Unrated severityNVD Advisory· Published Nov 1, 2012· Updated Jun 16, 2026
CVE-2012-5704
CVE-2012-5704
Description
The Hotblocks module 6.x-1.x before 6.x-1.8 for Drupal allows remote authenticated users with the "administer hotblocks" permission to cause a denial of service (infinite loop and time out) via a block that references itself.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:justin_dodge:hotblocks:6.x-1.5:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:justin_dodge:hotblocks:6.x-1.5:*:*:*:*:*:*:*
- cpe:2.3:a:justin_dodge:hotblocks:6.x-1.6:*:*:*:*:*:*:*
- cpe:2.3:a:justin_dodge:hotblocks:6.x-1.7:*:*:*:*:*:*:*
- cpe:2.3:a:justin_dodge:hotblocks:6.x-1.x:dev:*:*:*:*:*:*
- (no CPE)range: <6.x-1.8
Patches
Vulnerability mechanics
References
5- drupal.org/node/1732828nvdPatch
- drupal.org/node/1732946nvdPatchVendor Advisory
- www.madirish.net/543nvdExploit
- www.openwall.com/lists/oss-security/2012/10/04/6nvd
- www.openwall.com/lists/oss-security/2012/10/07/1nvd
News mentions
0No linked articles in our index yet.