Daemonology maintains bsdiff, a binary-patching utility widely used in embedded systems, firmware updates, and software distribution pipelines where memory efficiency and patch size minimization are critical. The observed vulnerability signal centers on out-of-bounds write conditions, a class that reflects the low-level buffer manipulation inherent to differential compression and binary patching operations. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Daemonology over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-14315CRITICAL A memory corruption vulnerability is present in bspatch as shipped in Colin Percival’s bsdiff tools version 4.3. Insufficient checks when handling external inputs allows an attacke | Sep 16, 2020 | 9.8 | 30 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Daemonology.
Media articles that mention a CVE ID that affects a product developed by Daemonology — matched by CVE ID, not by vendor name.