CVE-2024-6381

The bson_strfreev function in the MongoDB C driver library may be susceptible to an integer overflow where the function will try to free memory at a negative offset. This may result in memory corruption. This issue affected libbson versions prior to 1.26.2
Configurations

No configuration.

History

21 Nov 2024, 09:49

Type Values Removed Values Added
References () https://jira.mongodb.org/browse/CDRIVER-5622 - () https://jira.mongodb.org/browse/CDRIVER-5622 -

03 Jul 2024, 12:53

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-02 18:15

Updated : 2024-11-21 09:49


NVD link : CVE-2024-6381

Mitre link : CVE-2024-6381

CVE.ORG link : CVE-2024-6381


JSON object : View

Products Affected

No product.

CWE
CWE-680

Integer Overflow to Buffer Overflow