The bson_strfreev function in the MongoDB C driver library may be susceptible to an integer overflow where the function will try to free memory at a negative offset. This may result in memory corruption. This issue affected libbson versions prior to 1.26.2
References
Configurations
No configuration.
History
21 Nov 2024, 09:49
Type | Values Removed | Values Added |
---|---|---|
References | () https://jira.mongodb.org/browse/CDRIVER-5622 - |
03 Jul 2024, 12:53
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
02 Jul 2024, 18:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-07-02 18:15
Updated : 2024-11-21 09:49
NVD link : CVE-2024-6381
Mitre link : CVE-2024-6381
CVE.ORG link : CVE-2024-6381
JSON object : View
Products Affected
No product.
CWE
CWE-680
Integer Overflow to Buffer Overflow