CVE-2012-3514
Publication date 25 August 2012
Last updated 24 July 2024
Ubuntu priority
Description
OCaml Xml-Light Library before r234 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via unspecified vectors.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| xml-light | ||
| 18.04 LTS bionic |
Not affected
|
|
| 16.04 LTS xenial |
Not affected
|
|
| 14.04 LTS trusty | Not in release | |