Metrics
Affected Vendors & Products
Wed, 08 Oct 2025 15:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| CPEs | ||
| Vendors & Products | Redhat rhivos | 
Fri, 03 Oct 2025 16:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Redhat rhivos | |
| CPEs | cpe:/o:redhat:rhivos:1 | |
| Vendors & Products | Redhat rhivos | 
Mon, 02 Jun 2025 14:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Redhat discovery | |
| CPEs | cpe:/a:redhat:discovery:1.14::el9 | |
| Vendors & Products | Redhat discovery | |
| References |  | 
Thu, 22 May 2025 11:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| CPEs | cpe:/o:redhat:enterprise_linux:10 | 
Wed, 14 May 2025 03:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| CPEs | cpe:/a:redhat:enterprise_linux:9 cpe:/o:redhat:enterprise_linux:9 | 
Tue, 13 May 2025 09:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| CPEs | cpe:/a:redhat:enterprise_linux:9::appstream cpe:/o:redhat:enterprise_linux:9::baseos | |
| References |  | 
Wed, 12 Mar 2025 07:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| CPEs | cpe:/o:redhat:enterprise_linux:8 | 
Tue, 11 Mar 2025 03:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| CPEs | cpe:/o:redhat:enterprise_linux:8::baseos | |
| References |  | 
Wed, 15 Jan 2025 02:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| References |  | |
| Metrics | threat_severity 
 | threat_severity 
 | 
Tue, 14 Jan 2025 22:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| References |  | 
Tue, 14 Jan 2025 19:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | ssvc 
 | 
Tue, 14 Jan 2025 17:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rsync's default behavior when encountering symbolic links is to skip them. If an attacker replaced a regular file with a symbolic link at the right time, it was possible to bypass the default behavior and traverse symbolic links. Depending on the privileges of the rsync process, an attacker could leak sensitive information, potentially leading to privilege escalation. | |
| Title | Rsync: race condition in rsync handling symbolic links | |
| First Time appeared | Redhat Redhat enterprise Linux Redhat openshift | |
| Weaknesses | CWE-362 | |
| CPEs | cpe:/a:redhat:openshift:4 cpe:/o:redhat:enterprise_linux:6 cpe:/o:redhat:enterprise_linux:7 cpe:/o:redhat:enterprise_linux:8 cpe:/o:redhat:enterprise_linux:9 | |
| Vendors & Products | Redhat Redhat enterprise Linux Redhat openshift | |
| References |  | |
| Metrics | cvssV3_1 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: redhat
Published: 2025-01-14T17:39:16.031Z
Updated: 2025-10-08T15:36:29.030Z
Reserved: 2024-12-18T06:49:21.481Z
Link: CVE-2024-12747
 Vulnrichment
                        Vulnrichment
                    Updated: 2025-01-14T18:38:14.932Z
 NVD
                        NVD
                    Status : Awaiting Analysis
Published: 2025-01-14T18:15:25.830
Modified: 2025-06-02T15:15:27.937
Link: CVE-2024-12747
 Redhat
                        Redhat