>> cwRsync Security Update Fixes OpenSSH Multiple Local Vulnerabilities
Title : cwRsync Security Update Fixes OpenSSH Multiple Local Vulnerabilities VUPEN ID : VUPEN/ADV-2008-1124 CVE ID : CVE-2008-1483 - CVE-2008-1657
Rated as : Low Risk
Remotely Exploitable : No Locally Exploitable : Yes Release Date : 2008-04-07
Technical Description
Two vulnerabilities have been identified in cwRsync, which could be exploited by local attackers to bypass security restrictions or gain knowledge of sensitive information. These issues are caused by errors in OpenSSH. For additional information, see : VUPEN/ADV-2008-0994 - VUPEN/ADV-2008-1035