Candidate: CVE-2012-3420 PublicDate: 2012-08-27 23:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-3420 Description: Multiple memory leaks in Performance Co-Pilot (PCP) before 3.6.5 allow remote attackers to cause a denial of service (memory consumption or daemon crash) via a large number of PDUs with (1) a crafted context number to the DoFetch function in pmcd/src/dofetch.c or (2) a negative type value to the __pmGetPDU function in libpcp/src/pdu.c. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_pcp: upstream_pcp: released (3.6.5) hardy_pcp: DNE lucid_pcp: ignored (reached end-of-life) natty_pcp: ignored (reached end-of-life) oneiric_pcp: ignored (reached end-of-life) precise_pcp: ignored (reached end-of-life) precise/esm_pcp: DNE (precise was needed) quantal_pcp: ignored (reached end-of-life) raring_pcp: ignored (reached end-of-life) saucy_pcp: ignored (reached end-of-life) trusty_pcp: not-affected (3.8.12ubuntu1) trusty/esm_pcp: DNE (trusty was not-affected [3.8.12ubuntu1]) utopic_pcp: ignored (reached end-of-life) vivid_pcp: ignored (reached end-of-life) vivid/stable-phone-overlay_pcp: DNE vivid/ubuntu-core_pcp: DNE wily_pcp: ignored (reached end-of-life) xenial_pcp: not-affected yakkety_pcp: not-affected zesty_pcp: not-affected devel_pcp: not-affected