cve/2014/CVE-2014-3971.md
2024-05-26 14:27:05 +02:00

803 B

CVE-2014-3971

Description

The CmdAuthenticate::_authenticateX509 function in db/commands/authentication_commands.cpp in mongod in MongoDB 2.6.x before 2.6.2 allows remote attackers to cause a denial of service (daemon crash) by attempting authentication with an invalid X.509 client certificate.

POC

Reference

No PoCs from references.

Github