CVE-2012-3514

Severity CVSS v4.0:
Pending analysis
Type:
CWE-310 Cryptographic Issues
Publication date:
25/08/2012
Last modified:
11/04/2025

Description

OCaml Xml-Light Library before r234 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via unspecified vectors.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:nicolas_cannasse:ocaml_xml-light_library:*:*:*:*:*:*:*:* r233 (including)