An unauthenticated user can trigger a fatal assertion in the server while generating ftdc diagnostic metrics due to attempting to build a BSON object that exceeds certain memory sizes. This issue affects MongoDB Server v5.0 versions prior to and including 5.0.16 and MongoDB Server v6.0 versions prior to and including 6.0.5.
References
Link | Resource |
---|---|
https://jira.mongodb.org/browse/SERVER-75601 |
Configurations
No configuration.
History
No history.
Information
Published : 2024-05-14 16:17
Updated : 2024-05-14 19:17
NVD link : CVE-2024-3374
Mitre link : CVE-2024-3374
CVE.ORG link : CVE-2024-3374
JSON object : View
Products Affected
No product.
CWE
CWE-617
Reachable Assertion