Loading HuntDB...

GHSA-vc2m-fm8c-xx2j

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

The bson_strfreev function in the MongoDB C driver library may be susceptible to an integer overflow where the function will try to free memory at a negative offset. This may result in memory corruption. This issue affected libbson versions prior to 1.26.2

Related CVEs

Key Information

GHSA ID
GHSA-vc2m-fm8c-xx2j
Published
July 2, 2024 9:32 PM
Last Modified
July 2, 2024 9:32 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 11, 2025 6:35 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.