CVE-2012-2251: Pizzashack Rssh

Medium severity, CVSS 4.4. EPSS: 0.3% chance of exploitation in the next 30 days.

rssh 2.3.2, as used by Debian, Fedora, and others, when the rsync protocol is enabled, allows local users to bypass intended restricted shell access via a (1) "-e" or (2) "--" command line option.

Affected products

Published 2013-01-11. Last modified 2026-06-16.