FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

MongoDB -- Improper Handling of Length Parameter Inconsistency

Affected packages
mongodb80 < 8.2.3
mongodb70 < 7.0.28

Details

VuXML ID c1613867-df16-11f0-8870-b42e991fc52e
Discovery 2025-12-19
Entry 2025-12-22

https://jira.mongodb.org/browse/SERVER-115508 reports:

Mismatched length fields in Zlib compressed protocol headers may allow a read of uninitialized heap memory by an unauthenticated client.

References

CVE Name CVE-2025-14847
URL https://cveawg.mitre.org/api/cve/CVE-2025-14847