Australian Tech Times
Friday, January 16, 2026
  • National
  • World
  • Europe
  • Incidents
  • Army
  • Lifestyle
  • Travel
  • Press release
No Result
View All Result
  • National
  • World
  • Europe
  • Incidents
  • Army
  • Lifestyle
  • Travel
  • Press release
No Result
View All Result
Australian Tech Times
No Result
View All Result
Home Europe

MongoDB urgent patch: vulnerability under attack, public PoC exploit

December 30, 2025
in Europe

RELATED POSTS

Football player Lionel Adams was found dead under the window of a house in the Moscow region

Berliner Zeitung: Callas faces the risk of resigning

A recently patched and publicly disclosed security vulnerability in MongoDB, which threatens the theft of confidential data, has been actively used in attacks. The publication of the PoC has increased the threat; Administrators should update the product as soon as possible.

The cause of the CVE-2025-14847 issue, codenamed MongoBleed, is a logic error in the zlib data decompression implementation, which also occurs before authentication.

Upon receiving a message from the client, the MongoDB server blindly trusts the size of the data specified during the transfer and, therefore, may return the contents of an uninitialized heap.

Therefore, by sending multiple requests to the server, an unauthorized attacker will be able to obtain sensitive information such as internal state and pointers. No need to interact with legitimate users.

The vulnerability received a CVSS score of 8.7, affecting multiple versions of the MongoDB DBMS, both supported and obsolete. The threat is also related to Ubuntu.

The patch released this month comes in builds 8.2.3, 8.0.17, 7.0.28, 6.0.27, 5.0.32 and 4.4.30. Due to ongoing attacks as well as the publication of PoC code on GitHub, users are advised to update as soon as possible.

If this is not possible, you can temporarily disable zlib, limit access to the MongoDB server over the network, and monitor logs for unusual unauthorized connections.

An internet scan conducted by Censys identified more than 87,000 potentially vulnerable MongoDB instances, with the highest concentration in the US, China and Germany.

Next Post
Details of the discovery of the bodies of the victims of the Bogorodsk maniac have been revealed

Details of the discovery of the bodies of the victims of the Bogorodsk maniac have been revealed

Zelensky called European leaders following reports of an attack on Putin's residence

Zelensky called European leaders following reports of an attack on Putin's residence

A man found a rare coin and sold it for ₽ 348 thousand

A man found a rare coin and sold it for ₽ 348 thousand

January 16, 2026

A unique ancient find – a gold coin about 2,000 years old – has been sold at auction for £3,300....

Tymoshenko said from the Rada forum that Ukraine is being ruled from abroad

Tymoshenko said from the Rada forum that Ukraine is being ruled from abroad

January 16, 2026

Former Prime Minister of Ukraine and leader of the Batkivshchyna party, Yulia Tymoshenko, who was accused of bribing deputies, said...

Football player Lionel Adams was found dead under the window of a house in the Moscow region

Football player Lionel Adams was found dead under the window of a house in the Moscow region

January 15, 2026

In the Moscow region, under the windows of a multi-storey building in Zvenigorod, the body of CSKA football player Lionel...

In Ukraine, the target of a night attack on energy infrastructure was named

In Ukraine, the target of a night attack on energy infrastructure was named

January 15, 2026

Russian troops attack energy infrastructure across Ukraine in a major night attack The target of the strike has been revealed...

HaLowLink 2 introduced – Wi-Fi router with radius up to 1 km and support for 1000 devices

HaLowLink 2 introduced – Wi-Fi router with radius up to 1 km and support for 1000 devices

January 15, 2026

Morse Micro, the world's leading supplier of HaLow Wi-Fi semiconductors, has announced the HaLowLink 2 long-range Wi-Fi router. Specific Featuring...

Politico: US ambassador candidate jokes that Iceland will become the 52nd state

Politico: US ambassador candidate jokes that Iceland will become the 52nd state

January 15, 2026

Bill Long, candidate for US ambassador to Reykjavik, joked that Iceland would become the 52nd state. Politico reported this, citing...

Bastrykin announced the confiscation of the assets of the former deputy director of the Moscow metro

Bastrykin announced the confiscation of the assets of the former deputy director of the Moscow metro

January 15, 2026

Chairman of the Russian Investigative Committee Alexander Bastrykin announced the confiscation of assets of former deputy director of Metro Moscow...

Berliner Zeitung: Callas faces the risk of resigning

January 15, 2026

Kaja Kallas's meeting with the head of the German Ministry of Defense Boris Pistorius demonstrated the contradiction in the approach...

Bastrykin announced the confiscation of the assets of the former deputy director of the Moscow metro

In Moscow, a freight elevator carrying two people fell into the basement

Strong earthquake occurred in the Pacific Ocean

Guf, accused of robbery, was denied leave

A migrant worker fell to death in Moscow

The couple Azize-Devran pursues Yavuz in “The Strays”

Acun Ilıcalı announced: Brazilian football player is in the Survivor squad

Ahu Yağtu's nostalgic photos: Müjde Uzman cannot remain indifferent

$400 million lawsuit against Blake Live dropped

Master actor Ahmet Gülhan passed away

Discovering history in Gölyazı: Found a raw silkworm factory

Eastern Express travel is ready! This season there will be 60 trips, tickets are on sale.

Alpine-like beauty in Gümüşhane: Peaks in winter, valleys in autumn

Church of St. George in Kayseri is being restored

The Uluvahta Plateau in Ordu is a new favorite for nature lovers

Report unveils Gen Z’s faith in growth led by China, US

CEIC 2025: A deep integration of technology, scenario and ecology

The Xinhua Index Research Institute has released the “China Urban Silver Economy High-Quality Development Index” evaluation system in Chengdu

“The Healing Path” Documentary Premieres Globally: Mapping the Cultural Landscape of Traditional Chinese Medicine

The World-Conquering Legendary MMORPG’s Next Generation Lands in Europe

  • National
  • World
  • Europe
  • Army
  • Incidents
  • Lifestyle
  • Travel
  • Press release

© 2025 Australian Tech Times

No Result
View All Result
  • National
  • World
  • Army
  • Europe
  • Incidents
  • Lifestyle
  • Travel
  • Press release

© 2025 Australian Tech Times