Skip to main content

Vendor/product archive

mongodb / libbson CVEs

Beta · best-effort

3 CVEs tagged to mongodb / libbson0 Critical, 2 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2025-0755

Published Mar 18, 2025

The various bson_append functions in the MongoDB C driver library may be susceptible to buffer overflow when performing operations that could result in a final BSON document which…

CVSS 8.4 · High
evidence mentions
4
Buzz score
26.1
Vendor/product tagsBeta · best-effort

CVE-2024-6381

Published Jul 2, 2024

The bson_strfreev function in the MongoDB C driver library may be susceptible to an integer overflow where the function will try to free memory at a negative offset. This may resu…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-16790

Published Sep 10, 2018

_bson_iter_next_internal in bson-iter.c in libbson 1.12.0, as used in MongoDB mongo-c-driver and other products, has a heap-based buffer over-read via a crafted bson buffer.

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1