5

CVE-2012-3420

Multiple memory leaks in Performance Co-Pilot (PCP) before 3.6.5 allow remote attackers to cause a denial of service (memory consumption or daemon crash) via a large number of PDUs with (1) a crafted context number to the DoFetch function in pmcd/src/dofetch.c or (2) a negative type value to the __pmGetPDU function in libpcp/src/pdu.c.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SgiPerformance Co-pilot Version <= 3.6.4
SgiPerformance Co-pilot Version2.1.1
SgiPerformance Co-pilot Version2.1.2
SgiPerformance Co-pilot Version2.1.3
SgiPerformance Co-pilot Version2.1.4
SgiPerformance Co-pilot Version2.1.5
SgiPerformance Co-pilot Version2.1.6
SgiPerformance Co-pilot Version2.1.7
SgiPerformance Co-pilot Version2.1.8
SgiPerformance Co-pilot Version2.1.9
SgiPerformance Co-pilot Version2.1.10
SgiPerformance Co-pilot Version2.1.11
SgiPerformance Co-pilot Version2.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 3.5% 0.864
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P