Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-6619

Опубликовано: 06 мар. 2014
Источник: ubuntu
Приоритет: medium
CVSS2: 6.4

Описание

The default configuration for MongoDB before 2.3.2 does not validate objects, which allows remote authenticated users to cause a denial of service (crash) or read system memory via a crafted BSON object in the column name in an insert command, which triggers a buffer over-read.

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

1:3.6.3-0ubuntu1
devel

not-affected

1:3.6.3-0ubuntu1
esm-apps-legacy/xenial

not-affected

1:2.6.10-0ubuntu1
esm-apps/bionic

not-affected

1:3.6.3-0ubuntu1
esm-apps/xenial

not-affected

1:2.6.10-0ubuntu1
esm-infra-legacy/trusty

not-affected

1:2.4.9-1ubuntu2
lucid

ignored

end of life
precise

ignored

end of life
precise/esm

DNE

precise was needed

Показывать по

6.4 Medium

CVSS2

Связанные уязвимости

redhat
больше 13 лет назад

The default configuration for MongoDB before 2.3.2 does not validate objects, which allows remote authenticated users to cause a denial of service (crash) or read system memory via a crafted BSON object in the column name in an insert command, which triggers a buffer over-read.

nvd
больше 12 лет назад

The default configuration for MongoDB before 2.3.2 does not validate objects, which allows remote authenticated users to cause a denial of service (crash) or read system memory via a crafted BSON object in the column name in an insert command, which triggers a buffer over-read.

debian
больше 12 лет назад

The default configuration for MongoDB before 2.3.2 does not validate o ...

github
около 4 лет назад

The default configuration for MongoDB before 2.3.2 does not validate objects, which allows remote authenticated users to cause a denial of service (crash) or read system memory via a crafted BSON object in the column name in an insert command, which triggers a buffer over-read.

6.4 Medium

CVSS2