CVE-2014-8242: Librsync Project Librsync

Medium severity, CVSS 5.8. EPSS: 2.9% chance of exploitation in the next 30 days.

librsync before 1.0.0 uses a truncated MD4 checksum to match blocks, which makes it easier for remote attackers to modify transmitted data via a birthday attack.

Affected products

Published 2015-10-26. Last modified 2026-06-17.