Описание
A specially crafted aggregation query with $lookup by an authenticated user with write privileges can cause a double-free or use-after-free memory issue in the slot-based execution (SBE) engine when an in-memory hash table is spilled to disk.
Ссылки
- ExploitVendor Advisory
Уязвимые конфигурации
Одно из
EPSS
6.4 Medium
CVSS3
7.5 High
CVSS3
Дефекты
Связанные уязвимости
A specially crafted aggregation query with $lookup by an authenticated user with write privileges can cause a double-free or use-after-free memory issue in the slot-based execution (SBE) engine when an in-memory hash table is spilled to disk.
A specially crafted aggregation query with $lookup by an authenticated ...
A specially crafted aggregation query with $lookup by an authenticated user with write privileges can cause a double-free or use-after-free memory issue in the slot-based execution (SBE) engine when an in-memory hash table is spilled to disk.
Уязвимость реализации хеш-таблицы механизма Slot-Based Execution (SBE) системы управления базами данных MongoDB, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
6.4 Medium
CVSS3
7.5 High
CVSS3