Apache Xerces2 Java Parser before 2.12.0 allows remote attackers to cause a denial of service (CPU consumption) via a crafted message to an XML service, which triggers hash table collisions.
{ "binaries": [ { "binary_name": "libxerces2-java", "binary_version": "2.11.0-7" }, { "binary_name": "libxerces2-java-gcj", "binary_version": "2.11.0-7" } ] }
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2012/UBUNTU-CVE-2012-0881.json"
{ "binaries": [ { "binary_name": "libxerces2-java", "binary_version": "2.11.0-8" } ] }
{ "binaries": [ { "binary_name": "libxerces2-java", "binary_version": "2.12.1-1" } ] }
{ "binaries": [ { "binary_name": "libxerces2-java", "binary_version": "2.12.2-1" } ] }