CVE-2015-1609

MongoDB before 2.4.13 and 2.6.x before 2.6.8 allows remote attackers to cause a denial of service via a crafted UTF-8 string in a BSON request.
Configurations

Configuration 1 (hide)

cpe:2.3:o:fedoraproject:fedora:21:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:mongodb:mongodb:*:*:*:*:*:*:*:*
cpe:2.3:a:mongodb:mongodb:2.6.0:*:*:*:*:*:*:*
cpe:2.3:a:mongodb:mongodb:2.6.1:*:*:*:*:*:*:*
cpe:2.3:a:mongodb:mongodb:2.6.2:*:*:*:*:*:*:*
cpe:2.3:a:mongodb:mongodb:2.6.3:*:*:*:*:*:*:*
cpe:2.3:a:mongodb:mongodb:2.6.4:*:*:*:*:*:*:*
cpe:2.3:a:mongodb:mongodb:2.6.5:*:*:*:*:*:*:*
cpe:2.3:a:mongodb:mongodb:2.6.6:*:*:*:*:*:*:*
cpe:2.3:a:mongodb:mongodb:2.6.7:*:*:*:*:*:*:*

History

21 Nov 2024, 02:25

Type Values Removed Values Added
References () http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152493.html - () http://lists.fedoraproject.org/pipermail/package-announce/2015-March/152493.html -
References () http://lists.fedoraproject.org/pipermail/package-announce/2015-March/153690.html - () http://lists.fedoraproject.org/pipermail/package-announce/2015-March/153690.html -
References () http://www.securitytracker.com/id/1034466 - () http://www.securitytracker.com/id/1034466 -
References () http://www.splunk.com/view/SP-CAAAPC3 - () http://www.splunk.com/view/SP-CAAAPC3 -
References () https://jira.mongodb.org/browse/SERVER-17264 - () https://jira.mongodb.org/browse/SERVER-17264 -
References () https://security.gentoo.org/glsa/201611-13 - () https://security.gentoo.org/glsa/201611-13 -

Information

Published : 2015-03-30 14:59

Updated : 2024-11-21 02:25


NVD link : CVE-2015-1609

Mitre link : CVE-2015-1609

CVE.ORG link : CVE-2015-1609


JSON object : View

Products Affected

mongodb

  • mongodb

fedoraproject

  • fedora
CWE
CWE-20

Improper Input Validation