This script is Copyright (C) 2004-2010 Tenable Network Security, Inc.
The remote host is missing a vendor-supplied security patch
The remote host is missing the patch for the advisory SUSE-SA:2004:026 (rsync).
The rsync-team released an advisory about a security problem in rsync.
If rsync is running in daemon-mode and without a chroot environment it
is possible for a remote attacker to trick rsyncd into creating an
absolute pathname while sanitizing it.
As a result it is possible to read/write from/to files outside the
NOTE: SUSE LINUX ships the rsync daemon with a chroot environment enabled
by default, therefore the default setup is not vulnerable.
Risk factor :
Get Nessus Professional to scan unlimited IPs, run compliance checks & moreBuy Nessus Professional Now