MongoDB Server Vulnerability Wave Hits Document Databases
ID: 12f5dfc5-6470-57a0-ad70-4a28f95a62cf
STIX ID: report--12f5dfc5-6470-57a0-ad70-4a28f95a62cf
Feed Name: securityonline.info
This advisory describes four security vulnerabilities in MongoDB Server — two high-severity memory-related flaws (one use-after-free enabling memory disclosure or crashes, and one unauthenticated crash due to BSON validation recursion) and two authenticated issues that can corrupt metadata or crash the server. Multiple release branches are affected; fixed builds (e.g., 8.0.26, 8.2.11, 8.3.4) are available and administrators are urged to patch immediately, prioritizing the unauthenticated crash bug.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
