Updated mono packages fix security vulnerability
Publication date: 29 May 2014Modification date: 29 May 2014
Type: security
Affected Mageia releases : 3
CVE: CVE-2012-3543
Description
Mono 2.10.9 does not properly randomize hash functions for form posts to protect against hash collision attacks. A remote attacker could send specially crafted parameters, possibly resulting in a Denial of Service condition (CVE-2012-3543).
References
SRPMS
3/core
- mono-2.10.9-4.1.mga3