tables/apr_hash.c in the Apache Portable Runtime (APR) library through 1.4.5 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2012-02-10 11:55
Updated : 2017-12-04 18:29
NVD link : CVE-2012-0840
Mitre link : CVE-2012-0840
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
apache
- portable_runtime