apache-geronimo: hash table collisions CPU usage DoS
Published Dec 30, 2011
5.3
MEDIUMCVSS 3.1
EPSS 80.57%
Description
Apache Geronimo 2.2.1 and earlier computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of service (CPU consumption) by sending many crafted parameters. NOTE: this might overlap CVE-2011-4461.
Affected products
No data.
- ≤ 2.2.1
- 1.0
- 1.1
- 1.1.1
- 1.2
- 2.0.1
- 2.0.2
- 2.1
- 2.1.1
- 2.1.2
- 2.1.3
- 2.1.4
- 2.1.5
- 2.1.6
- 2.1.7
- 2.1.8
- 2.2
No data.
Red Hat AMQ Broker 7
geronimo
Not affected
Red Hat Fuse 7
geronimo
Not affected
Red Hat JBoss A-MQ 6
geronimo
Out of support scope
Red Hat JBoss Enterprise Application Platform 6
geronimo
Out of support scope
Red Hat JBoss Enterprise Application Platform 7
geronimo
Not affected
Red Hat JBoss Enterprise Application Platform Continuous Delivery
geronimo
Not affected
Red Hat JBoss Fuse 6
geronimo
Out of support scope
Red Hat JBoss SOA Platform 5
geronimo
Out of support scope
Red Hat JBoss Web Server 3
geronimo
Not affected
Red Hat JBoss Web Server 5
geronimo
Not affected
Red Hat OpenStack Platform 10 (Newton)
opendaylight
Out of support scope
Red Hat OpenStack Platform 13 (Queens)
opendaylight
Will not fix
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat AMQ Broker 7 | geronimo | Not affected | n/a |
| Red Hat Fuse 7 | geronimo | Not affected | n/a |
| Red Hat JBoss A-MQ 6 | geronimo | Out of support scope | n/a |
| Red Hat JBoss Enterprise Application Platform 6 | geronimo | Out of support scope | n/a |
| Red Hat JBoss Enterprise Application Platform 7 | geronimo | Not affected | n/a |
| Red Hat JBoss Enterprise Application Platform Continuous Delivery | geronimo | Not affected | n/a |
| Red Hat JBoss Fuse 6 | geronimo | Out of support scope | n/a |
| Red Hat JBoss SOA Platform 5 | geronimo | Out of support scope | n/a |
| Red Hat JBoss Web Server 3 | geronimo | Not affected | n/a |
| Red Hat JBoss Web Server 5 | geronimo | Not affected | n/a |
| Red Hat OpenStack Platform 10 (Newton) | opendaylight | Out of support scope | n/a |
| Red Hat OpenStack Platform 13 (Queens) | opendaylight | Will not fix | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
apache-geronimo is packaged with Red Hat OpenStack Platform 13.0's OpenDaylight (ODL). However because the flaw is moderate, Red Hat will not be releasing a fix for the ODL package at this time.
Metrics
No CVSS v4.0 score for this CVE.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
No CVSS v3.0 score for this CVE.
AV:N/AC:L/Au:N/C:N/I:N/A:C
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (16 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 80.57% (0.80569) | 99.61th | v5 (v2026.06.15) |
| Jun 15, 2026 | 81.16% (0.81155) | 99.59th | v5 (v2026.06.15) |
| Apr 18, 2026 | 73.34% (0.73336) | 98.80th | v4 (v2025.03.14) |
| Feb 3, 2026 | 71.31% (0.71309) | 98.69th | v4 (v2025.03.14) |
| Nov 20, 2025 | 68.97% (0.68968) | 98.66th | v4 (v2025.03.14) |
| Mar 30, 2025 | 66.46% (0.66459) | 98.40th | v4 (v2025.03.14) |
| Mar 29, 2025 | 74.00% (0.74005) | 98.46th | v4 (v2025.03.14) |
| Mar 17, 2025 | 66.46% (0.66459) | 98.40th | v4 (v2025.03.14) |
| Dec 17, 2024 | 4.84% (0.04837) | 92.63th | v3 (v2023.03.01) |
| Dec 12, 2024 | 1.76% (0.01763) | 88.48th | v3 (v2023.03.01) |
| Jun 29, 2024 | 1.68% (0.01679) | 87.80th | v3 (v2023.03.01) |
| Apr 17, 2024 | 1.19% (0.01190) | 84.91th | v3 (v2023.03.01) |
| Mar 7, 2023 | 1.19% (0.01190) | 82.91th | v3 (v2023.03.01) |
| Mar 6, 2023 | 6.39% (0.06394) | 90.94th | v2 (v2022.01.01) |
| Apr 1, 2022 | 6.39% (0.06394) | 90.10th | v2 (v2022.01.01) |
| Feb 4, 2022 | 6.39% (0.06394) | 77.96th | v2 (v2022.01.01) |
References (36)
- http://archives.neohapsis.com/archives/bugtraq/2011-12/0181.html mailing-listx_refsource_BUGTRAQ
- http://secunia.com/advisories/47412 third-party-advisoryx_refsource_SECUNIA
- http://www.kb.cert.org/vuls/id/903934 third-party-advisoryx_refsource_CERT-VNUS Government Resource
- http://www.nruns.com/_downloads/advisory28122011.pdf x_refsource_MISC
- http://www.ocert.org/advisories/ocert-2011-003.html x_refsource_MISC
- https://access.redhat.com/security/cve/CVE-2011-5034 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1851431 Issue Tracking
- https://geronimo.apache.org/22x-security-report.html
- https://github.com/FireFart/HashCollision-DOS-POC/blob/master/HashtablePOC.py x_refsource_MISC
- https://github.com/advisories/GHSA-v3h8-rw48-h4gr Advisory
- https://lists.apache.org/thread.html/r20957aa5962a48328f199e2373f408aeeae601a45dd5275a195e2b6e%40%3Cjava-dev.axis.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r20957aa5962a48328f199e2373f408aeeae601a45dd5275a195e2b6e@%3Cjava-dev.axis.apache.org%3E
- https://lists.apache.org/thread.html/r360b70489bad65286b49ceb5303a849d2a7ec7d1292774a7259579e1%40%3Cissues.karaf.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r360b70489bad65286b49ceb5303a849d2a7ec7d1292774a7259579e1@%3Cissues.karaf.apache.org%3E
- https://lists.apache.org/thread.html/r3c541f019b74902e8e61d73e40ecc2837dfce1b744ad5546919b993c%40%3Cissues.karaf.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r3c541f019b74902e8e61d73e40ecc2837dfce1b744ad5546919b993c@%3Cissues.karaf.apache.org%3E
- https://lists.apache.org/thread.html/r4fe6b5ff1d48e23337304fd5ac983d89328aecbd1fa198cfc966fbd7%40%3Cdev.geronimo.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r4fe6b5ff1d48e23337304fd5ac983d89328aecbd1fa198cfc966fbd7@%3Cdev.geronimo.apache.org%3E
- https://lists.apache.org/thread.html/r653f633aa7b6ccbb8c338dbfcea7a00e4ae9d6f3e064a03cab8dc20d%40%3Cjava-dev.axis.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r653f633aa7b6ccbb8c338dbfcea7a00e4ae9d6f3e064a03cab8dc20d@%3Cjava-dev.axis.apache.org%3E
- https://lists.apache.org/thread.html/r67747af92035942c9c413bd8394acbb8a1ace5833c0177014c825bc2%40%3Cissues.karaf.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r67747af92035942c9c413bd8394acbb8a1ace5833c0177014c825bc2@%3Cissues.karaf.apache.org%3E
- https://lists.apache.org/thread.html/r8dc1a0ae0e0cf9d2494b8cbd66562f99331c4cf635e7781850a9b9ba%40%3Cjava-dev.axis.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/r8dc1a0ae0e0cf9d2494b8cbd66562f99331c4cf635e7781850a9b9ba@%3Cjava-dev.axis.apache.org%3E
- https://lists.apache.org/thread.html/ra10015f6f3c3c88b7d813383554e87c06347fe163487148669189b8e%40%3Cdev.geronimo.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/ra10015f6f3c3c88b7d813383554e87c06347fe163487148669189b8e@%3Cdev.geronimo.apache.org%3E
- https://lists.apache.org/thread.html/ra1fe29f6399b68980f914d8613dee7f67d62a1a97722fe9cd56f4f5f%40%3Cdev.geronimo.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/ra1fe29f6399b68980f914d8613dee7f67d62a1a97722fe9cd56f4f5f@%3Cdev.geronimo.apache.org%3E
- https://lists.apache.org/thread.html/rb0e85243d7268f1d7a1edb5e6c7df885dbd300acabaaf4cb0e880518%40%3Cissues.karaf.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/rb0e85243d7268f1d7a1edb5e6c7df885dbd300acabaaf4cb0e880518@%3Cissues.karaf.apache.org%3E
- https://lists.apache.org/thread.html/rdd67ea3e489134f653349fc2cb09828ac8462aa61dd776b505a3297a%40%3Cissues.karaf.apache.org%3E mailing-listx_refsource_MLIST
- https://lists.apache.org/thread.html/rdd67ea3e489134f653349fc2cb09828ac8462aa61dd776b505a3297a@%3Cissues.karaf.apache.org%3E
- https://nvd.nist.gov/vuln/detail/CVE-2011-5034
- https://web.archive.org/web/20120105151644/http://www.nruns.com/_downloads/advisory28122011.pdf
- https://web.archive.org/web/20130213132312/http://archives.neohapsis.com/archives/bugtraq/2011-12/0181.html
- https://www.cve.org/CVERecord?id=CVE-2011-5034
Change history (0)
No recorded changes yet.