CNNVD-202602-1422 Information

CNNVD ID

CNNVD-202602-1422

CVE-2026-2303

  • CNNVD Published: 2026-02-10

Description (Chinese)

MongoDB Go Driver是MongoDB开源的一个Go语言库。 MongoDB Go Driver存在安全漏洞,该漏洞源于C包装器实现中对GSSAPI标准字符串终止的假设不正确,可能导致堆越界读取。

Description (English)

MongoDB Go Driver is a Go language library of the MongoDB open source. There is a security loophole in MongoDB Go Driver, which stems from the incorrect assumption in the C packaging that the GSSAPI standard string is terminated and may lead to cross-border reading.

Vulnerability Type

其他

Affected Vendor

MongoDB

Published

2026-02-10

Last Modified

2026-02-24

References

https://jira.mongodb.org/browse/GODRIVER-3770

Patch

https://jira.mongodb.org/browse/GODRIVER-3770

Share on: