PT-2025-44795 · Mongodb+1 · Mongodb+1

Published

2025-02-22

·

Updated

2026-01-29

·

CVE-2025-12657

CVSS v2.0

5.6

Medium

VectorAV:N/AC:H/Au:S/C:P/I:N/A:C
Name of the Vulnerable Software and Affected Versions MongoDB (affected versions not specified)
Description The KMIP response parser within MongoDB binaries is susceptible to parsing malformed packets with excessive tolerance, potentially creating invalid objects. Subsequent reads of these objects can lead to read access violations.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Check for Exceptional Conditions

Weakness Enumeration

Related Identifiers

BDU:2026-02957
BIT-MONGODB-2025-12657
CVE-2025-12657

Affected Products

Mongodb
Red Os