Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-0880

Опубликовано: 08 июл. 2014
Источник: redhat
CVSS2: 5

Описание

Apache Xerces-C++ allows remote attackers to cause a denial of service (CPU consumption) via a crafted message sent to an XML service that causes hash table collisions.

Отчет

This issue affects the versions of xerces as shipped with Red Hat Enterprise Linux 6. Red Hat Product Security has rated this issue as having Moderate security impact. A future update may address this issue. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6xerces-cOut of support scope
Red Hat Enterprise MRG 1xerces-cFix deferred
Red Hat Enterprise MRG 2xerces-cFix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-407
https://bugzilla.redhat.com/show_bug.cgi?id=787103xml: xerces-c hash table collisions CPU usage DoS (oCERT-2011-003)

5 Medium

CVSS2

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 9 лет назад

Apache Xerces-C++ allows remote attackers to cause a denial of service (CPU consumption) via a crafted message sent to an XML service that causes hash table collisions.

CVSS3: 7.5
nvd
почти 9 лет назад

Apache Xerces-C++ allows remote attackers to cause a denial of service (CPU consumption) via a crafted message sent to an XML service that causes hash table collisions.

CVSS3: 7.5
debian
почти 9 лет назад

Apache Xerces-C++ allows remote attackers to cause a denial of service ...

CVSS3: 7.5
github
около 4 лет назад

Apache Xerces-C++ allows remote attackers to cause a denial of service (CPU consumption) via a crafted message sent to an XML service that causes hash table collisions.

5 Medium

CVSS2