[Apollo] Advisories Statistics light light Login

RLSA-2026:67463

Security Mirrored from RHSA-2026:67463
Issued at: 2026-09-15
Updated at: 2026-09-16

Advisory content derived from Red Hat RHSA-2026:67463, © Red Hat, Inc., used under CC BY 4.0, with modifications.

Synopsis

Important: rsync security, bug fix, and enhancement update



Description

The rsync utility enables the users to copy and synchronize files locally or across a network. Synchronization with rsync is fast because rsync only sends the differences in files over the network instead of sending whole files. The rsync utility is also used as a mirroring tool.

Security Fix(es):

* rsync: rsync 2.3.3 < 3.5.0 Path Traversal via --partial-dir/--backup-dir Symlink (CVE-2026-70460)

* rsync: rsync: TLS Certificate Validation Bypass allows interception of encrypted sessions (CVE-2026-70454)

* rsync: rsync: Arbitrary file deletion via malicious file list (CVE-2026-53789)

* rsync: rsync < 3.5.0 Command Injection via Multiple Code Paths (CVE-2026-53790)

* rsync: rsync: Memory corruption via crafted file entries (CVE-2026-70458)

* rsync: rsync: Denial of Service via handshake stall (CVE-2026-70464)

* rsync: rsync: Local Privilege Escalation via Symlink Following (CVE-2026-53803)

* rsync: rsync: Unauthorized File Access via Symlink Module Root (CVE-2026-53784)

* rsync: rsync: Authorization bypass via `auth users` directive parsing (CVE-2026-70463)

* rsync: rsync 3.1.0 < 3.5.0 Access Control Bypass via DNS Resolution Failure (CVE-2026-70452)

* rsync: rsync < 3.5.0 Daemon IP Spoofing via PROXY Protocol Header (CVE-2026-53791)

* rsync: rsync: Arbitrary file write via --temp-dir or --link-dest options (CVE-2026-53795)

* rsync: rsync: Heap Out-of-Bounds Write via crafted argument list (CVE-2026-70456)

* rsync: rsync < 3.5.0 Path Confinement Bypass via /./ Boundary Marker in Chroot Mode (CVE-2026-53793)

* rsync: rsync: Denial of Service via Algorithmic Complexity (CVE-2026-70453)

* rsync: rsync: Denial of Service via Zstandard compression thread exhaustion (CVE-2026-70455)

* rsync: rsync: Memory corruption via out-of-bounds write in size parsing (CVE-2026-70457)

* rsync: rsync: Information disclosure and denial of service via crafted files-from entry (CVE-2026-70461)

* rsync: rsync: Arbitrary File Read via Symlink Following (CVE-2026-53802)

* rsync: rsync: Arbitrary file write via path traversal in --relative mode (CVE-2026-53785)

* rsync: rsync: Directory escape via TOCTOU race condition in rrsync (CVE-2026-53783)

Bug Fix(es) and Enhancement(s):

* Rebase rsync to version 3.5.0 in Rocky Linux10 (JIRA:Rocky Linux-246094)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.



Affected products

Rocky Linux 10 aarch64 Rocky Linux 10 ppc64le Rocky Linux 10 riscv64 Rocky Linux 10 s390x Rocky Linux 10 x86_64

Fixes

2515368 2515373 2515375 2515378 2515379 2515380 2515381 2515384 2515385 2515386 2515387 2515389 2515395 2515396 2515403 2515406 2515407 2515409 2515416 2515417 2515419

CVEs

CVE-2026-53783 CVE-2026-53784 CVE-2026-53785 CVE-2026-53789 CVE-2026-53790 CVE-2026-53791 CVE-2026-53793 CVE-2026-53795 CVE-2026-53802 CVE-2026-53803 CVE-2026-70452 CVE-2026-70453 CVE-2026-70454 CVE-2026-70455 CVE-2026-70456 CVE-2026-70457 CVE-2026-70458 CVE-2026-70460 CVE-2026-70461 CVE-2026-70463 CVE-2026-70464

Affected packages

Rocky Linux 10 s390x - BaseOS

rsync-debuginfo-0:3.5.0-3.el10_2.s390x.rpm rsync-debugsource-0:3.5.0-3.el10_2.s390x.rpm rsync-0:3.5.0-3.el10_2.s390x.rpm rsync-0:3.5.0-3.el10_2.src.rpm

Rocky Linux 10 aarch64 - BaseOS

rsync-0:3.5.0-3.el10_2.aarch64.rpm rsync-0:3.5.0-3.el10_2.src.rpm rsync-debuginfo-0:3.5.0-3.el10_2.aarch64.rpm rsync-debugsource-0:3.5.0-3.el10_2.aarch64.rpm

Rocky Linux 10 ppc64le - BaseOS

rsync-debuginfo-0:3.5.0-3.el10_2.ppc64le.rpm rsync-debugsource-0:3.5.0-3.el10_2.ppc64le.rpm rsync-0:3.5.0-3.el10_2.src.rpm rsync-0:3.5.0-3.el10_2.ppc64le.rpm

Rocky Linux 10 x86_64 - BaseOS

rsync-debuginfo-0:3.5.0-3.el10_2.x86_64.rpm rsync-debugsource-0:3.5.0-3.el10_2.x86_64.rpm rsync-0:3.5.0-3.el10_2.src.rpm rsync-0:3.5.0-3.el10_2.x86_64.rpm

Rocky Linux 10 aarch64 - AppStream

rsync-daemon-0:3.5.0-3.el10_2.noarch.rpm rsync-rrsync-0:3.5.0-3.el10_2.noarch.rpm

Rocky Linux 10 ppc64le - AppStream

rsync-daemon-0:3.5.0-3.el10_2.noarch.rpm rsync-rrsync-0:3.5.0-3.el10_2.noarch.rpm

Rocky Linux 10 riscv64 - AppStream

rsync-daemon-0:3.5.0-3.el10_2.noarch.rpm rsync-rrsync-0:3.5.0-3.el10_2.noarch.rpm

Rocky Linux 10 s390x - AppStream

rsync-daemon-0:3.5.0-3.el10_2.noarch.rpm rsync-rrsync-0:3.5.0-3.el10_2.noarch.rpm

Rocky Linux 10 x86_64 - AppStream

rsync-daemon-0:3.5.0-3.el10_2.noarch.rpm rsync-rrsync-0:3.5.0-3.el10_2.noarch.rpm

Rocky Linux 10 riscv64 - BaseOS

rsync-0:3.5.0-3.el10_2.src.rpm