CVE-2012-6125
published 2017-07-17CVE-2012-6125: Due to an incomplete fix for CVE-2012-6125, all versions of CHICKEN Scheme up to and including 4.12.0 are vulnerable to an algorithmic complexity attack. An…
PriorityP339critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
1.76%
75.8th percentile
Due to an incomplete fix for CVE-2012-6125, all versions of CHICKEN Scheme up to and including 4.12.0 are vulnerable to an algorithmic complexity attack. An attacker can provide crafted input which, when inserted into the symbol table, will result in O(n) lookup time.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| call-cc | chicken | < 4.8.0 | 4.8.0 |
| call-cc | chicken | <= 4.12.0 | — |
| chicken | chicken | >= 0 < 4.12.0-0.2 | 4.12.0-0.2 |
| chicken | chicken | >= 0 < 4.8.0-1 | 4.8.0-1 |
| chicken | chicken | >= 0 < 4.12.0-0.2 | 4.12.0-0.2 |
| chicken | chicken | >= 0 < 4.8.0-1 | 4.8.0-1 |
| chicken | chicken | >= 0 < 4.12.0-0.2 | 4.12.0-0.2 |
| chicken | chicken | >= 0 < 4.8.0-1 | 4.8.0-1 |
| chicken | chicken | >= 0 < 4.12.0-0.2 | 4.12.0-0.2 |
| chicken | chicken | >= 0 < 4.8.0-1 | 4.8.0-1 |
| debian | chicken | < chicken 4.12.0-0.2 (bookworm) | chicken 4.12.0-0.2 (bookworm) |
| debian | chicken | < chicken 4.8.0-1 (bookworm) | chicken 4.8.0-1 (bookworm) |
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
vendor_debian9.8LOW
vendor_redhat5.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2017-11343: chicken - Due to an incomplete fix for CVE-2012-6125, all versions of CHICKEN Scheme up to...
vendor_debian·2017·CVSS 9.8
CVE-2017-11343 [CRITICAL] CVE-2017-11343: chicken - Due to an incomplete fix for CVE-2012-6125, all versions of CHICKEN Scheme up to...
Due to an incomplete fix for CVE-2012-6125, all versions of CHICKEN Scheme up to and including 4.12.0 are vulnerable to an algorithmic complexity attack. An attacker can provide crafted input which, when inserted into the symbol table, will result in O(n) lookup time.
Scope: local
bookworm: resolved (fixed in 4.12.0-0.2)
bullseye: resolved (fixed in 4.12.0-0.2)
forky: resolved (fixed in 4.12.0-0.2)
sid: resolved (fixed in 4.12.0-0.2)
trixie: resolved (fixed in 4.12.0-0.2)
Red Hat
librdmacm: Tried to connect to port 6125 if ibacm.port was not found
vendor_redhat·2012-10-08·CVSS 5.8
CVE-2012-4516 [MEDIUM] librdmacm: Tried to connect to port 6125 if ibacm.port was not found
librdmacm: Tried to connect to port 6125 if ibacm.port was not found
librdmacm 1.0.16, when ibacm.port is not specified, connects to port 6125, which allows remote attackers to specify the address resolution information for the application via a malicious ib_acm service.
Package: librdmacm (Red Hat Enterprise Linux 5) - Not affected
Debian
CVE-2012-6125: chicken - Chicken before 4.8.0 is susceptible to algorithmic complexity attacks related to...
vendor_debian·2012·CVSS 9.8
CVE-2012-6125 [CRITICAL] CVE-2012-6125: chicken - Chicken before 4.8.0 is susceptible to algorithmic complexity attacks related to...
Chicken before 4.8.0 is susceptible to algorithmic complexity attacks related to hash table collisions.
Scope: local
bookworm: resolved (fixed in 4.8.0-1)
bullseye: resolved (fixed in 4.8.0-1)
forky: resolved (fixed in 4.8.0-1)
sid: resolved (fixed in 4.8.0-1)
trixie: resolved (fixed in 4.8.0-1)
GHSA
GHSA-7945-x94j-3j4w: Due to an incomplete fix for CVE-2012-6125, all versions of CHICKEN Scheme up to and including 4
ghsa_unreviewed·2022-05-17·CVSS 9.8
CVE-2017-11343 [CRITICAL] CWE-407 GHSA-7945-x94j-3j4w: Due to an incomplete fix for CVE-2012-6125, all versions of CHICKEN Scheme up to and including 4
Due to an incomplete fix for CVE-2012-6125, all versions of CHICKEN Scheme up to and including 4.12.0 are vulnerable to an algorithmic complexity attack. An attacker can provide crafted input which, when inserted into the symbol table, will result in O(n) lookup time.
GHSA
GHSA-qx8c-5326-hjwh: Chicken before 4
ghsa_unreviewed·2022-04-23
CVE-2012-6125 [CRITICAL] CWE-20 GHSA-qx8c-5326-hjwh: Chicken before 4
Chicken before 4.8.0 is susceptible to algorithmic complexity attacks related to hash table collisions.
OSV
CVE-2012-6125: Chicken before 4
osv·2019-10-31·CVSS 9.8
CVE-2012-6125 [CRITICAL] CVE-2012-6125: Chicken before 4
Chicken before 4.8.0 is susceptible to algorithmic complexity attacks related to hash table collisions.
OSV
CVE-2017-11343: Due to an incomplete fix for CVE-2012-6125, all versions of CHICKEN Scheme up to and including 4
osv·2017-07-17·CVSS 9.8
CVE-2017-11343 [CRITICAL] CVE-2017-11343: Due to an incomplete fix for CVE-2012-6125, all versions of CHICKEN Scheme up to and including 4
Due to an incomplete fix for CVE-2012-6125, all versions of CHICKEN Scheme up to and including 4.12.0 are vulnerable to an algorithmic complexity attack. An attacker can provide crafted input which, when inserted into the symbol table, will result in O(n) lookup time.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-4516 librdmacm: Tried to connect to port 6125 if ibacm.port was not found [fedora-all]
bugzilla·2012-10-11·CVSS 5.8
CVE-2012-4516 [MEDIUM] CVE-2012-4516 librdmacm: Tried to connect to port 6125 if ibacm.port was not found [fedora-all]
CVE-2012-4516 librdmacm: Tried to connect to port 6125 if ibacm.port was not found [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates
Bugzilla
CVE-2012-4516 librdmacm: Tried to connect to port 6125 if ibacm.port was not found
bugzilla·2012-10-11·CVSS 5.8
CVE-2012-4516 [MEDIUM] CVE-2012-4516 librdmacm: Tried to connect to port 6125 if ibacm.port was not found
CVE-2012-4516 librdmacm: Tried to connect to port 6125 if ibacm.port was not found
A security flaw was found in the way librdmacm, a userspace RDMA Communication Managment API allowing to specify connections using TCP/IP addresses even though it opens RDMA specific connections, performed binding to the underlying ib_acm service (librdmacm used default port value of 6125 to bind to ib_acm service). An attacker able to run a rogue ib_acm service could use this flaw to make librdmacm applications to use potentially bogus address resolution information.
Upstream patch:
[1] http://git.openfabrics.org/git?p=~shefty/librdmacm.git;a=commitdiff;h=4b5c1aa734e0e734fc2ba3cd41d0ddf02170af6d
Acknowledgements:
This issue was discovered by Florian Weimer of Red Hat Product Security Team.
Discussion:
2017-07-17
Published