Home
HIGH: 7.1 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:NMEDIUM: 6.5 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NDefault status
unaffected
8.2 (custom) before 8.2.6
affected
8.0 (custom) before 8.0.20
affected
7.0 (custom) before 7.0.31
affected
Description
An authenticated user with the read role may read limited amounts of uninitialized stack memory via specially-crafted issuances of the filemd5 command.
Problem types
CWE-457 Use of uninitialized variable
Product status
8.2 (custom) before 8.2.6
8.0 (custom) before 8.0.20
7.0 (custom) before 7.0.31
References
jira.mongodb.org/browse/SERVER-119317