Debian Pymongo vulnerabilities
2 known vulnerabilities affecting debian/pymongo.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2024-5629MEDIUMCVSS 4.7fixed in pymongo 3.11.0-1+deb12u1 (bookworm)2024
CVE-2024-5629 [MEDIUM] CVE-2024-5629: pymongo - An out-of-bounds read in the 'bson' module of PyMongo 4.6.2 or earlier allows de...
An out-of-bounds read in the 'bson' module of PyMongo 4.6.2 or earlier allows deserialization of malformed BSON provided by a Server to raise an exception which may contain arbitrary application memory.
Scope: local
bookworm: resolved (fixed in 3.11.0-1+deb12u1)
bullseye: resolved (fixed in 3.11.0-1+deb11u1)
forky: resolved (fixed in 4.7.3-1)
sid: resolved (fixed in
debian
CVE-2013-2132MEDIUMCVSS 4.3fixed in pymongo 2.5.2-1 (bookworm)2013
CVE-2013-2132 [MEDIUM] CVE-2013-2132: pymongo - bson/_cbsonmodule.c in the mongo-python-driver (aka. pymongo) before 2.5.2, as u...
bson/_cbsonmodule.c in the mongo-python-driver (aka. pymongo) before 2.5.2, as used in MongoDB, allows context-dependent attackers to cause a denial of service (NULL pointer dereference and crash) via vectors related to decoding of an "invalid DBRef."
Scope: local
bookworm: resolved (fixed in 2.5.2-1)
bullseye: resolved (fixed in 2.5.2-1)
forky: resolved (fixed in 2
debian