CyberSec.Space Logo
Back to CVE Browser

CVE-2011-5034

HIGH
7.8
CVSS Severity Score
EPSS Score0.0560%
EPSS Percentile29.25th
PublishedDec 30, 2011
Last ModifiedApr 29, 2026

Vulnerability Description

Apache Geronimo 2.2.1 and earlier computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of service (CPU consumption) by sending many crafted parameters. NOTE: this might overlap CVE-2011-4461.

Affected Platforms (CPE)

πŸ“¦
Apache

Geronimo

<= 2.2.1
πŸ“¦
Apache

Geronimo

= 1.0
πŸ“¦
Apache

Geronimo

= 1.1
πŸ“¦
Apache

Geronimo

= 1.1.1
πŸ“¦
Apache

Geronimo

= 1.2
πŸ“¦
Apache

Geronimo

= 2.0.1
πŸ“¦
Apache

Geronimo

= 2.0.2
πŸ“¦
Apache

Geronimo

= 2.1
πŸ“¦
Apache

Geronimo

= 2.1.1
πŸ“¦
Apache

Geronimo

= 2.1.2
πŸ“¦
Apache

Geronimo

= 2.1.3
πŸ“¦
Apache

Geronimo

= 2.1.4
πŸ“¦
Apache

Geronimo

= 2.1.5
πŸ“¦
Apache

Geronimo

= 2.1.6
πŸ“¦
Apache

Geronimo

= 2.1.7
πŸ“¦
Apache

Geronimo

= 2.1.8
πŸ“¦
Apache

Geronimo

= 2.2

References & Advisories

Related Vulnerabilities