← Back

CVE-2012-0840

nvd nist
Published: Feb 10, 2012Modified: Apr 29, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:N/I:N/A:P
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

tables/apr_hash.c in the Apache Portable Runtime (APR) library through 1.4.5 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table.

Affected (35)

1 product
Portable Runtime
Configuration A
35 vulnerable
Vulnerable SoftwareAffected Versions
Apache
Up to 1.4.5
Version 0.9.16-dev
Version 0.9.1
Version 0.9.2-dev
Version 0.9.2
Version 0.9.3-dev
Version 0.9.3
Version 0.9.4
Version 0.9.5
Version 0.9.6
Version 0.9.7-dev
Version 0.9.7
Version 0.9.8
Version 0.9.9
Version 1.3.0
Version 1.3.10
Version 1.3.11
Version 1.3.12
Version 1.3.13
Version 1.3.1
Version 1.3.2
Version 1.3.3
Version 1.3.4-dev
Version 1.3.4
Version 1.3.5
Version 1.3.6-dev
Version 1.3.6
Version 1.3.7
Version 1.3.8
Version 1.3.9
Version 1.4.0
Version 1.4.1
Version 1.4.2
Version 1.4.3
Version 1.4.4

References (20)

Source: secalert@redhat.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.