Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-5373

Опубликовано: 28 нояб. 2012
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 5

Описание

Oracle Java SE 7 and earlier, and OpenJDK 7 and earlier, computes hash values without properly restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table, as demonstrated by a universal multicollision attack against the MurmurHash3 algorithm, a different vulnerability than CVE-2012-2739.

РелизСтатусПримечание
artful

not-affected

code-not-present
bionic

not-affected

code-not-present
cosmic

not-affected

code-not-present
devel

not-affected

code-not-present
disco

not-affected

code-not-present
esm-apps/bionic

not-affected

code-not-present
esm-apps/xenial

not-affected

code-not-present
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [code-not-present]]
hardy

DNE

lucid

not-affected

code-not-present

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was needed]
hardy

ignored

end of life
lucid

ignored

end of life
oneiric

ignored

end of life
precise

ignored

end of life

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

esm-infra-legacy/trusty

DNE

hardy

DNE

lucid

ignored

end of life
oneiric

ignored

end of life
precise

DNE

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [7u51-2.4.6-1ubuntu4]]
hardy

DNE

lucid

DNE

oneiric

ignored

end of life
precise

released

7u51-2.4.4-0ubuntu0.12.04.2

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

esm-infra-legacy/trusty

DNE

hardy

ignored

end of life
lucid

DNE

oneiric

DNE

precise

DNE

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

esm-infra-legacy/trusty

DNE

hardy

ignored

end of life
lucid

DNE

removed from archive
oneiric

DNE

precise

DNE

Показывать по

EPSS

Процентиль: 66%
0.00512
Низкий

5 Medium

CVSS2

Связанные уязвимости

redhat
около 13 лет назад

Oracle Java SE 7 and earlier, and OpenJDK 7 and earlier, computes hash values without properly restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table, as demonstrated by a universal multicollision attack against the MurmurHash3 algorithm, a different vulnerability than CVE-2012-2739.

nvd
около 13 лет назад

Oracle Java SE 7 and earlier, and OpenJDK 7 and earlier, computes hash values without properly restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table, as demonstrated by a universal multicollision attack against the MurmurHash3 algorithm, a different vulnerability than CVE-2012-2739.

debian
около 13 лет назад

Oracle Java SE 7 and earlier, and OpenJDK 7 and earlier, computes hash ...

github
больше 3 лет назад

Oracle Java SE 7 and earlier, and OpenJDK 7 and earlier, computes hash values without properly restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table, as demonstrated by a universal multicollision attack against the MurmurHash3 algorithm, a different vulnerability than CVE-2012-2739.

EPSS

Процентиль: 66%
0.00512
Низкий

5 Medium

CVSS2