CVE-2014-8242: Librsync Project Librsync
Medium severity, CVSS 5.8. EPSS: 2.9% chance of exploitation in the next 30 days.
librsync before 1.0.0 uses a truncated MD4 checksum to match blocks, which makes it easier for remote attackers to modify transmitted data via a birthday attack.
Affected products
- Librsync Project Librsync: before 1.0.0 (fixed in 1.0.0)
Published 2015-10-26. Last modified 2026-06-17.