Launchpad.net

CVE 2014-8242

librsync before 1.0.0 uses a truncated MD4 checksum to match blocks, which makes it easier for remote attackers to modify transmitted data via a birthday attack.

See the CVE page on Mitre.org for more details.