VDB
GCVE-VVD-MAGEIA-2024-187
GCVE-VVD-MAGEIA-2024-187
Advisory Published
Versions of the package pymongo before 4.6.3 are vulnerable to
Out-of-bounds Read in the bson module. Using the crafted payload the
attacker could force the parser to deserialize unmanaged memory. The
parser tries to interpret bytes next to buffer and throws an exception
with string. If the following bytes are not printable UTF-8 the parser
throws an exception with a single byte.
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | rawtherapee | 0 (affected), 5.11-1.mga9 (unaffected) | — |
| Mageia | python-pymongo | 0 (affected), 4.3.3-1.1.mga9 (unaffected), 0 (affected), 4.3.3-1.1.mga9 (unaffected) | — |
References
Browse GCVE Records
74,496 records in the GCVE database · Updated July 23, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.