Описание
librsync before 1.0.0 uses a truncated MD4 checksum to match blocks, which makes it easier for remote attackers to modify transmitted data via a birthday attack.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | ignored | end of life |
| bionic | ignored | end of standard support, was needed |
| cosmic | ignored | end of life |
| devel | not-affected | 2.0.2-1 |
| disco | ignored | end of life |
| eoan | not-affected | 2.0.2-1 |
| esm-apps/resolute | not-affected | 2.0.2-1 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was needed] |
| esm-infra-legacy/xenial | needed | |
| esm-infra/bionic | needed |
Показывать по
10
EPSS
Процентиль: 86%
0.02939
Низкий
5.8 Medium
CVSS2
Связанные уязвимости
nvd
почти 11 лет назад
librsync before 1.0.0 uses a truncated MD4 checksum to match blocks, which makes it easier for remote attackers to modify transmitted data via a birthday attack.
debian
почти 11 лет назад
librsync before 1.0.0 uses a truncated MD4 checksum to match blocks, w ...
github
больше 4 лет назад
librsync before 1.0.0 uses a truncated MD4 checksum to match blocks, which makes it easier for remote attackers to modify transmitted data via a birthday attack.
EPSS
Процентиль: 86%
0.02939
Низкий
5.8 Medium
CVSS2