Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2022-29154 PoC — rsync 输入验证错误漏洞

Source
Associated Vulnerability
Title:rsync 输入验证错误漏洞 (CVE-2022-29154)
Description:rsync是Wayne Davison个人开发者的一个提供快速增量文件传输的开源实用程序。 rsync 3.2.5之前版本存在安全漏洞,该漏洞源于rsync 客户端对文件名的验证不足。
Description
HIP2022 presentation materials.
Readme
# CVE-2022-29154

**Authors: Ege BALCI, Taha HAMAD**

This repository contains the [HIP2022](https://hackinparis.com/) presentation materials for **CVE-2022-29154** vulnerability. The full presentation recording is available [here](https://www.youtube.com/watch?v=GW3wIITLbS4) but the slides in the video are added later (offline) by the conference team and it is an old version hence missing a lot of pages and the demo video :/ The PDF in this repo is the actual presentation material used during the conference.
File Snapshot

[4.0K] /data/pocs/8cc8b307e535a12fb695cf942af6672c9b3a7f91 ├── [1.0K] LICENSE ├── [ 514] README.md ├── [2.0M] rsync_poc.mp4 └── [6.0M] weaponizing_rsync_0day_vuln.pdf 0 directories, 4 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.