← back
CVE-2020-14315CWE-787

CVE-2020-14315

3Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 2.6%
exploitation probability
2.6%top 16% of all CVEs
observed exploitation
nono source reports it
A memory corruption vulnerability is present in bspatch as shipped in Colin Percival’s bsdiff tools version 4.3. Insufficient checks when handling external inputs allows an attacker to bypass the sanity checks in place and write out of a dynamically allocated buffer boundaries.
Affected products
n/a · bsdiff