5
CVSSv2

CVE-2012-5373

Published: 28/11/2012 Updated: 29/08/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Oracle Java SE 7 and previous versions, and OpenJDK 7 and previous versions, computes hash values without properly restricting the ability to trigger hash collisions predictably, which allows context-dependent malicious users to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table, as demonstrated by a universal multicollision attack against the MurmurHash3 algorithm, a different vulnerability than CVE-2012-2739.

Vulnerable Product Search on Vulmon Subscribe to Product

oracle jdk

oracle openjdk

oracle jre