Search CVE reports
1271 – 1280 of 58108 results
A security issue in the MongoDB Server's storage engine integration layer allows an authenticated user with collection creation privileges to cause a persistent denial of service. Insufficient validation of user-supplied storage...
1 affected package
mongodb
| Package | 16.04 LTS |
|---|---|
| mongodb | Needs evaluation |
A security issue in MongoDB Server allows an unauthenticated network user to cause a denial of service on a specific type of replica set member. The server contains an assertion in its read concern processing logic that can be...
1 affected package
mongodb
| Package | 16.04 LTS |
|---|---|
| mongodb | Needs evaluation |
A use-after-free security issue in the cursor management component of MongoDB Server allows an authenticated user to cause a denial of service. Under specific timing conditions during cursor operations, a stale pointer to a freed...
1 affected package
mongodb
| Package | 16.04 LTS |
|---|---|
| mongodb | Needs evaluation |
A security issue in MongoDB Server allows an authenticated user with elevated internal privileges to bypass a disabled feature gate in the applyOps command by specifying an internal replication mode value that was not intended to...
1 affected package
mongodb
| Package | 16.04 LTS |
|---|---|
| mongodb | Needs evaluation |
A use-after-free security issue exists in the server's query execution memory tracking subsystem. An authenticated user with read privileges can trigger a write to freed heap memory through a sequence of standard database...
1 affected package
mongodb
| Package | 16.04 LTS |
|---|---|
| mongodb | Needs evaluation |
In MongoDB, insufficient validation of shard key values during document insertion allowed authenticated users to store documents with specially crafted, operator-shaped objects as shard key values in sharded collections. When...
1 affected package
mongodb
| Package | 16.04 LTS |
|---|---|
| mongodb | Needs evaluation |
An internal aggregation expression in MongoDB Server was incorrectly registered as accessible to any authenticated user rather than being restricted to internal cluster operations. By crafting a malformed index specification...
1 affected package
mongodb
| Package | 16.04 LTS |
|---|---|
| mongodb | Needs evaluation |
A flaw in MongoDB's JSON Schema validation error generation code allows an authenticated user with readWrite privileges to crash the mongod server. When a BSON document containing an array with a malformed numeric field name fails...
1 affected package
mongodb
| Package | 16.04 LTS |
|---|---|
| mongodb | Needs evaluation |
A security issue was discovered in MongoDB where an authenticated user with readWrite privileges could crash the mongod server process. By specifying a custom WiredTiger storage configuration option with an incompatible...
1 affected package
mongodb
| Package | 16.04 LTS |
|---|---|
| mongodb | Needs evaluation |
A race condition in MongoDB server's text index query parsing can cause a heap use-after-free read when handling upsert retry paths. Under certain concurrent index lifecycle operations, a raw pointer to internal text...
1 affected package
mongodb
| Package | 16.04 LTS |
|---|---|
| mongodb | Needs evaluation |