Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 442
Alerts This Week
Warning Icon 1 442

Oracle Linux 10 rsync Important Security Fix ELSA-2026-19152 CVE-2026-41035

oracle
Calendar Grey July 22, 2026
Scroller Oracle
Updates for rsync on Oracle Linux 10 address memory disclosure and symlink race issues through several important enhancements.
Oracle Linux has released updated rsync packages addressing security vulnerabilities, including CVEs related to symlink race conditions and memory disclosure, available on the Unbr...

Summary

[3.4.4-1] - Resolves: RHEL-181630 - Rebase rsync to version 3.4.4 - Resolves: RHEL-174929 - TOCTOU symlink race condition (CVE-2026-29518) - Resolves: RHEL-174949 - Memory disclosure via int overflow (CVE-2026-43618) [3.4.1-3] - Resolves: RHEL-118549 - Do not clear DISPLAY unconditionally

SRPMs

http://oss.oracle.com/ol10/SRPMS-updates/rsync-3.4.4-1.el10_2.src.rpm

x86_64

rsync-3.4.4-1.el10_2.x86_64.rpm rsync-daemon-3.4.4-1.el10_2.noarch.rpm rsync-rrsync-3.4.4-1.el10_2.noarch.rpm

aarch64

rsync-3.4.4-1.el10_2.aarch64.rpm rsync-daemon-3.4.4-1.el10_2.noarch.rpm rsync-rrsync-3.4.4-1.el10_2.noarch.rpm

Severity
important
Lowest
Low
Medium
High
Critical

Related CVEs: CVE-2026-41035

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.