CVE-2026-29518 – rsync
CVSS 7
IMPORTANT
“File synchronization tools become high-risk when memory and timing controls fail.”
RsyncProject released patches for two high-severity vulnerabilities affecting rsync. CVE-2026-43618 has a CVSS score of 8.1, which is High severity. CVE-2026-29518 has a CVSS score of 7.0, which is High severity.
The update addresses memory handling and race condition risks. One vulnerability could allow remote code execution, while the other could allow privilege escalation in affected rsync environments.
Key Details
- Affected Product
- Samba Rsync
- Attack Vector
- Local
- Attack Complexity
- High
- Privileges Required
- Low
- User Interaction
- None
- CWE Classification
- CWE-367
Patch this CVE on all your endpoints in under 5 minutes.
First 200 endpoints are free forever, scale as needed.