Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Judah Schvimer

#47514of 53,633
5.3Total CVSS
Vulnerabilities · 1
PT-2024-25460
5.3
2024-05-14
Mongodb · Mongodb Server · CVE-2024-3374
**Name of the Vulnerable Software and Affected Versions** MongoDB Server versions 5.0.0 through 5.0.16 MongoDB Server versions 6.0.0 through 6.0.5 **Description** An unauthenticated user can trigger a fatal assertion in the server while generating ftdc diagnostic metrics due to attempting to build a BSON object that exceeds certain memory sizes. **Recommendations** For MongoDB Server versions 5.0.0 through 5.0.16, update to a version later than 5.0.16. For MongoDB Server versions 6.0.0 through 6.0.5, update to a version later than 6.0.5.