The bson_strfreev function in the MongoDB C driver library may be susceptible to an integer overflow where the function will try to free memory at a negative offset. This may result in memory corruption. This issue affected libbson versions prior to 1.26.2
References
Link | Resource |
---|---|
https://jira.mongodb.org/browse/CDRIVER-5622 |
Configurations
No configuration.
History
03 Jul 2024, 12:53
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
02 Jul 2024, 18:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-07-02 18:15
Updated : 2024-07-03 12:53
NVD link : CVE-2024-6381
Mitre link : CVE-2024-6381
CVE.ORG link : CVE-2024-6381
JSON object : View
Products Affected
No product.
CWE
CWE-680
Integer Overflow to Buffer Overflow