[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249461

 
 

909

 
 

195508

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2012-052 --- libxml2

ID: oval:org.secpod.oval:def:1601260Date: (C)2020-11-27   (M)2023-02-20
Class: PATCHFamily: unix




It was found that the hashing routine used by libxml2 arrays was susceptible to predictable hash collisions. Sending a specially-crafted message to an XML service could result in longer processing time, which could lead to a denial of service. To mitigate this issue, randomization has been added to the hashing function to reduce the chance of an attacker successfully causing intentional collisions

Platform:
Amazon Linux AMI
Product:
libxml2
Reference:
ALAS-2012-52
CVE-2012-0841
CVE    1
CVE-2012-0841
CPE    2
cpe:/o:amazon:linux
cpe:/a:libxml2:libxml2

© SecPod Technologies