It was discovered that bsdiff mishandled certain input. If a user were tricked into opening a malicious file, an attacker could cause bsdiff to crash or potentially execute arbitrary code.
{ "availability": "No subscription required", "binaries": [ { "binary_version": "4.3-15+deb8u1build0.16.04.1", "binary_name": "bsdiff" }, { "binary_version": "4.3-15+deb8u1build0.16.04.1", "binary_name": "bsdiff-dbgsym" } ] }