Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2020-7926

Опубликовано: 23 нояб. 2020
Источник: redhat
CVSS3: 6.5

Описание

A user authorized to perform database queries may cause denial of service by issuing a specially crafted query which violates an invariant in the server selection subsystem. This issue affects MongoDB Server v4.4 versions prior to 4.4.1. Versions before 4.4 are not affected.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Advanced Cluster Management for Kubernetes 2mongodbNot affected
Red Hat OpenStack Platform 10 (Newton)mongodbOut of support scope
Red Hat Software Collectionsrh-mongodb36-mongodbNot affected
Red Hat Update Infrastructure 3 for Cloud ProvidersmongodbNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-248
https://bugzilla.redhat.com/show_bug.cgi?id=1900859mongodb: Denial of service via crafted queries which violates an invariant in the server selection subsystem

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 5 лет назад

A user authorized to perform database queries may cause denial of service by issuing a specially crafted query which violates an invariant in the server selection subsystem. This issue affects MongoDB Server v4.4 versions prior to 4.4.1. Versions before 4.4 are not affected.

CVSS3: 6.5
nvd
около 5 лет назад

A user authorized to perform database queries may cause denial of service by issuing a specially crafted query which violates an invariant in the server selection subsystem. This issue affects MongoDB Server v4.4 versions prior to 4.4.1. Versions before 4.4 are not affected.

CVSS3: 6.5
debian
около 5 лет назад

A user authorized to perform database queries may cause denial of serv ...

CVSS3: 6.5
github
больше 3 лет назад

A user authorized to perform database queries may cause denial of service by issuing a specially crafted query which violates an invariant in the server selection subsystem. This issue affects: MongoDB Server version 4.4 prior to 4.4.1. Versions before 4.4 are not affected.

6.5 Medium

CVSS3