[DSA106] DSA-106-2 rsync

Sebastian Krahmer found several places in rsync (a popular tool to synchronise files between machines)
where signed and unsigned numbers
were mixed which resulted in insecure code (see href="">
This could be abused by
remote users to write 0-bytes in rsync's memory and trick rsync into
executing arbitrary code.

This has been fixed in version 2.3.2-1.3 and we recommend you upgrade
your rsync package immediately.
Unfortunately the patch used to fix that problem broke rsync.
This has been fixed in version 2.3.2-1.5 and we recommend you
upgrade to that version immediately.

Network Security Threat Level: High

