It was discovered that rsync incorrectly handled invalid filenames. A malicious server could use this issue to write files outside of the intended destination directory.
{ "binaries": [ { "binary_name": "rsync", "binary_version": "3.1.0-2ubuntu0.2" } ], "availability": "No subscription required" }