Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-13507

Опубликовано: 25 нояб. 2025
Источник: ubuntu
Приоритет: medium
CVSS3: 6.5

Описание

Inconsistent object size validation in time series processing logic may result in later processing of oversized BSON documents leading to an assert failing and process termination. This issue impacts MongoDB Server v7.0 versions prior to 7.0.26, v8.0 versions prior to 8.0.16 and MongoDB server v8.2 versions prior to 8.2.1.

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

not-affected

code not present
esm-apps/focal

not-affected

code not present
esm-apps/xenial

not-affected

code not present
esm-infra-legacy/trusty

not-affected

code not present
jammy

DNE

noble

DNE

plucky

DNE

questing

DNE

upstream

released

7.0.26, 8.2.1

Показывать по

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
nvd
4 месяца назад

Inconsistent object size validation in time series processing logic may result in later processing of oversized BSON documents leading to an assert failing and process termination. This issue impacts MongoDB Server v7.0 versions prior to 7.0.26, v8.0 versions prior to 8.0.16 and MongoDB server v8.2 versions prior to 8.2.1.

CVSS3: 6.5
debian
4 месяца назад

Inconsistent object size validation in time series processing logic ma ...

CVSS3: 6.5
github
4 месяца назад

Inconsistent object size validation in time series processing logic may result in later processing of oversized BSON documents leading to an assert failing and process termination. This issue impacts MongoDB Server v7.0 versions prior to 7.0.26, v8.0 versions prior to 8.0.16 and MongoDB server v8.2 versions prior to 8.2.1.

CVSS3: 6.5
fstec
4 месяца назад

Уязвимость сервера системы управления базами данных MongoDB, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
redos
4 месяца назад

Уязвимость mongodb-org

6.5 Medium

CVSS3