CVE-2012-2328
10.02.2014, 18:15
internal/cimxml/sax/NodeFactory.java in Standards-Based Linux Instrumentation for Manageability (SBLIM) Common Information Model (CIM) Client (aka sblim-cim-client2) before 2.1.12 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via a crafted XML file.Enginsight
Vendor | Product | Version |
---|---|---|
standards_based_linux_instrumentation_project | standards-based_linux_common_information_model_client | 𝑥 ≤ 2.1.11 |
opensuse | opensuse | 11.4 |
opensuse | opensuse | 12.1 |
opensuse | opensuse | 12.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References