CVE security advisories and vulnerability history for rsync by Samba.
41
Total CVEs
Published
0
In CISA KEV
Exploited in the wild
5
Public exploits
PoC or exploit code
7.3
Avg CVSS
2002–2026
Last updated
Overview
Samba rsync has 41 published CVE records since 2002, of which 0 are in CISA's Known Exploited Vulnerabilities catalog and 5 have a known public exploit. The average CVSS base score across scored CVEs is 7.3.
This page aggregates every publicly disclosed vulnerability (CVE) affecting Samba rsync, with a severity breakdown, the affected and patched versions, the most common weakness types, and the full CVE list.
Severity and exploitation
How the CVSS severity of Samba rsync's CVEs breaks down, plus how many are exploited in the wild or have public exploit code.
Critical5
High22
Medium11
Low3
In CISA’s Known Exploited Vulnerabilities catalog
0
None of Samba rsync's CVEs are currently listed in CISA's KEV catalog.
Public exploits
5
5 of Samba rsync's CVEs have a known public exploit available.
Affected versions and CVEs
Browse every Samba rsync version named in a CVE, then pick one to see only the CVEs that affect it.
Common questions about Samba rsync vulnerabilities.
How many CVEs does Samba rsync have?
Samba rsync has 41 published CVE records since 2002.
How many Samba rsync CVEs are in CISA KEV?
None of Samba rsync's CVEs are currently listed in CISA's Known Exploited Vulnerabilities catalog.
Are there public exploits for Samba rsync vulnerabilities?
Yes — 5 of Samba rsync's CVEs have a known public exploit.
Which versions of Samba rsync are affected?
285 distinct Samba rsync versions are named across its CVEs. Use the version filter above to see the CVEs affecting a specific version.
What are the most common weakness types in Samba rsync CVEs?
Samba rsync's CVEs most often map to these CWE weakness types: CWE-59 (Improper Link Resolution Before File Access ('Link Following')), CWE-22 (Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')), CWE-367 (Time-of-check Time-of-use (TOCTOU) Race Condition), CWE-863 (Incorrect Authorization).
How many critical Samba rsync vulnerabilities are there?
Samba rsync has 5 critical and 22 high-severity CVEs.
What is the average severity of Samba rsync CVEs?
The average CVSS base score across Samba rsync's scored CVEs is 7.3.