Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vmg6-94hc-5vqp

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

_bson_iter_next_internal in bson-iter.c in libbson 1.12.0, as used in MongoDB mongo-c-driver and other products, has a heap-based buffer over-read via a crafted bson buffer.

_bson_iter_next_internal in bson-iter.c in libbson 1.12.0, as used in MongoDB mongo-c-driver and other products, has a heap-based buffer over-read via a crafted bson buffer.

EPSS

Процентиль: 66%
0.00529
Низкий

8.1 High

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 8.1
ubuntu
около 7 лет назад

_bson_iter_next_internal in bson-iter.c in libbson 1.12.0, as used in MongoDB mongo-c-driver and other products, has a heap-based buffer over-read via a crafted bson buffer.

CVSS3: 6.3
redhat
около 7 лет назад

_bson_iter_next_internal in bson-iter.c in libbson 1.12.0, as used in MongoDB mongo-c-driver and other products, has a heap-based buffer over-read via a crafted bson buffer.

CVSS3: 8.1
nvd
около 7 лет назад

_bson_iter_next_internal in bson-iter.c in libbson 1.12.0, as used in MongoDB mongo-c-driver and other products, has a heap-based buffer over-read via a crafted bson buffer.

CVSS3: 8.1
debian
около 7 лет назад

_bson_iter_next_internal in bson-iter.c in libbson 1.12.0, as used in ...

CVSS3: 8.4
redos
9 дней назад

Множественные уязвимости libbson

EPSS

Процентиль: 66%
0.00529
Низкий

8.1 High

CVSS3

Дефекты

CWE-125