[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247621

 
 

909

 
 

194512

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CESA-2012:0987 -- centos 6 sblim-cim-client2

ID: oval:org.secpod.oval:def:202387Date: (C)2012-08-14   (M)2023-07-28
Class: PATCHFamily: unix




The SBLIM CIM Client is a class library for Java applications that provides access to CIM servers using the CIM Operations over HTTP protocol defined by the DMTF standards. It was found that the Java HashMap implementation was susceptible to predictable hash collisions. SBLIM uses HashMap when parsing XML inputs. A specially-crafted CIM-XML message from a WBEM server could cause a SBLIM client to use an excessive amount of CPU. Randomization has been added to help avoid collisions. All users of sblim-cim-client2 are advised to upgrade to these updated packages, which contain a backported patch to resolve this issue.

Platform:
CentOS 6
Product:
sblim-cim-client2
Reference:
CESA-2012:0987
CVE-2012-2328
CVE    1
CVE-2012-2328
CPE    2
cpe:/o:centos:centos:6
cpe:/a:sblim_instrumentation_project:sblim-cim-client2

© SecPod Technologies