[CLSA-2026:1789580939] rsync: Fix of CVE-2026-70456
Type:
security
Severity:
Important
Release date:
2026-09-19 00:49:26 UTC
Description:
- CVE-2026-70456: reserve room for the trailing NULL before read_args stores it, so a post-dot daemon request that lands argc on maxargs cannot write one slot past the argv allocation
CVEs fixed:
Updated packages:
  • rsync-3.1.2-12.0.1.el7_9.tuxcare.els13.x86_64.rpm
    sha:086b1b9940c200bb59e3a34abdfb0905ae71fde918db5c6dbba172b717748b08
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.