UBUNTU-CVE-2015-1609

Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 30 Mar 2015, 14:59
Last modified:22 Apr 2026, 10:03

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

30 Mar 2015, 14:59
Published
Vulnerability first disclosed
22 Apr 2026, 10:03
Last Modified
Vulnerability information updated

Description

MongoDB before 2.4.13 and 2.6.x before 2.6.8 allows remote attackers to cause a denial of service via a crafted UTF-8 string in a BSON request.

Affected Systems

  • ubuntumongodb

    all | < 1:2.4.9-1ubuntu2+esm2

References (5)