Filtered by vendor Mongodb Subscriptions
Filtered by product Libbson Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2018-16790 1 Mongodb 1 Libbson 2024-08-05 N/A
_bson_iter_next_internal in bson-iter.c in libbson 1.12.0, as used in MongoDB mongo-c-driver and other products, has a heap-based buffer over-read via a crafted bson buffer.
CVE-2024-6381 1 Mongodb 1 Libbson 2024-08-01 4 Medium
The bson_strfreev function in the MongoDB C driver library may be susceptible to an integer overflow where the function will try to free memory at a negative offset. This may result in memory corruption. This issue affected libbson versions prior to 1.26.2
CVE-2024-6383 1 Mongodb 1 Libbson 2024-08-01 5.3 Medium
The bson_string_append function in MongoDB C Driver may be vulnerable to a buffer overflow where the function might attempt to allocate too small of buffer and may lead to memory corruption of neighbouring heap memory. This issue affects libbson versions prior to 1.27.1