diff --git a/2022/24xxx/CVE-2022-24272.json b/2022/24xxx/CVE-2022-24272.json index cb15c806a1d..00bf0f49eac 100644 --- a/2022/24xxx/CVE-2022-24272.json +++ b/2022/24xxx/CVE-2022-24272.json @@ -1,88 +1,18 @@ { - "CVE_data_meta": { - "ASSIGNER": "cna@mongodb.com", - "DATE_PUBLIC": "2022-04-21T17:19:00.000Z", - "ID": "CVE-2022-24272", - "STATE": "PUBLIC", - "TITLE": "MongoDB Server (mongod) may crash in response to unexpected requests" - }, - "affects": { - "vendor": { - "vendor_data": [ - { - "product": { - "product_data": [ - { - "product_name": "MongoDB Server", - "version": { - "version_data": [ - { - "version_affected": "<=", - "version_name": "5.0", - "version_value": "5.0.6" - } - ] - } - } - ] - }, - "vendor_name": "MongoDB Inc." - } - ] - } - }, - "data_format": "MITRE", "data_type": "CVE", + "data_format": "MITRE", "data_version": "4.0", + "CVE_data_meta": { + "ID": "CVE-2022-24272", + "ASSIGNER": "cna@mongodb.com", + "STATE": "REJECT" + }, "description": { "description_data": [ { "lang": "eng", - "value": "An authenticated user may trigger an invariant assertion during command dispatch due to incorrect validation on the $external database. This may result in mongod denial of service or server crash. This issue affects: MongoDB Inc. MongoDB Server v5.0 versions, prior to and including v5.0.6." + "value": "** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This CVE has been rejected as it was incorrectly assigned. All references and descriptions in this candidate have been removed to prevent accidental usage." } ] - }, - "generator": { - "engine": "Vulnogram 0.0.9" - }, - "impact": { - "cvss": { - "attackComplexity": "LOW", - "attackVector": "NETWORK", - "availabilityImpact": "HIGH", - "baseScore": 6.5, - "baseSeverity": "MEDIUM", - "confidentialityImpact": "NONE", - "integrityImpact": "NONE", - "privilegesRequired": "LOW", - "scope": "UNCHANGED", - "userInteraction": "NONE", - "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H", - "version": "3.1" - } - }, - "problemtype": { - "problemtype_data": [ - { - "description": [ - { - "lang": "eng", - "value": "CWE-617: Reachable Assertion" - } - ] - } - ] - }, - "references": { - "reference_data": [ - { - "refsource": "MISC", - "url": "https://jira.mongodb.org/browse/SERVER-63968", - "name": "https://jira.mongodb.org/browse/SERVER-63968" - } - ] - }, - "source": { - "discovery": "INTERNAL" } -} \ No newline at end of file +}