FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

Mongodb -- Use-after-free in the MongoDB

Affected packages
mongodb70 < 7.0.25
mongodb80 < 8.0.15

Details

VuXML ID cdf2abf7-ae83-11f0-b5fb-b42e991fc52e
Discovery 2025-10-20
Entry 2025-10-21

cna@mongodb.com reports:

An authorized user may crash the MongoDB server by causing buffer over-read. This can be done by issuing a DDL operation while queries are being issued, under some conditions.

References

CVE Name CVE-2025-11979
URL https://nvd.nist.gov/vuln/detail/CVE-2025-11979