Launchpad.net

CVE 2012-0880

Apache Xerces-C++ allows remote attackers to cause a denial of service (CPU consumption) via a crafted message sent to an XML service that causes hash table collisions.

See the CVE page on Mitre.org for more details.