Description
A user authorized to perform database queries may trigger a read overrun and access arbitrary memory by issuing specially crafted queries. This issue affects MongoDB Server v4.4 versions prior to 4.4.1; MongoDB Server v4.2 versions prior to 4.2.9; MongoDB Server v4.0 versions prior to 4.0.20 and MongoDB Server v3.6 versions prior to 3.6.20.
Remediation
References
Related Vulnerabilities
GlassFish CVE-2017-10393 Vulnerability (CVE-2017-10393)
Java Unspesificed Vulnerability (CVE-2019-2422)
phpMyFAQ CVE-2007-1032 Vulnerability (CVE-2007-1032)
Grafana Improper Verification of Cryptographic Signature Vulnerability (CVE-2022-31123)
Elgg Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2021-3964)