[CLSA-2026:1780513862] rsync: Fix of CVE-2026-29518
Type:
security
Severity:
Important
Release date:
2026-06-03 19:11:16 UTC
Description:
- Add .bs_config for centos8.4els platform (mock dist .el8_4) - CVE-2026-29518: fix daemon-no-chroot TOCTOU symlink race by tracking per-module chroot in am_chrooted, routing sender read-path, receiver basis-file open, mkstemp, and inplace write through secure_relative_open() / secure_mkstemp()
CVEs fixed:
Updated packages:
  • rsync-3.1.3-12.el8_4.tuxcare.els11.x86_64.rpm
    sha:627f56cb861fec2b2da579c090e0dd8d4fd34b15d028a2b7d5fde51e2703df64
  • rsync-daemon-3.1.3-12.el8_4.tuxcare.els11.noarch.rpm
    sha:b4f30c55e92f8f12c18ccee9d7df80d424f68fc05e281ad243f3fb47982758aa
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.