A user authorized to perform database queries may trigger denial of service by issuing specially crafted queries with compound indexes affecting QueryPlanner. This issue affects: MongoDB Inc. MongoDB Server v3.6 versions prior to 3.6.9, v4.0 versions prior to 4.0.3.
References
Link | Resource |
---|---|
https://jira.mongodb.org/browse/SERVER-36993 | Issue Tracking Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2020-11-23 08:15
Updated : 2020-11-29 13:24
NVD link : CVE-2018-20802
Mitre link : CVE-2018-20802
JSON object : View
CWE
Products Affected
mongodb
- mongodb