Lucene search

K
cveRedhatCVE-2012-0841
HistoryDec 21, 2012 - 5:46 a.m.

CVE-2012-0841

2012-12-2105:46:14
CWE-399
redhat
web.nvd.nist.gov
60
libxml2
cve-2012-0841
hash collision
vulnerability
nvd
denial of service

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

AI Score

7.9

Confidence

High

EPSS

0.009

Percentile

82.9%

libxml2 before 2.8.0 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted XML data.

Affected configurations

Nvd
Node
xmlsoftlibxml2Range2.7.8
OR
xmlsoftlibxml2Match1.7.0
OR
xmlsoftlibxml2Match1.7.1
OR
xmlsoftlibxml2Match1.7.2
OR
xmlsoftlibxml2Match1.7.3
OR
xmlsoftlibxml2Match1.7.4
OR
xmlsoftlibxml2Match1.8.0
OR
xmlsoftlibxml2Match1.8.1
OR
xmlsoftlibxml2Match1.8.2
OR
xmlsoftlibxml2Match1.8.3
OR
xmlsoftlibxml2Match1.8.4
OR
xmlsoftlibxml2Match1.8.5
OR
xmlsoftlibxml2Match1.8.6
OR
xmlsoftlibxml2Match1.8.7
OR
xmlsoftlibxml2Match1.8.9
OR
xmlsoftlibxml2Match1.8.10
OR
xmlsoftlibxml2Match1.8.13
OR
xmlsoftlibxml2Match1.8.14
OR
xmlsoftlibxml2Match1.8.16
OR
xmlsoftlibxml2Match2.0.0
OR
xmlsoftlibxml2Match2.1.0
OR
xmlsoftlibxml2Match2.1.1
OR
xmlsoftlibxml2Match2.2.0
OR
xmlsoftlibxml2Match2.2.0beta
OR
xmlsoftlibxml2Match2.2.1
OR
xmlsoftlibxml2Match2.2.2
OR
xmlsoftlibxml2Match2.2.3
OR
xmlsoftlibxml2Match2.2.4
OR
xmlsoftlibxml2Match2.2.5
OR
xmlsoftlibxml2Match2.2.6
OR
xmlsoftlibxml2Match2.2.7
OR
xmlsoftlibxml2Match2.2.8
OR
xmlsoftlibxml2Match2.2.9
OR
xmlsoftlibxml2Match2.2.10
OR
xmlsoftlibxml2Match2.2.11
OR
xmlsoftlibxml2Match2.3.0
OR
xmlsoftlibxml2Match2.3.1
OR
xmlsoftlibxml2Match2.3.2
OR
xmlsoftlibxml2Match2.3.3
OR
xmlsoftlibxml2Match2.3.4
OR
xmlsoftlibxml2Match2.3.5
OR
xmlsoftlibxml2Match2.3.6
OR
xmlsoftlibxml2Match2.3.7
OR
xmlsoftlibxml2Match2.3.8
OR
xmlsoftlibxml2Match2.3.9
OR
xmlsoftlibxml2Match2.3.10
OR
xmlsoftlibxml2Match2.3.11
OR
xmlsoftlibxml2Match2.3.12
OR
xmlsoftlibxml2Match2.3.13
OR
xmlsoftlibxml2Match2.3.14
OR
xmlsoftlibxml2Match2.4.1
OR
xmlsoftlibxml2Match2.4.2
OR
xmlsoftlibxml2Match2.4.3
OR
xmlsoftlibxml2Match2.4.4
OR
xmlsoftlibxml2Match2.4.5
OR
xmlsoftlibxml2Match2.4.6
OR
xmlsoftlibxml2Match2.4.7
OR
xmlsoftlibxml2Match2.4.8
OR
xmlsoftlibxml2Match2.4.9
OR
xmlsoftlibxml2Match2.4.10
OR
xmlsoftlibxml2Match2.4.11
OR
xmlsoftlibxml2Match2.4.12
OR
xmlsoftlibxml2Match2.4.13
OR
xmlsoftlibxml2Match2.4.14
OR
xmlsoftlibxml2Match2.4.15
OR
xmlsoftlibxml2Match2.4.16
OR
xmlsoftlibxml2Match2.4.17
OR
xmlsoftlibxml2Match2.4.18
OR
xmlsoftlibxml2Match2.4.19
OR
xmlsoftlibxml2Match2.4.20
OR
xmlsoftlibxml2Match2.4.21
OR
xmlsoftlibxml2Match2.4.22
OR
xmlsoftlibxml2Match2.4.23
OR
xmlsoftlibxml2Match2.4.24
OR
xmlsoftlibxml2Match2.4.25
OR
xmlsoftlibxml2Match2.4.26
OR
xmlsoftlibxml2Match2.4.27
OR
xmlsoftlibxml2Match2.4.28
OR
xmlsoftlibxml2Match2.4.29
OR
xmlsoftlibxml2Match2.4.30
OR
xmlsoftlibxml2Match2.5.0
OR
xmlsoftlibxml2Match2.5.4
OR
xmlsoftlibxml2Match2.5.7
OR
xmlsoftlibxml2Match2.5.8
OR
xmlsoftlibxml2Match2.5.10
OR
xmlsoftlibxml2Match2.5.11
OR
xmlsoftlibxml2Match2.6.0
OR
xmlsoftlibxml2Match2.6.1
OR
xmlsoftlibxml2Match2.6.2
OR
xmlsoftlibxml2Match2.6.3
OR
xmlsoftlibxml2Match2.6.4
OR
xmlsoftlibxml2Match2.6.5
OR
xmlsoftlibxml2Match2.6.6
OR
xmlsoftlibxml2Match2.6.7
OR
xmlsoftlibxml2Match2.6.8
OR
xmlsoftlibxml2Match2.6.9
OR
xmlsoftlibxml2Match2.6.11
OR
xmlsoftlibxml2Match2.6.12
OR
xmlsoftlibxml2Match2.6.13
OR
xmlsoftlibxml2Match2.6.14
OR
xmlsoftlibxml2Match2.6.16
OR
xmlsoftlibxml2Match2.6.17
OR
xmlsoftlibxml2Match2.6.18
OR
xmlsoftlibxml2Match2.6.20
OR
xmlsoftlibxml2Match2.6.21
OR
xmlsoftlibxml2Match2.6.22
OR
xmlsoftlibxml2Match2.6.23
OR
xmlsoftlibxml2Match2.6.24
OR
xmlsoftlibxml2Match2.6.25
OR
xmlsoftlibxml2Match2.6.26
OR
xmlsoftlibxml2Match2.6.27
OR
xmlsoftlibxml2Match2.6.28
OR
xmlsoftlibxml2Match2.6.29
OR
xmlsoftlibxml2Match2.6.30
OR
xmlsoftlibxml2Match2.6.31
OR
xmlsoftlibxml2Match2.6.32
OR
xmlsoftlibxml2Match2.7.0
OR
xmlsoftlibxml2Match2.7.1
OR
xmlsoftlibxml2Match2.7.2
OR
xmlsoftlibxml2Match2.7.3
OR
xmlsoftlibxml2Match2.7.4
OR
xmlsoftlibxml2Match2.7.5
OR
xmlsoftlibxml2Match2.7.6
OR
xmlsoftlibxml2Match2.7.7
Node
appleiphone_osRange6.1.4
OR
appleiphone_osMatch1.0.0
OR
appleiphone_osMatch1.0.1
OR
appleiphone_osMatch1.0.2
OR
appleiphone_osMatch1.1.0
OR
appleiphone_osMatch1.1.1
OR
appleiphone_osMatch1.1.2
OR
appleiphone_osMatch1.1.3
OR
appleiphone_osMatch1.1.4
OR
appleiphone_osMatch1.1.5
OR
appleiphone_osMatch2.0
OR
appleiphone_osMatch2.0.0
OR
appleiphone_osMatch2.0.1
OR
appleiphone_osMatch2.0.2
OR
appleiphone_osMatch2.1
OR
appleiphone_osMatch2.1.1
OR
appleiphone_osMatch2.2
OR
appleiphone_osMatch2.2.1
OR
appleiphone_osMatch3.0
OR
appleiphone_osMatch3.0.1
OR
appleiphone_osMatch3.1
OR
appleiphone_osMatch3.1.2
OR
appleiphone_osMatch3.1.3
OR
appleiphone_osMatch3.2
OR
appleiphone_osMatch3.2.1
OR
appleiphone_osMatch3.2.2
OR
appleiphone_osMatch4.0
OR
appleiphone_osMatch4.0.1
OR
appleiphone_osMatch4.0.2
OR
appleiphone_osMatch4.1
OR
appleiphone_osMatch4.2.1
OR
appleiphone_osMatch4.2.5
OR
appleiphone_osMatch4.2.8
OR
appleiphone_osMatch4.3.0
OR
appleiphone_osMatch4.3.1
OR
appleiphone_osMatch4.3.2
OR
appleiphone_osMatch4.3.3
OR
appleiphone_osMatch4.3.5
OR
appleiphone_osMatch5.0
OR
appleiphone_osMatch5.0.1
OR
appleiphone_osMatch5.1
OR
appleiphone_osMatch5.1.1
OR
appleiphone_osMatch6.0
OR
appleiphone_osMatch6.0.1
OR
appleiphone_osMatch6.0.2
OR
appleiphone_osMatch6.1
OR
appleiphone_osMatch6.1.2
OR
appleiphone_osMatch6.1.3
VendorProductVersionCPE
xmlsoftlibxml22.4.27cpe:/a:xmlsoft:libxml2:2.4.27:::
xmlsoftlibxml21.7.3cpe:/a:xmlsoft:libxml2:1.7.3:::
xmlsoftlibxml22.2.2cpe:/a:xmlsoft:libxml2:2.2.2:::
xmlsoftlibxml22.4.4cpe:/a:xmlsoft:libxml2:2.4.4:::
xmlsoftlibxml22.4.19cpe:/a:xmlsoft:libxml2:2.4.19:::
xmlsoftlibxml22.2.4cpe:/a:xmlsoft:libxml2:2.2.4:::
xmlsoftlibxml22.4.14cpe:/a:xmlsoft:libxml2:2.4.14:::
xmlsoftlibxml22.6.17cpe:/a:xmlsoft:libxml2:2.6.17:::
xmlsoftlibxml22.6.29cpe:/a:xmlsoft:libxml2:2.6.29:::
xmlsoftlibxml21.7.4cpe:/a:xmlsoft:libxml2:1.7.4:::
Rows per page:
1-10 of 1241

References

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

AI Score

7.9

Confidence

High

EPSS

0.009

Percentile

82.9%