Vulnerability Bulletins

IBM Security Bulletin: Vulnerability in IBM InfoSphere Guardium Database Activity Monitoring (CVE-2011-4858)

   
Affected software IBM
 
Apache Tomcat is vulnerable to a denial of service, caused by insufficient randomization of hash data structures. By sending multiple specially-crafted HTTP POST requests to an affected application containing conflicting hash key values, a remote attacker could exploit this vulnerability to cause the consumption of CPU resources. CVE(s): CVE-2011-4858 Affected product(s) and affected version(s): Versions 8.0, 8.1, and 8.2 of IBM InfoSphere Guardium Database Activity Monitoring Refer to the

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerability_in_ibm_infosphere_guardium_database_activity_monitoring_cve_2011_48581?lang=en_us