CNNVD-202511-1975 Information

CNNVD ID

CNNVD-202511-1975

CVE-2025-12119

  • CNNVD Published: 2025-11-18

Description (Chinese)

mongo-c-driver是MongoDB开源的一个 C 语言的 MongoDB 官方驱动程序。 mongo-c-driver存在安全漏洞,该漏洞源于传递大型选项时可能读取无效内存。

Description (English)

Mongo-c-driver is the MongoDB official driver for an open-source C language of MongoDB. There is a security loophole in the mongo-c-driver, which stems from the possibility of reading invalid memory when transmitting large options.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

MongoDB

Published

2025-11-18

Last Modified

2026-02-24

References

https://github.com/mongodb/mongo-php-driver/releases/tag/1.21.2 https://github.com/mongodb/mongo-c-driver/releases/tag/1.30.6 https://github.com/mongodb/mongo-c-driver/releases/tag/2.1.2 https://access.redhat.com/security/cve/cve-2025-12119

Share on: