|
|
| |
|
| |
sblim-cim-client2: predictable hash collisions
| Package(s): | sblim-cim-client2 |
CVE #(s): | CVE-2012-2328
|
| Created: | June 20, 2012 |
Updated: | January 23, 2013 |
| Description: |
From the Red Hat advisory:
It was found that the Java HashMap implementation was susceptible to
predictable hash collisions. SBLIM uses HashMap when parsing XML inputs. A
specially-crafted CIM-XML message from a WBEM (Web-Based Enterprise
Management) server could cause a SBLIM client to use an excessive amount of
CPU. Randomization has been added to help avoid collisions. |
| Alerts: |
|
( Log in to post comments)
|
|
|