CVE-2019-20925 – An unauthenticated client can trigger denial of service by issuing specially crafted wire …

Vuln ID: CVE-2019-20925

Published:  2020-11-24  11:15:10Z

Description: An unauthenticated client can trigger denial of service by issuing specially crafted wire protocol messages, which cause the message decompressor to incorrectly allocate memory. This issue affects: MongoDB Inc. MongoDB Server v4.2 versions prior to 4.2.1; v4.0 versions prior to 4.0.13; v3.6 versions prior to 3.6.15; v3.4 versions prior to 3.4.24.

Source: NVD.NIST.GOV

 


Date:

Categorie(s):

Tag(s):