Advisories ยป MGASA-2014-0244

Updated mono packages fix security vulnerability

Publication date: 29 May 2014
Type: security
Affected Mageia releases : 3
CVE: CVE-2012-3543

Description

Mono 2.10.9 does not properly randomize hash functions for form posts to
protect against hash collision attacks. A remote attacker could send
specially crafted parameters, possibly resulting in a Denial of Service
condition (CVE-2012-3543).
                

References

SRPMS

3/core