PT-2024-6681 · Mongodb · Mongodb Rust Driver

Kevin Albertson

·

Published

2024-03-12

·

Updated

2025-10-02

·

CVE-2024-6382

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions: MongoDB Rust Driver versions prior to 2.8.2
Description: The issue is related to incorrect handling of syntactically incorrect structures, which may result in the construction of unintended server commands. This could lead to unexpected application behavior, including data modification.
Recommendations: For MongoDB Rust Driver versions prior to 2.8.2, update to version 2.8.2 or later to resolve the issue.

Fix

Weakness Enumeration

Related Identifiers

BDU:2024-07888
CVE-2024-6382
GHSA-32JF-H775-G29H

Affected Products

Mongodb Rust Driver