Vulnerability Details CVE-2012-0839
OCaml 3.12.1 and earlier computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 70.6%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2012-0839
-
cpe:2.3:a:inria:ocaml:1.07
-
cpe:2.3:a:inria:ocaml:2.02
-
cpe:2.3:a:inria:ocaml:2.04
-
cpe:2.3:a:inria:ocaml:2.99
-
cpe:2.3:a:inria:ocaml:3.00
-
cpe:2.3:a:inria:ocaml:3.01
-
cpe:2.3:a:inria:ocaml:3.02
-
cpe:2.3:a:inria:ocaml:3.03
-
cpe:2.3:a:inria:ocaml:3.04
-
cpe:2.3:a:inria:ocaml:3.05
-
cpe:2.3:a:inria:ocaml:3.06
-
cpe:2.3:a:inria:ocaml:3.07
-
cpe:2.3:a:inria:ocaml:3.08
-
cpe:2.3:a:inria:ocaml:3.09
-
cpe:2.3:a:inria:ocaml:3.10
-
cpe:2.3:a:inria:ocaml:3.11
-
cpe:2.3:a:inria:ocaml:3.12
-
cpe:2.3:a:inria:ocaml:3.12.1