First published: Tue Nov 19 2019(Updated: )
tog-Pegasus has a package hash collision DoS vulnerability
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tog-pegasus | <2.12 | |
Red Hat Enterprise Linux | =4.0 | |
Red Hat Enterprise Linux | =5.0 | |
Red Hat Enterprise Linux | =6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2011-4967 is classified as a Denial of Service (DoS) vulnerability due to a package hash collision.
To fix CVE-2011-4967, update to the latest version of Tog-Pegasus or apply relevant patches provided by your operating system vendor.
CVE-2011-4967 affects Tog-Pegasus versions prior to 2.12, as well as Red Hat Enterprise Linux 4.0, 5.0, and 6.0.
CVE-2011-4967 can lead to service interruptions due to denial of service, impacting the availability of the affected software.
A potential workaround for CVE-2011-4967 may involve monitoring and limiting the use of package hashing features until the vulnerability can be mitigated.