Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8j48-r5wc-gvr3

Опубликовано: 14 мая 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

An unauthenticated user can trigger a fatal assertion in the server while generating ftdc diagnostic metrics due to attempting to build a BSON object that exceeds certain memory sizes. This issue affects MongoDB Server v5.0 versions prior to and including 5.0.16 and MongoDB Server v6.0 versions prior to and including 6.0.5.

An unauthenticated user can trigger a fatal assertion in the server while generating ftdc diagnostic metrics due to attempting to build a BSON object that exceeds certain memory sizes. This issue affects MongoDB Server v5.0 versions prior to and including 5.0.16 and MongoDB Server v6.0 versions prior to and including 6.0.5.

EPSS

Процентиль: 69%
0.00614
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-617

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 1 года назад

An unauthenticated user can trigger a fatal assertion in the server while generating ftdc diagnostic metrics due to attempting to build a BSON object that exceeds certain memory sizes. This issue affects MongoDB Server v5.0 versions prior to and including 5.0.16 and MongoDB Server v6.0 versions prior to and including 6.0.5.

CVSS3: 5.3
redhat
больше 1 года назад

An unauthenticated user can trigger a fatal assertion in the server while generating ftdc diagnostic metrics due to attempting to build a BSON object that exceeds certain memory sizes. This issue affects MongoDB Server v5.0 versions prior to and including 5.0.16 and MongoDB Server v6.0 versions prior to and including 6.0.5.

CVSS3: 5.3
nvd
больше 1 года назад

An unauthenticated user can trigger a fatal assertion in the server while generating ftdc diagnostic metrics due to attempting to build a BSON object that exceeds certain memory sizes. This issue affects MongoDB Server v5.0 versions prior to and including 5.0.16 and MongoDB Server v6.0 versions prior to and including 6.0.5.

CVSS3: 5.3
debian
больше 1 года назад

An unauthenticated user can trigger a fatal assertion in the server wh ...

EPSS

Процентиль: 69%
0.00614
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-617