CVE-2012-2685: Medium severity Trevor Mckay Cumin vulnerability
Published Sep 28, 2012
·Updated
Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, allows remote authenticated users to cause a denial of service (memory consumption) via a large size in an image request.
Affected Software
21 affected components
Trevor Mckay Cumin<=0.1.5192-4
Trevor Mckay Cumin=0.1.3160-1
Trevor Mckay Cumin=0.1.4369-1
Trevor Mckay Cumin=0.1.4410-2
Trevor Mckay Cumin=0.1.4494-1
Trevor Mckay Cumin=0.1.4794-1
Trevor Mckay Cumin=0.1.4916-1
Trevor Mckay Cumin=0.1.5033-1
Trevor Mckay Cumin=0.1.5037-1
Trevor Mckay Cumin=0.1.5054-1
Trevor Mckay Cumin=0.1.5068-1
Trevor Mckay Cumin=0.1.5092-1
Trevor Mckay Cumin=0.1.5098-2
Trevor Mckay Cumin=0.1.5105-1
Trevor Mckay Cumin=0.1.5137-1
Trevor Mckay Cumin=0.1.5137-2
Trevor Mckay Cumin=0.1.5137-3
Trevor Mckay Cumin=0.1.5137-4
Trevor Mckay Cumin=0.1.5137-5
Trevor Mckay Cumin=0.1.5192-1
redhat Enterprise MRG=2.0
Event History
Sep 28, 2012
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-2685?
CVE-2012-2685 has a severity rating that indicates it can lead to denial of service due to memory consumption.
2
How do I fix CVE-2012-2685?
To fix CVE-2012-2685, upgrade Cumin to version 0.1.5444 or later.
3
What types of applications are affected by CVE-2012-2685?
CVE-2012-2685 affects applications using Cumin, such as Red Hat Enterprise Messaging and Grid.
4
Can CVE-2012-2685 be exploited remotely?
Yes, CVE-2012-2685 can be exploited by remote authenticated users.
5
What impact does CVE-2012-2685 have on systems?
CVE-2012-2685 causes memory consumption, leading to potential denial of service on the affected system.