[SERVER-83273] Fix typo use-after-free bug in MakeObjSpec Created: 15/Nov/23  Updated: 17/Nov/23  Resolved: 17/Nov/23

Status: Closed
Project: Core Server
Component/s: None
Affects Version/s: None
Fix Version/s: 7.3.0-rc0, 7.2.0-rc2

Type: Bug Priority: Major - P3
Reporter: Ian Boros Assignee: Ian Boros
Resolution: Fixed Votes: 0
Labels: None
Remaining Estimate: Not Specified
Time Spent: Not Specified
Original Estimate: Not Specified

Issue Links:
Backports
Depends
Backwards Compatibility: Fully Compatible
Operating System: ALL
Backport Requested:
v7.2
Participants:
Linked BF Score: 159

 Description   

At one point we access actions[i] instead right actions[pos] which can trigger invalid reads. This was added as part of SERVER-81466 which went into 7.2 rc0.



 Comments   
Comment by Githook User [ 16/Nov/23 ]

Author:

{'name': 'Ian Boros', 'email': 'ian.boros@mongodb.com', 'username': 'borosaurus'}

Message: SERVER-83273 Fix typo use-after-free bug in MakeObjSpec

(cherry picked from commit 4907aca9d4c9b43a45daddc387d8b64d46e431f0)
Branch: v7.2
https://github.com/mongodb/mongo/commit/63e5c1ef0972af810a1ee2460d3d752e919266ef

Comment by Githook User [ 16/Nov/23 ]

Author:

{'name': 'Ian Boros', 'email': 'ian.boros@mongodb.com', 'username': 'borosaurus'}

Message: SERVER-83273 Fix typo use-after-free bug in MakeObjSpec
Branch: master
https://github.com/mongodb/mongo/commit/067083bd569a718da939471b45e6459474a05a6f

Comment by Githook User [ 16/Nov/23 ]

Author:

{'name': 'Ian Boros', 'email': 'ian.boros@mongodb.com', 'username': 'borosaurus'}

Message: Revert "SERVER-83273 fix typo in MakeObjSpec"

This reverts commit fd55b16dd3cc43b1fb98bd68d21c43b8eeba0b49.
Branch: master
https://github.com/mongodb/mongo/commit/e6a76379c7810b29d701fb34cb803729ea40be09

Comment by Githook User [ 15/Nov/23 ]

Author:

{'name': 'Ian Boros', 'email': 'ian.boros@mongodb.com', 'username': 'borosaurus'}

Message: SERVER-83273 fix typo in MakeObjSpec
Branch: master
https://github.com/mongodb/mongo/commit/fd55b16dd3cc43b1fb98bd68d21c43b8eeba0b49

Generated at Thu Feb 08 06:51:43 UTC 2024 using Jira 9.7.1#970001-sha1:2222b88b221c4928ef0de3161136cc90c8356a66.