CVE-2024-5629
EUVD-2024-210105.06.2024, 15:15
An out-of-bounds read in the 'bson' module of PyMongo 4.6.2 or earlier allows deserialization of malformed BSON provided by a Server to raise an exception which may contain arbitrary application memory.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mongodb | pymongo | 𝑥 < 4.6.3 |
| debian | debian_linux | 10.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| pymongo |
|
Amazon Linux Releases
Amazon Package | |||
|---|---|---|---|
| python-pymongo-debuginfo |
| ||
| python-pymongo-debugsource |
| ||
| python-pymongo-doc |
| ||
| python3-bson |
| ||
| python3-bson-debuginfo |
| ||
| python3-pymongo |
| ||
| python3-pymongo-debuginfo |
| ||
| python3-pymongo-gridfs |
|
Common Weakness Enumeration