE-2024-12088.patch OBS-URL: https://build.opensuse.org/package/show/network/rsync?expand=0&rev=129
13 lines
492 B
Diff
13 lines
492 B
Diff
diff -ur rsync-3.3.0.old/rsync.h rsync-3.3.0/rsync.h
|
|
--- rsync-3.3.0.old/rsync.h 2022-10-16 19:28:58.000000000 +0200
|
|
+++ rsync-3.3.0/rsync.h 2024-08-26 11:31:14.458919925 +0200
|
|
@@ -30,7 +30,7 @@
|
|
/* RSYNCD_SYSCONF is now set in config.h */
|
|
#define RSYNCD_USERCONF "rsyncd.conf"
|
|
|
|
-#define DEFAULT_LOCK_FILE "/var/run/rsyncd.lock"
|
|
+#define DEFAULT_LOCK_FILE "/run/rsyncd.lock"
|
|
#define URL_PREFIX "rsync://"
|
|
|
|
#define SYMLINK_PREFIX "/rsyncd-munged/" /* This MUST have a trailing slash! */
|