Debian Security Advisory
DLA-697-1 bsdiff -- LTS security update
- Date Reported:
- 03 Nov 2016
- Affected Packages:
- bsdiff
- Vulnerable:
- Yes
- Security database references:
- In Mitre's CVE dictionary: CVE-2014-9862.
- More information:
-
It was discovered that there was an
arbitrary write
vulnerability in bsdiff, a tool to patches between binary files.For Debian 7
Wheezy
, this issue has been fixed in bsdiff version 4.3-14+deb7u1.We recommend that you upgrade your bsdiff packages.