Bug#710597: pymongo: CVE-2013-2132: null pointer when decoding invalid DBRef

2013-06-05 Thread Salvatore Bonaccorso
Hi Federico On Sat, Jun 01, 2013 at 10:54:49AM +0200, Salvatore Bonaccorso wrote: > Package: pymongo > Severity: grave > Tags: security upstream patch > > Hi, > > the following vulnerability was published for pymongo. > > CVE-2013-2132[0]: > null pointer when decoding invalid DBRef > > See [1]

Bug#710597: pymongo: CVE-2013-2132: null pointer when decoding invalid DBRef

2013-06-01 Thread Salvatore Bonaccorso
Package: pymongo Severity: grave Tags: security upstream patch Hi, the following vulnerability was published for pymongo. CVE-2013-2132[0]: null pointer when decoding invalid DBRef See [1] for details and upstream bugreport including reproducer for the issue. A patch was applied upstream in [2]