#zlib-compression

[ follow ]
#mongodb
fromTheregister
3 days ago
Information security

'Heartbleed of MongoDB' under active exploit

CVE-2025-14847 (MongoBleed) lets unauthenticated remote attackers read uninitialized heap memory via malformed zlib-compressed MongoDB Server packets, risking exposure of credentials and keys.
fromThe Hacker News
6 days ago
Information security

New MongoDB Flaw Lets Unauthenticated Attackers Read Uninitialized Memory

A zlib-related length-handling bug in MongoDB (CVE-2025-14847) can let unauthenticated clients read uninitialized heap memory; update recommended.
[ Load more ]