[SERVER-43699] Find $mod can result in UB Created: 27/Sep/19 Updated: 29/Oct/23 Resolved: 06/Oct/19 |
|
| Status: | Closed |
| Project: | Core Server |
| Component/s: | Querying |
| Affects Version/s: | 3.6.14, 4.0.12, 4.2.0 |
| Fix Version/s: | 3.6.15, 4.2.1, 4.3.1, 3.4.24, 4.0.14 |
| Type: | Bug | Priority: | Major - P3 |
| Reporter: | Ian Boros | Assignee: | Bernard Gorman |
| Resolution: | Fixed | Votes: | 0 |
| Labels: | afz | ||
| Remaining Estimate: | Not Specified | ||
| Time Spent: | Not Specified | ||
| Original Estimate: | Not Specified | ||
| Issue Links: |
|
||||||||
| Backwards Compatibility: | Fully Compatible | ||||||||
| Operating System: | ALL | ||||||||
| Backport Requested: |
v4.2, v4.0, v3.6, v3.4
|
||||||||
| Sprint: | Query 2019-10-21 | ||||||||
| Participants: | |||||||||
| Linked BF Score: | 15 | ||||||||
| Description |
|
CVE-2019-2392 Title: $mod can result in UB Description: CVSS score: Affected versions: CWE: CWE-190: Integer Overflow or Wraparound |
| Comments |
| Comment by Bernard Gorman [ 09/Oct/19 ] |
|
Author: {'username': 'gormanb', 'email': 'bernard.gorman@mongodb.com', 'name': 'Bernard Gorman'}Message: (cherry picked from commit 21d8699ed6c517b45e1613e20231cd8eba894985) |
| Comment by Githook User [ 08/Oct/19 ] |
|
Author: {'username': 'gormanb', 'email': 'bernard.gorman@mongodb.com', 'name': 'Bernard Gorman'}Message: (cherry picked from commit 21d8699ed6c517b45e1613e20231cd8eba894985) |
| Comment by Githook User [ 07/Oct/19 ] |
|
Author: {'name': 'Bernard Gorman', 'username': 'gormanb', 'email': 'bernard.gorman@mongodb.com'}Message: (cherry picked from commit 21d8699ed6c517b45e1613e20231cd8eba894985) |
| Comment by Githook User [ 07/Oct/19 ] |
|
Author: {'name': 'Bernard Gorman', 'username': 'gormanb', 'email': 'bernard.gorman@mongodb.com'}Message: (cherry picked from commit 21d8699ed6c517b45e1613e20231cd8eba894985) |
| Comment by Githook User [ 06/Oct/19 ] |
|
Author: {'name': 'Bernard Gorman', 'username': 'gormanb', 'email': 'bernard.gorman@mongodb.com'}Message: |