Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-0880

Опубликовано: 08 июл. 2014
Источник: redhat
CVSS2: 5
EPSS Низкий

Описание

Apache Xerces-C++ allows remote attackers to cause a denial of service (CPU consumption) via a crafted message sent to an XML service that causes hash table collisions.

Отчет

This issue affects the versions of xerces as shipped with Red Hat Enterprise Linux 6. Red Hat Product Security has rated this issue as having Moderate security impact. A future update may address this issue. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6xerces-cAffected
Red Hat Enterprise MRG 1xerces-cAffected
Red Hat Enterprise MRG 2xerces-cAffected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-407
https://bugzilla.redhat.com/show_bug.cgi?id=787103xml: xerces-c hash table collisions CPU usage DoS (oCERT-2011-003)

EPSS

Процентиль: 82%
0.0169
Низкий

5 Medium

CVSS2

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 8 лет назад

Apache Xerces-C++ allows remote attackers to cause a denial of service (CPU consumption) via a crafted message sent to an XML service that causes hash table collisions.

CVSS3: 7.5
nvd
больше 8 лет назад

Apache Xerces-C++ allows remote attackers to cause a denial of service (CPU consumption) via a crafted message sent to an XML service that causes hash table collisions.

CVSS3: 7.5
debian
больше 8 лет назад

Apache Xerces-C++ allows remote attackers to cause a denial of service ...

CVSS3: 7.5
github
больше 3 лет назад

Apache Xerces-C++ allows remote attackers to cause a denial of service (CPU consumption) via a crafted message sent to an XML service that causes hash table collisions.

EPSS

Процентиль: 82%
0.0169
Низкий

5 Medium

CVSS2