PT-2025-44795 · Mongodb+1 · Mongodb+1

CVE-2025-12657

·

Published

2025-02-22

·

Updated

2026-01-29

CVSS v4.0

5.9

Medium

VectorAV:N/AC:H/AT:P/PR:H/UI:N/VC:L/VI:N/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions MongoDB (affected versions not specified)
Description The KMIP response parser within MongoDB binaries is susceptible to parsing malformed packets with excessive tolerance, potentially creating invalid objects. Subsequent reads of these objects can lead to read access violations.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Improper Check for Exceptional Conditions

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-02957
BIT-MONGODB-2025-12657
CVE-2025-12657

Affected Products

Mongodb
Red Os