A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries, which throw unhandled Javascript exceptions containing types intended to be scoped to the Javascript engine's internals. This issue affects MongoDB Server v4.0 versions prior to 4.0.7.
References
Link | Resource |
---|---|
https://jira.mongodb.org/browse/SERVER-39481 | Issue Tracking Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mongodb
Published: 2020-11-30T00:00:00
Updated: 2024-06-04T17:12:01.917Z
Reserved: 2020-10-06T00:00:00
Link: CVE-2019-20923
JSON object: View
NVD Information
Status : Modified
Published: 2020-11-23T16:15:12.807
Modified: 2024-01-23T15:15:10.710
Link: CVE-2019-20923
JSON object: View
Redhat Information
No data.
CWE